< Back to all clusters
[CRIME] · Germany · 13 sources

Sparkasse phishing emails threaten account lockout in Germany

Criminals are sending fake emails that appear to come from the Sparkasse, warning recipients that their online banking will be blocked unless a supposed security update is performed. The messages contain a red button that redirects users to a counterfeit website designed to look like the bank’s portal, where they are asked to enter login credentials, PIN, bank code, BIC or other sensitive data. Fact‑checking site Mimikama and the German Federal Office for Information Security (BSI) have identified the sender address (e.g., "ashoj.com") and the generic greeting as classic phishing indicators, as well as the urgent threat of an imminent lockout. Victims who enter their data hand it directly to the fraudsters, who may also try to obtain unauthorized transaction authorisations. The warning advises Sparkasse customers to ignore such messages, delete them as spam, and only log in via the official Sparkasse app or known web address.

The campaign targets Sparkasse customers throughout Germany and has been reported by multiple consumer‑media outlets. Awareness of the four warning signs—unauthenticated sender address, non‑personalised salutation, time‑pressure threats, and suspicious links—can help prevent credential theft.