Thursday 20 March 2008

Halifax | Unauthorised Use Of Your Halifax Online Account

This is, I think, the first time that the Halifax has apepared as a target on these pages.

This one, sent a couple of days ago (delayed posting due my holiday!!!) tries to panic the recipient into believing they have to immediately check that no-one has been able to get at their cash.

It's sent to 'Dear Customer' and 'undisclosed-recipients' - what sort of warning email would really be sent like that?

The actual destination URL is http://68-185-94-70.dhcp.scrm.ca.charter.com/halifax-online.co.uk/_mem_bin/halifax_LogIn/formslogin.aspsource=halifaxcouk/

charter.com seem to be a respectable site, who themselves have been the targets of phishing emails from what their site says. I presume they will quickly close down these extra pages - if not already done so. I'm guessing though that someone has hacked their site and posted these pages without the site owner's knowledge.

Here's the content of the email:

Dear Customer

Halifax PLC. has been receiving complaints from our customers for unauthorised use of the Halifax Online accounts. As a result we are making an extra security check on all of our Customers account in order to protect their information from theft and fraud.


Due to this, you are requested to follow the provided steps and confirm your Online Banking details for the safety of your Accounts. Please Click Here To Start .


However, Failure to do so may result in temporary account suspension. Please understand that this is a security measure intended to help protect you and your account. We apologize for any inconvenience.

Thanks for your co-operation.

Fraud Prevention Unit
Legal Advisor
Halifax PLC.

No comments: