Start your day with intelligence. Get The OODA Daily Pulse.
Hackers have seized on a data breach at digital financial firm Revolut to try and harvest more account information from customers, according to Malwarebytes. The security vendor said it had uncovered several examples of Revolut customers receiving smishing messages by text. One arrived on September 14, just two days after the bank acknowledged the incident. In one example, the scam message apparently appeared in the same conversation on the victim’s device as other Revolut texts, making it appear like a legitimate message. The message urged the recipient to follow a link in order to confirm their identity, or else have access to their account restricted. A separate customer said that opening the link took them to a web page that requested access to their device camera. Clicking “allow” reportedly initiated what appeared to be the bank’s live-video identity check, before prompting the user to enter their password.
Full report : Revolut Customers Targeted with New Wave of Phishing Attacks.