Polish authorities warn of targeted Signal phishing attacks and raise alert over local contest scams
The Polish government’s cyber‑security office has issued a warning about a wave of phishing attacks aimed at users of the Signal messenger. State‑linked APT groups are sending messages that masquerade as technical support, urging officials to provide verification codes or scan fake QR codes, which could enable attackers to hijack accounts and read confidential communications. The office recommends public‑sector employees stop using Signal for official matters and switch to national encrypted tools such as mSzyfr and the SKR‑Z system.
In a separate but related incident, police in Jastrzębie‑Zdrój reported that a senior resident was duped by a fake online contest. Believing she had won, she transferred a total of 12,100 zł in three payments before the bank blocked the final 6,500 zł transfer, prompting the fraud to be uncovered. Authorities are urging the public to verify any unexpected prize claims, avoid sharing banking credentials, and use two‑factor authentication for online accounts.