Overview
- Germany’s consumer watchdog warns of a Commerzbank‑branded email that urges a login by October 1 to confirm an update and routes users to a credential‑stealing site.
- Sparkasse reports active email and SMS lures referencing issues like an expiring pushTAN app or S‑ID‑Check settings that drive customers to fraudulent webpages.
- Data harvested from these pages is used in follow‑up phone calls that spoof Sparkasse caller IDs to push device releases or confirm transfers.
- Officials advise moving suspicious messages to spam, avoiding embedded links, and verifying alerts only through official banking apps or websites.
- Customers who entered information should immediately lock online banking and contact their bank, with similar spoofing attempts also seen against Amazon and Targobank accounts.