Friday 22 February 2008

Natwest | Urgent Security Notification For Client -Thu, 21 Feb 2008 20:44:20 -0600

Today the Natwest NOF phishing email is doing the rounds, again. Slightly different subject, but basically the same email.

The email is sent to the one email address, which is displayed as the bit before the @ to try to make it look more realistic. The target URL is http://online.natwest.com.platoniv4.es/NOF/startupdate.aspx?refererident=[removed], which is obviously very wrong. There are already a handful of results on Google for platoniv4.es as a suspected phishing site.

Here's the content of the email, my copy has already been sent to phishing@natwest.com, so they should be aware of the email. That's assuming my ISP allows the email through - they quite often delete such emails!

Dear NatWest Bank customer,

We have implemented security measures consistent with our internal information security practices to help us keep your information secure. These measures include technical and procedural steps to protect your data from misuse, access or disclosure, loss, alteration or destruction.

One of these security measures is NOF (NatWest Online Form) to help us to keep your personal and banking data up to date.

You should complete NOF on a regular basis.

Please complete NOF using the link below:

NatWest Online Form

NatWest Automated Mail Service. Please do not respond to this mail.

No comments: