This article reveals how scammers are exploiting PayPal’s billing features to send legitimate-looking phishing emails containing fake purchase notifications. These messages aim to trick recipients into calling scam numbers or installing malware, despite passing security checks. #PayPal #PhishingEmails
Keypoints
- Scammers abuse PayPal’s “Subscriptions” feature to send convincing fake purchase notifications.
- The scam emails are sent from legitimate PayPal addresses and pass email security checks.
- Recipients are falsely informed about high-value payments to induce panic and contact scammers.
- PayPal is working to mitigate the flaw that allows scammers to embed malicious messages in emails.
- Users are advised to verify charges directly through their PayPal accounts instead of contacting scam numbers.