At least three sites have been compromised and used to host phishing pages

Jun 7, 2013 18:11 GMT  ·  By

Reports have been coming in about a new spam run that’s designed to trick Barclays customers into visiting a bogus website. 

Entitled “Payment Alert on Your Barclays Account” or “Payment Alert on Your Account,” the emails read something like this:

“Online Banking Mobile Alert Notification Your account has been upgraded on our system for transactions alert.

Validate your account. Telephone Banking code and mobile phone number correctly. To start receiving all transaction alerts on your mobile phone.

Mobile Alert! This will give u current updates on your account.”

The links from the emails don’t point to the legitimate Barclays website, but to a phishing page hosted on various compromised websites.

According to reports from anti-phishing service Millersmiles.co.uk, there are at least three different domains that host the malicious webpages, which are designed to harvest both personal and financial information.

Avoid clicking on links contained in such emails. If you’re a victim of this scam, be sure to contact Barclays right away.