logo

PII Pillage: How Attackers Use BitPanda to Plunder Credentials

ID: cf471c30-629f-59fa-8e0f-f174872196ed

STIX ID: report--cf471c30-629f-59fa-8e0f-f174872196ed

Feed Name: Cofense Blog

Threat Score
55/100

Date Published: 2026-02-23

Date Updated: 2026-04-27

Author: Cofense

...
...

Cofense PDC observed a targeted phishing campaign impersonating Bitpanda that uses a deceptive domain (account-bitpanda.com) and near-identical cloned pages to harvest login credentials and sensitive PII (name, phone, address, DOB). The attack lures victims with an account-block scare, collects data across multiple form pages, then redirects to the real Bitpanda site to appear legitimate; it bypassed secure email gateway protections and is recommended to be mitigated with email threat detection and managed remediation services.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.