Hijacked websites from Sri Lanka and Portugal have been involved in the scheme

Jul 17, 2012 14:04 GMT  ·  By

In the past couple of days, experts have identified two malicious email variants that purport to come from Halifax.

“Personal details of your Halifax account has engage an error which made your online banking in-active. For security, we strongly recommend you to make your online account active by following the instructions below,” reads one version.

The other one reads, “Due to the on-going security upgrade at Halifax, all customers are required to update their information to the new security system to enable a faster, easier and more secure online banking experience.”

In both cases, when users click on the links, they are taken to compromised websites (in this case from Portugal and Sri Lanka) that host phishing pages.

Internauts are advised never to provide passwords and other sensitive details in response to unsolicited messages, no matter how urgent the actions they request may appear to be.