An email purporting to be from New Zealand’s Kiwibank - urging customers to update their personal information - is a malicious phishing campaign, warns security vendor Sophos.
Using the Kiwibank logo, the email tricks customers into clicking on the provided link in order to update their personal information and ensure their eligibility for the bank’s policy if guaranteeing their money.
The email said: “…We are so confident with our online banking security system that we guarantee your money…Please proceed to your Kiwibank online banking personal internet banking now for more update on your account maintenance.”
According to Paul Ducklin, head of technology, APAC at Sophos the Website appears to be a legitimate website. The site is now blocklisted and off the air and the genuine owner of the site is left to sort out the mess.
"SophosLabs currently estimates that 70 per cent of malicious web pages abused by phishers and malware spreaders are not directly associated with cybercriminals, but rather are legitimate sites which have been broken into
and 'borrowed' for criminal activity,” said Ducklin.
Kiwibank has published a warning on its legitimate site urging customers which have clicked on the link to immediately change their passwords and contact the bank.
"Computer security begins at home," said Ducklin, recommending consumers and small businesses to take advantage of the many security guidelines that are available online.
Kiwibank target of phishing scam
By
Staff Writers
on May 29, 2007 11:51AM
Got a news tip for our journalists? Share it with us anonymously here.
Partner Content
Ingram Micro Ushers in the Age of Ultra

Build cybersecurity capability with award winning Fortinet training from Ingram Micro

Channel can help lead customers to boosting workplace wellbeing with professional headsets

Secure, integrated platforms enable MSPs to focus bringing powerful solutions to customers

Tech For Good program gives purpose and strong business outcomes
Sponsored Whitepapers

Easing the burden of Microsoft CSP management
-1.jpg&w=100&c=1&s=0)
Stop Fraud Before It Starts: A Must-Read Guide for Safer Customer Communications

The Cybersecurity Playbook for Partners in Asia Pacific and Japan

Pulseway Essential Eight Framework

7 Best Practices For Implementing Human Risk Management