Beware of PNB MetLife Payment Gateway that Steals Your Details and Direct to UPI Payments
ID: 3dd69d95-bc32-5d11-bc91-e59679814535
STIX ID: report--3dd69d95-bc32-5d11-bc91-e59679814535
Feed Name: cybersecurityNews.com
A sophisticated phishing campaign impersonating PNB MetLife leverages convincing mobile payment gateway pages to collect customer names, policy numbers, mobile numbers and payment amounts, then redirects victims to UPI apps (PhonePe, Paytm, Google Pay) to complete fraudulent payments. Stolen data and payment details are exfiltrated in real time to attacker-controlled Telegram bots/channels using hardcoded bot tokens and chat IDs; additional techniques include clipboard abuse (copying attacker UPI IDs), dynamic UPI QR generation, countdown urgency, and hosting via free platforms (EdgeOne Pages). Advanced variants escalate to harvesting full bank account and debit card details (card number, expiry, CVV), turning the scheme into large-scale financial and identity theft.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
