Experts warn of PayPal subscription abuse for fake emails

Security experts are cautioning PayPal users about a scam where the platform's subscription feature is being exploited to deliver fraudulent purchase confirmation emails. This abuse leverages the legitimate PayPal system to deceive recipients into believing they have made unauthorized transactions. The warning highlights the need for vigilance in verifying email authenticity.

PayPal, a widely used online payment service, faces a new security concern as cybercriminals exploit its subscription functionality. According to reports from TechRadar, experts have identified instances where scammers use PayPal's legitimate infrastructure to send deceptive emails mimicking purchase confirmations. These messages aim to trick users into clicking malicious links or providing sensitive information under the guise of resolving supposed fraudulent charges.

The scam preys on users' fears of unauthorized spending, prompting quick actions that could lead to further compromise. While PayPal's core platform remains secure, this abuse underscores the vulnerabilities in email-based communications. Experts recommend that users always log in directly to their PayPal accounts via the official website or app to check transaction history, rather than responding to unsolicited emails.

No specific details on the scale of the issue or affected regions were provided in the initial warnings, but the publication date of December 17, 2025, indicates timely awareness efforts. PayPal users are advised to enable two-factor authentication and monitor accounts regularly to mitigate risks. This development serves as a reminder of the evolving tactics in phishing attacks targeting trusted financial services.

관련 기사

IT expert Supangat warns of Lebaran digital scams via WhatsApp and SMS in a press conference illustration.
AI에 의해 생성된 이미지

IT expert warns of digital scams ahead of Lebaran

AI에 의해 보고됨 AI에 의해 생성된 이미지

Ahead of Idul Fitri, IT expert from Untag Surabaya, Supangat, urges the public to heighten vigilance against scams via WhatsApp and SMS. Rising digital transactions are exploited by cybercriminals. Vida founder Niki Santo Luhur identifies two main methods: phishing and malware prevalent in Indonesia.

Scammers are sending emails that appear genuine to OpenAI users, designed to manipulate them into revealing critical data swiftly. These emails are followed by vishing calls that intensify the pressure on victims to disclose account details. The campaign highlights ongoing risks in AI platform security.

AI에 의해 보고됨

In Colombia, fraudulent SMS messages mimicking insurance notifications and bank transfers are spreading during Semana Santa 2026. Authorities including the Fiscalía and National Police warn against clicking suspicious links to prevent data theft and account draining. They urge verifying information through official channels.

Security researchers, first reporting via TechRadar in December 2025, warn WhatsApp's 3 billion users of GhostPairing—a technique tricking victims into linking attackers' browsers to their accounts, enabling full access without breaching passwords or end-to-end encryption.

AI에 의해 보고됨

Ethereum's daily transactions reached an all-time high of over 2.8 million on January 16, largely driven by a widespread address poisoning scam. These attacks, which involve sending tiny crypto amounts from deceptive addresses, are intensifying amid recent network upgrades. Security experts warn that without improved wallet safeguards, users remain vulnerable to significant losses.

금융감독원이 발표한 바에 따르면, 인공지능(AI) 기반 플랫폼이 지난 3개월 동안 보이스 피싱 사기로 인한 19억 원(약 1천3백만 달러)의 재정 손실을 방지했다. 이 플랫폼은 지난 10월 말에 출시된 AI 기반 피싱 공유 및 분석 플랫폼(ASAP)으로, 금융 기관 간 정보 공유를 통해 사기 행위를 차단한다.

AI에 의해 보고됨

Uppsala municipality has experienced a phishing incident affecting some users' emails, including sends to external recipients. The municipality is investigating the extent and taking measures.

 

 

 

이 웹사이트는 쿠키를 사용합니다

사이트를 개선하기 위해 분석을 위한 쿠키를 사용합니다. 자세한 내용은 개인정보 보호 정책을 읽으세요.
거부