cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Online security

Get answers and information about our security products.

Phishing scam

Durian1
Popular Poster
Private Message TalkTalk
Message 17 of 17

I received an email from TalkTalk this week advising about the new dashboard layout and taking more control of my account. I clicked on my saved shortcut in safari to sign into my account but got an error message. So I tried the link on the mail and it took through ok and all the data looked genuine. However when I was navigating it advised there was a technical error and I signed out. After that I struggled to sign in being advised it was a technical error. However I managed to sign in with Google Chrome.

When I tried signing in from my iPhone on safari I got a warning on Microsoft Defender that it had blocked a phishing link cdn.polyfill.io. I tried logging in on Google Chrome on my iPhone and got the same warning. The account appeared OK. I called TalkTalk security and they said change your password which I did but its made no difference. They couldn't find any problems and denied the link was coming from them. Sometimes if I sign in on my laptop I have a message saying due to technical problems I can't sign in but yet I can see my account page behind this. I have scanned my MacBook for malware and nothing was found. iPhones I am told should be OK and MS defender is blocking the link. Does anyone else have any ideas or similar issues?

0 Likes
16 REPLIES 16

Message 1 of 17

There's not much we can do in our end, but I'll escalate to see if that's possible. Thanks

Message 2 of 17

Hi siphosethu-TT

It turned out not to be a phishing scam as explained in all my other posts. Your technical on line support confirmed the email came from TT. Also I have seen the same emails to other users about your new dash board layout. 
It seems to me that your website is issuing a legacy link to cdn.polyfill.io which other posts seem also think is possible. Please can someone check the website and do a thorough trawl to remove the link if there. Please advise

0 Likes

Message 3 of 17

Hi there @Durian1, if you get any scam email, please use the link below advising you how you go about handling phishing emails. Thanks

 

Phishing emails - everything you need to know

 

0 Likes

Message 4 of 17

apologies typo on your name nambuso-TT on last post 😬

0 Likes

Message 5 of 17

Hi ambush-TT

Yes it was from TT regarding the new dashboard layout and taking more control yourself of your account. I spoke to someone in the customer support and they confirmed they sent the email. I also know someone else who received the same email. Both emails were personalised using our respective first names which I believe is a good flag from the advice TT publish about potential phishing emails. Ie suspicious emails are usually impersonal. 

0 Likes

Message 6 of 17

Hi there @Durian1 I am very sorry to hear this. Please confirm if the email you received was from TalkTalk?

0 Likes

Message 7 of 17

Hi Nambuso-TT

Do you know if TT will be investigating this cdn.polyfill.io issue? It’s been very stressfull investigating only to find the likely issue could be with TT. If so then poor housekeeping on TT’s behalf. 
please advise 

0 Likes

Divsec
Community Star
Private Message TalkTalk
Message 8 of 17

Hi @Durian1 starting to sound like a bit of TT not keeping their settings right up to date.

Your checks have been very thorough and for what it's worth I would feel reassured and secure.

I don't work here and all my opinions are my own.

Message 9 of 17

TalkTalk confirmed they sent me the email and there was nothing unusual about it. It addressed me with my name. I know other users who have had the same email so its genuine. I have scanned my MacBook with the TalkTalk Safe software on line and no reports of anything untoward

0 Likes

Message 10 of 17

I was wary of the email at first which is why I went straight to the TalkTalk web site to sign in

0 Likes

Durian1
Popular Poster
Private Message TalkTalk
Message 11 of 17

TalkTalk confirmed they sent me the email and there was nothing unusual about it. It addressed me with my name. I know other users who have had the same email so its genuine. I have scanned my MacBook with the TalkTalk Safe software on line and no reports of anything untoward

0 Likes

Message 12 of 17

Yes my apps on my iPhone are up to date and hat's where I get the MS Defender notification

0 Likes

fr8ys
Community Star
Private Message TalkTalk
Message 13 of 17

Also if you hover over the link it will probably show as a non TalkTalk address. If that's so just delete the mail.



TalkTalk have requested that spam mail be reported to them.
How to do this can be found here
https://community.talktalk.co.uk/t5/Articles/Phishing-emails-amp-everything-you-need-to-know/ta-p/30....
Thank you.

Please remember to mark Solved Posts with Best Answer. Doing so helps other customers and saves TalkTalk's Support Team time by only looking at unsolved topics. Thanks, Steve (a fellow customer).

Divsec
Community Star
Private Message TalkTalk
Message 14 of 17

Hi @Durian1 your post has been escalated.

Are your safari / apple apps up to date? The issue points to malware which was neutralised last year.

I don't work here and all my opinions are my own.
0 Likes

nambuso-TT
Support Team
Staff
Private Message
Message 15 of 17

Thanks for advising @fr8ys

0 Likes

fr8ys
Community Star
Private Message TalkTalk
Message 16 of 17

You should be very wary of emails purporting to be from TalkTalk that contain links. 

 

If in doubt, don't use them but sign in from your own trusted bookmarks.

 

Changing your passwords are essential and if you use the same combination, i.e email address and password to sign in in any other sites, change those passwords too.

 

It sounds like you are using a pc too. If so rye a full virus scan of that and a malware scan is recommended. I use the free version of malwarebytes.

 

 

Please remember to mark Solved Posts with Best Answer. Doing so helps other customers and saves TalkTalk's Support Team time by only looking at unsolved topics. Thanks, Steve (a fellow customer).
0 Likes