Bogus emails lure users to a replica of the organization's website

Aug 18, 2012 09:49 GMT  ·  By

The website of a company from Portugal and probably many others have been hijacked to take part in the latest Barclays phishing scheme.

It all starts with an email (via millersmiles.co.uk) that reads something like this:

Dear Client

We are carrying out security maintenance in Online Banking on Wednesday 15 August.

Please follow the link below

Click Here to Login

We apologise for any inconvenience this may cause. Message updated 15 August 2012

Barclays Online Banking As expected, the link doesn’t point to the official Barclays website, but to a webpage carefully planted by the cybercriminals that run the campaign on a compromised domain.

The page, which replicates the genuine Barclays login page, is designed to collect usernames and passwords and send them back to the attackers.

Barclays customers are advised to be on the lookout for such emails and avoid clicking on the links they contain.