Experts warn of PayPal subscription abuse for fake emails

Security experts are cautioning PayPal users about a scam where the platform's subscription feature is being exploited to deliver fraudulent purchase confirmation emails. This abuse leverages the legitimate PayPal system to deceive recipients into believing they have made unauthorized transactions. The warning highlights the need for vigilance in verifying email authenticity.

PayPal, a widely used online payment service, faces a new security concern as cybercriminals exploit its subscription functionality. According to reports from TechRadar, experts have identified instances where scammers use PayPal's legitimate infrastructure to send deceptive emails mimicking purchase confirmations. These messages aim to trick users into clicking malicious links or providing sensitive information under the guise of resolving supposed fraudulent charges.

The scam preys on users' fears of unauthorized spending, prompting quick actions that could lead to further compromise. While PayPal's core platform remains secure, this abuse underscores the vulnerabilities in email-based communications. Experts recommend that users always log in directly to their PayPal accounts via the official website or app to check transaction history, rather than responding to unsolicited emails.

No specific details on the scale of the issue or affected regions were provided in the initial warnings, but the publication date of December 17, 2025, indicates timely awareness efforts. PayPal users are advised to enable two-factor authentication and monitor accounts regularly to mitigate risks. This development serves as a reminder of the evolving tactics in phishing attacks targeting trusted financial services.

相关文章

Dramatic illustration depicting the Coupang data breach, with data spilling from a cracked digital vault and investigators on scene.
AI 生成的图像

Coupang 数据泄露事件从6月至11月

由 AI 报道 AI 生成的图像

电商巨头 Coupang 发生大规模数据泄露,从6月24日至11月8日,3370万客户的个人信息暴露。官员透露,攻击者利用公司电子签名密钥,引发政府全面调查。此事件加剧了公众对韩国数据保护能力的担忧。

Scammers are sending emails that appear genuine to OpenAI users, designed to manipulate them into revealing critical data swiftly. These emails are followed by vishing calls that intensify the pressure on victims to disclose account details. The campaign highlights ongoing risks in AI platform security.

由 AI 报道

Hackers are targeting WhatsApp users with a new GhostPairing scam that allows full account access without cracking passwords or encryption safeguards. The scam bypasses traditional authentication methods, posing a significant risk to user privacy and security. Users are advised to check the Linked Devices section to detect any compromises.

After years of anticipation, PayPal and Venmo are introducing direct payments between the two platforms. Users can now search for contacts across apps and send money with ease, though privacy settings require attention. The feature, developed since PayPal's 2014 acquisition of Venmo, begins rolling out immediately.

由 AI 报道

Users experiencing spam and filtering issues in Gmail are not alone, as Google is deploying a solution to restore normal operations. The company acknowledges the widespread disruptions affecting its email service.

Two information-technology-savvy brothers have discovered serious flaws in the National Student Financial Aid Scheme's ICT system, potentially exposing millions of students' personal details, including bank accounts, to scammers. The vulnerabilities allowed access to sensitive messages, one-time pins, and even administrative functions like altering funding. NSFAS has since patched the most critical issues after being alerted.

由 AI 报道

日本警察厅计划认证旨在打击诈骗的智能手机应用,在诈骗损失创历史新高之际。这些应用将包括屏蔽国际来电和警示潜在诈骗等功能,以提升可靠性和普及率。

 

 

 

此网站使用 cookie

我们使用 cookie 进行分析以改进我们的网站。阅读我们的 隐私政策 以获取更多信息。
拒绝