Wise - email spam possible data breach?

Not sure if anyone else has received any suspicious emails claiming to come from Wise Support, but I have.

I have hardly used my Wise card/account since I opened it, but I received an email asking me to confirm my personal details by 30 July (no year) and a confirm your details link, all set up I suspect to screw any poor bugger that isn’t savvy enough to recognise a spam email when it’s staring them in the face.

It also states if I don’t confirm my details, my account will be restricted.

I’ll point out, the email not once mentions my name. There’s nothing in my Wise App that mentions anything about what the email states within it. And to top it off, the email failed it’s own domain authentication requirements. Obviously, I’ve spammed it and reported it as junk.

1 Like

Related to this perhaps? Data breach at Evolve Bank & Trust in the US | Wise Help Centre

Possibly. In any case it’s concerned me enough to bin Wise off. I’ve never given details of my card or account out to anyone at any time, so clearly there has been a data breach somewhere.

1 Like

I have seen such incidents even before the reported data breach. So not sure if they are related or not.

Edit:
To add on, some of the similar emails I got were sent to an address never registered with Wise.
This also included “receiving” money on hold.

Well it’s a definite data breach because I’ve now received more emails all claiming to have come from Wise but all from utterly non sensical email addresses. Thankfully my email provider Proton is auto spam binning said emails.

1 Like

Honestly Wise, Revolut etc are so big people just buy email lists and try their luck these days.

4 Likes

I’ve had spoof Wise emails in the past. I wouldn’t necessarily put it down to a data breach. They are a big company, so scammers probably just cast the net wide. Throw enough balls at enough coconuts and eventually they will win a goldfish.

3 Likes

Unless the phishing emails included details that only Wise would know about you, then this is almost certainly not related to any sort of breach at their end. I receive a large number of phishing emails, many of which purport to be from well-known companies, some of which I have accounts with. As @Recchan said, scammers just send their malicious emails to lists of addresses.

If I closed accounts when I received phishing emails spoofing real companies, I’d have nowhere left to shop online and nowhere to bank! :slight_smile:

2 Likes

Yep. Standard phishing isn’t so effective but it plays to the lowest common denominator.

Spear phishing and a bit of social engineering, even the smartest people look like fools sometimes.

Building society has been calling me over the last week to sort something out. They’re genuine calls, but I just don’t go through security with anybody who is calling me these days. I don’t know why banks think they can call you and expect you to go through security when scams are so common. Helpfully, this lot even called from a number that isn’t on their website so it falls at my first hurdle i.e. if I can’t find the number, then it’s a scam is my assumption.

Left a message asking me to call back on that number. Ain’t on their website, so I used the number that is on their website.

2 Likes

100% this. I’m exactly the same.

1 Like

I was going to say that it’s good to see that it’s not just me being paranoid but then we aren’t paranoid as they really are out to get us :frowning:

1 Like

To be fair banks can’t tell you to beware and sanity check things while also failing to sanity check themselves.

They can do this, but they should have a check code that THEY tell YOU to clear your security before you clear theirs.

Nothing wrong with a bit of healthy paranoia.

You would think that they’d all do something along those lines but I suspect the bad guys could game that too.

It also seems reasonably common for the banks to even fire out an email with a login link.

Nationwide called me and first question was say your long credit card number. I hung up. Verified from X support who said it was indeed Nationwide trying to call me.

Exactly same methods scammers use.

1 Like

Nationwide called me some years ago regarding a suspected fraudulent transaction.

The very first question they asked was “Are you happy to go through security questions with me?” I said no, and they said that was fine, and told me to call the number on the back of the card.

Personally, I don’t think I should have been given the option. They could have just told me to contact Nationwide on the number on the back of the card.

1 Like

Yes, absolutely. This should be standard for all financial institutions.

I had nothing wrong with my card. My introductory offer was coming to an end so they were calling about it.

When there was suspected fraud, they blocked my card with no warning or contacting me until ai called 2 weeks later because the blocked transactions were all mine. That is what puzzled me more.

On a separate occasion that also happened to me. I noticed because they’d replaced my card (but I hadn’t yet received it) and I couldn’t look at statements, so I contacted them about that.