Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - News & Analysis - TSB Customers Targeted By Phishing Scams
News & Analysis

TSB Customers Targeted By Phishing Scams

ISBuzz TeamBy ISBuzz TeamMay 18, 20183 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
97% of FTSE 250 Companies are Exposing Customers to Risks of Phishing Attacks
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

Scammers are targeting TSB customers with phishing emails in the hope that they will hand over their bank details. The messages sent by scammers claim to be from the bank and inform customers that their accounts have been suspended due to “recent technical and security issues”. They then ask the account holders to verify them by clicking on a link that’s provided. Instead of directing customers to the genuine TSB website, customers are taken to one run by the fraudsters. IT security experts commented below.

Eyal Benishti, CEO & Founder at IRONSCALES: 

“It would be a huge understatement to say TSB have gotten themselves in a bit of a pickle- we know that, and by the looks of it, the bad guys have realised there is money to be made by exploiting the unfortunate situation.  Phishers know when to pounce, and with the continuing technical issues at TSB, they are hoping to slip some scams under the radar and take advantage of customers already unsure of what is going on. All it takes is one click for an unsuspecting victim to be conned out of their hard earned cash, and with everything going on, they might not even realise it straight away.

Spoofing and impersonation scams like these, are becoming even more difficult for even the most trained eye to spot; the phish is relevant to the recipient, and at first glance, nothing appears to be wrong. Always remember, a bank will never, under any circumstance, contact you in this way to ask for your personal details. Never hand over any official information, and if you are even slightly suspicious, contact either the ‘Sender’ and if at work, your IT Security Team. Scams like this are often spotted relatively quickly, so keeping an eye on social media, news sites and even doing a quick Google search, could prevent you, and your organisation, from becoming the latest victim.”

Daniel Cohen, Director at RSA Fraud and Risk Intelligence Unit:

“Unfortunately it is quite common for fraudsters to take advantage of disruption. In order to protect against these opportunists, people should avoid clicking on links in unsolicited emails and SMS messages – a real bank will never ask you to give up login details, PIN numbers or financial information, so if you see a message telling you to then it’s likely to be fake. Instead of clicking links, search for the website using an engine. If you do follow a link, be sure to check the URL of a site you’re visiting is correct before entering any details and that it has a secure https symbol to prove it is secure. Obviously, if there is a security warning, then do not proceed with entering any details. Often spoofed sites will have a few letters in the wrong place, or it won’t match up with the official site, giving clues that it is a fake – the devil really is in the detail. Lastly, if you have any doubts, check official company websites for a phone number, and call to get validation before sharing any personal information. It’s up to all customers to be vigilant, but they aren’t alone, with UK initiatives such as ActionFraud available to offer advice, and verify if the communication is legitimate or not.”

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

New Phishing Kit Starkiller Defeats Multi-Factor Authentication

February 23, 20264 Mins Read

ReliaQuest Uncovers Social Media Phishing Campaign Built on Trusted Tools

January 22, 20266 Mins Read

What Happens after a Phishing Email Lands in Your Inbox?

January 5, 20266 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}