When Your Bank Phishes Its Own Customers

I recently got a bank account with a local credit union. This week they sent me what I can only describe as what amounts to a very good phishing email for their own online banking service. I had to stop in my tracks as I looked at it, as I couldn’t quite believe it. I’m anonymizing the details of the credit union and domains in question as I’ve already sent them some comments as to why this is a bad idea and gotten some positive feedback from their VP of remote services. Try getting that kind of response (or any response) from a larger bank! One of the reasons why credit unions are better than larger banks.

Let’s take a closer look at this “phish”.

image of the suspicious HTML email

Excerpt of the suspicious email

Continue reading