loader gif

New phishing scam asks users to confirm unsubscribe request

New phishing scam asks users to confirm unsubscribe request
  • The scam emails have subject lines similar to “Confirm your unsubscribe request” or “Client #980920318 To_STOP_Receiving These Emails From Us Hit reply And Let Us Know”.
  • This scam aims to harvest active email addresses that can be used for various other scam campaigns.

Researchers have observed a long-running phishing scam campaign that pretends to be an unsubscribe confirmation request. This scam aims to harvest active email addresses that can be used for various other scam campaigns.

How does the scam work?

The scam emails have subject lines similar to “Confirm your unsubscribe request” or “Client #980920318 To_STOP_Receiving These Emails From Us Hit reply And Let Us Know”.

  • The emails include a link and ask users to click on the link in order to unsubscribe.
  • Upon clicking on the link, it will compose a new message with the subject of ‘Unsubscribe’, and aims to send it to 15 to 20 email addresses.
  • These email addresses are for domains hosted by noip.com's free dynamic DNS service.
  • Upon sending the email, the scammers behind this campaign will get a list of active email addresses.
  • The list can then be sold to other scammers or can be used in various other scam campaigns.

“Please_confirm your Unsubscribe
To confirm your Unsubscribe, please click here or on the link below.
Unsubscribe me!
Thank you!,” the phishing email read, BleepingComputer reported.

How to stay protected?

  • It is always recommended to never open any email or click on any attachment /link that is from anonymous senders.
  • Upon opening the link, if you’re asked to send an email to 15-20 email addresses, do not send the email and simply delete the email.
loader gif