Blogs & Stories

SpiderLabs Blog

Attracting more than a half-million annual readers, this is the security community's go-to destination for technical breakdowns of the latest threats, critical vulnerability disclosures and cutting-edge research.

Trustwave TrustKeeper PCI Scan Notification - Phishing ALERT

Over the last few hours, Trustwave has received multiple reports of individuals receiving fake emails pretending to be from Trustwave.

These emails did not originate from Trustwave. Recipients should immediately delete the emails and not follow any links presented in them.

These emails indicate they are being sent as part of a "TrustKeeper PCI Scan Notification" and are alerting the recipient to login to a portal to respond to an issue related to a vulnerability scan of their network.

Early analysis has shown these emails are being sent from many variations of fake Trustwave email addresses and redirecting users to multiple non-Trustwave URLs. Visiting these URLs might introduce malware onto your systems.

Below is a screenshot of a fake email: