Romanian Post: phishing warning from a Government institution

The Romanian Post phishing paid

The Romanian Post is once again the target of a phishing attack, with hackers trying to trick Romanians by any means, and CERT-RO, an institution of the Romanian Government, comes to our aid with a warning that we should take into account to be safe.

The Romanian Post has the image used this time in a phishing campaign that tries to steal Romanians' card data through a fake payment page, so if you see it somewhere, be careful, because it's not real.

"The friends from ProDefence present a new #phishing campaign that uses the visual identity of Pošta (Romanian Post National Company).

In this period marked by the launch of discounts of all kinds, there is the possibility that many users are waiting for information related to the delivery of the order, by mail. Attackers can take advantage of this situation, delivering messages similar to legitimate ones, but with malicious sites embedded in the mail.

As we can see in the images below, the attackers registered domains like posta-romana-ro-adresa[.]com, where they created a phishing page for potential victims.

Always check the source of the message you receive, read the text carefully and identify any grammar or wording mistakes, and if you suspect it might be a fraud attempt, scan that link or attachment with a security solution.

‼️ Avoid acting in haste, especially in the online environment. Take your time to make sure you don't become a victim of attackers.”

🎣 Friends from ProDefence present a new #phishing campaign that uses the visual identity of the Post Office...

Published by CERT-RO pe Wednesday, August 19, 2020