Skip to navigation Skip to content
THE RIDGEWOOD BLOG.
  • HOME
  • ABOUT
  • RED EMAIL
  • STAY UPDATED!
  • LOCAL TOWNS
  • ADVERTISING
  • HOME
  • ABOUT
  • RED EMAIL
  • STAY UPDATED!
  • LOCAL TOWNS
  • ADVERTISING
Posted on April 28, 2023April 27, 2023 by James — Leave a comment

Scammers Target Bank Customers to Steal Customer Passwords

unnamed 3

the staff of the Ridgewood blog

Ridgewood NJ, the NJCCIC observed multiple banking-themed phishing campaigns attempting to be delivered to New Jersey State employees to steal account credentials or personally identifiable information (PII). In one campaign, threat actors spoofed  the display name for Customers Bank, which has multiple locations in the United States and New Jersey; however, the sender’s email address was unassociated to the bank. The subject lines may contain keywords such as notification, alert, action required, important verification, and important notification. The non-personalized email informs the target that a temporary hold has been placed on their account due to a failed identity verification. The target is then advised to click a link included in the email, which has been identified as phishing and malicious by VirusTotal.

Customers Bank phishing webpage v. Customers Bank official webpage.

unnamed

If clicked, the target is directed to a Customers Bank phishing webpage which prompts the target to enter their username, password, date of birth, Social Security number, registered email address, and email password. The information is then sent to the threat actors in the background if entered. The phishing webpage uses Customers Bank branding to mimic the Customers Bank official webpage; however, the official webpage requests less information to unlock an account, including last name, date of birth, Social Security number, zip code, and locked login ID. Although the phishing webpage is no longer working, threat actors may create new phishing links and campaigns.
Additionally, we continue to receive reports of SMS text messages purporting to originate from financial institutions, such as PNC Bank. Messages may list the vendor, claiming that a transaction is on hold or inquiring if a specified financial transaction was attempted by the target. The message also includes a phone number to call to approve or decline the transaction.
The NJCCIC assesses with high confidence that threat actors will continue to use social engineering tactics to gain unauthorized access to financial bank accounts and commit further malicious activity. The above examples, combined with the prevalence of data exposed via breaches and information publicly available online, highlight the importance of staying vigilant to help prevent successful social engineering attempts, account compromises, identity theft, and fraudulent activity, including opening accounts and taking out loans in the victim’s name without their knowledge.
The NJCCIC recommends users and organizations educate themselves and others on these continuing threats and tactics to reduce victimization. Users are advised to refrain from responding to unsolicited communications, clicking links, or opening attachments from unknown senders, and exercise caution with communications from known senders. If unsure of the legitimacy, contact the sender via a separate means of communication, such as by phone, before taking any action. Additionally, visit websites directly by manually typing the legitimate URL into a browser and refrain from navigating to online accounts via links delivered in emails and SMS text messages. If victimized, please report to your financial institution, change the password used for the compromised account and any other accounts using the same password, and log out of any unrecognized devices. Additional recommendations and resources can be found in the Identity Theft and Compromised PII NJCCIC Product, including credit freezes and enabling multi-factor authentication (MFA) on accounts. Phishing emails and other malicious cyber activity can be reported to the NJCCIC and the FBI Internet Crime Complaint Center (IC3).
facebookShare on Facebook
TwitterPost on X
Category: village of ridgewood
Tags: FBI Internet Crime Complaint Center (IC3), NJCCIC, personally identifiable information, steal account credentials

Post navigation

Previous post: Ridgewood may spend $100k to build a sidewalk to nowhere? – Ridgewood’s Mayor thinks it’s a good idea – We disagree
Next post: New Ramsey Teacher Contract will Lengthen Schools Day
Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

The Ridgewood Blog Polls VOTE NOW!
Recent Comments
  • Anonymous on The $12 Billion Failure? Why NJ Schools are Still Cutting Programs Despite Record Aid
  • Anonymous on The Death of Small Town NJ? How Oradell Was Forced into High-Density Zoning
  • Anonymous on The Death of Small Town NJ? How Oradell Was Forced into High-Density Zoning
  • Anonymous on The Death of Small Town NJ? How Oradell Was Forced into High-Density Zoning
  • Orlando Miquel on New Jersey School Taxes: Which Towns Pay the Most? (Data Breakdown)
  • Anonymous on Franklin Lakes Police Uncover Drugs During Routine Old Mill Road Traffic Stop
  • Anonymous on The Death of Small Town NJ? How Oradell Was Forced into High-Density Zoning
  • Anonymous on Check Your Bank Account: ‘Mail Fishing’ Scams Return to Glen Rock
  • Anonymous on Check Your Bank Account: ‘Mail Fishing’ Scams Return to Glen Rock
  • Anonymous on Tacos from the Sky? NJ’s First Commercial Drone Food Delivery Launches This Month
  • Sal B. on Energy Boost or Ecological Risk? The Truth Behind NJ’s Massive New Floating Solar Project
Tweets by TRBNJNews
The Red Email

Click here to Share the Unknown… 

  • LOCAL NJ TOWNS NEWS
  • ADVERTISE WITH US
  • SITEMAP
Tags
201 07450 Bergen County Bergen County Prosecutor Mark Musella BOE CBD coronavirus COVID-19 COVID19 Democrats Glen Rock NJ Graydon Pool high density housing Jobs New Jersey NJT Obamanomics Paramus NJ parking Phil Murphy RHS Ridgewood Ridgewood Art Institute Ridgewood Board of Education Ridgewood Emergency Services RidgewoodEstateCard Ridgewood Fire Department Ridgewood Moms and dads Ridgewood NJ Ridgewood Police Ridgewood Public Library Ridgewood Real estate Ridgewood Recycling Ridgewood Schools Ridgewood schools Ridgewood schools will be OPEN on Friday Ridgewood Train Station Ridgewood Water shop Ridgewood taxes Urbanization Valley Hospital Village Council Village of Ridgewood Village of Ridgewood Mayor Susan Knudsen

© THE RIDGEWOOD BLOG. 2026
Built with Storefront.
error

Enjoy this blog? Please spread the word :)

  • RSS
  • Follow by Email
  • Facebook
  • X (Twitter)