logo

Beware of PNB MetLife Payment Gateway that Steals Your Details and Direct to UPI Payments

ID: 3dd69d95-bc32-5d11-bc91-e59679814535

STIX ID: report--3dd69d95-bc32-5d11-bc91-e59679814535

Feed Name: cybersecurityNews.com

Threat Score
70/100

Date Published: 2026-01-22

Date Updated: 2026-04-21

Author: Tushar Subhra Dutta

...
...

A sophisticated phishing campaign impersonating PNB MetLife leverages convincing mobile payment gateway pages to collect customer names, policy numbers, mobile numbers and payment amounts, then redirects victims to UPI apps (PhonePe, Paytm, Google Pay) to complete fraudulent payments. Stolen data and payment details are exfiltrated in real time to attacker-controlled Telegram bots/channels using hardcoded bot tokens and chat IDs; additional techniques include clipboard abuse (copying attacker UPI IDs), dynamic UPI QR generation, countdown urgency, and hosting via free platforms (EdgeOne Pages). Advanced variants escalate to harvesting full bank account and debit card details (card number, expiry, CVV), turning the scheme into large-scale financial and identity theft.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.