Beware: PayPal subscriptions abused to send fake purchase emails

Beware: PayPal subscriptions abused to send fake purchase emails

This article reveals how scammers are exploiting PayPal’s billing features to send legitimate-looking phishing emails containing fake purchase notifications. These messages aim to trick recipients into calling scam numbers or installing malware, despite passing security checks. #PayPal #PhishingEmails

Keypoints

  • Scammers abuse PayPal’s “Subscriptions” feature to send convincing fake purchase notifications.
  • The scam emails are sent from legitimate PayPal addresses and pass email security checks.
  • Recipients are falsely informed about high-value payments to induce panic and contact scammers.
  • PayPal is working to mitigate the flaw that allows scammers to embed malicious messages in emails.
  • Users are advised to verify charges directly through their PayPal accounts instead of contacting scam numbers.

Read More: https://www.bleepingcomputer.com/news/security/beware-paypal-subscriptions-abused-to-send-fake-purchase-emails/