logo

Robinhood Glitch Allowed Attackers to Send Phishing Emails to Customers

ID: 0b5c87cb-8068-5209-a8f4-7dcebfef02fa

STIX ID: report--0b5c87cb-8068-5209-a8f4-7dcebfef02fa

Feed Name: KnowBe4 Blog

Threat Score
50/100

Date Published: 2026-05-21

Date Updated: 2026-05-22

Author: KnowBe4 Team

...
...

A phishing campaign abused a flaw in Robinhood’s account creation process to send falsified "recent login" emails from [email protected]. Attackers exploited Gmail’s treatment of periods in usernames to create accounts tied to existing Gmail addresses, injected malicious HTML into device name fields, and caused legitimate notification emails to render clickable phishing links. Robinhood states this was not a system breach and that customer data and funds were not impacted; recipients are advised to delete suspicious emails and avoid clicking links.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.