Phishing Campaign Uses Fake PayPal Alerts to Compromise Credentials

Phishing Campaign Uses Fake PayPal Alerts to Compromise Credentials

First seen 16 Jan 2026, 03:59 UTC Infosecurity-MagazineScworld 29.2

Article Content

Browse articles
ThreatCluster

Threat actors have initiated a phishing campaign utilizing fraudulent PayPal alerts to steal credentials. The attack involves social engineering tactics that lead targets to download legitimate remote monitoring and management tools, specifically LogMeIn Rescue and AnyDesk, to gain unauthorized access to personal and corporate accounts.