Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

PSA: Active Chase Phishing Scam Pretends To Be Fraud Alerts

PSA: Active Chase Phishing Scam Pretends To Be Fraud Alerts

A large scale phishing scam is underway that pretends to be a security notice from Chase stating that fraudulent activity has been detected and caused the recipient’s account to be blocked.

Today, numerous people have told BleepingComputer that they received the same fake Chase “Security Notice” scam attempting to steal their banking credentials. One recipient said they fell for the scam after their card was denied in a purchase online and thought the email was a legitimate Chase fraud alert.

These phishing emails state that the recipient’s Chase account was blocked after suspicious activity was detected.

“Recently, there’s been activities in your account that seems unusual compared to your normal account activities, so we’ve taken security steps by blocking access to your account until you validate your information adequately.”

To “unlock” the account, the recipients are prompted to click on the ‘Restore Now’ button in the email, as shown below.

Also Read: How To Prevent WhatsApp Hack: 7 Best Practices

Chase phishing scam
Chase phishing scam

When the ‘Restore Now’ button is clicked, the recipient will be brought to a page asking them to log in to their Chase account. If they enter their login information, it will be sent to the attackers, who will then have access to the account.

The phishing page will further prompt the user to enter additional information about themselves to verify that they are the account owner. This additional information includes their first and last name, date of birth, Social Security Number, address, and phone number.

If a threat actor gets access to this information, they could use it to perform identity theft, gain access to other accounts, or send further targeted phishing emails.

It is important to remember that Chase fraud alerts never prompt you to enter any information or your login credentials. Instead, the legitimate emails only require you to confirm if a transaction was legitimate by clicking a button in the email.

If you are a Chase customer and receive an email asking you to login or enter sensitive information, immediately delete the email and call customer service to confirm if they contacted you.

Also Read: 15 Best Tools For Your Windows 10 Privacy Settings Setup

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us