Cybercriminals launch fake mObywatel attack to steal banking data
Criminals are sending SMS messages with fictitious fines and directing recipients to counterfeit government websites. They aim to obtain card information and steal money from unsuspecting users.

Cybercriminals launch fake mObywatel attack to steal banking data
Organised criminal groups are conducting a new phishing campaign exploiting the brand of a state-run application. Victims receive text messages claiming they have an outstanding traffic fine. Criminals assert that failure to settle the debt risks additional fees, legal proceedings or vehicle impoundment.
The SMS contains a link directing to an external website. This site is carefully designed to appear as an official government administration portal. Users who visit it are asked to enter their vehicle registration number, followed by payment details including card information.
The objective of the entire operation is to obtain confidential financial information and directly drain the victim's account.
Karolina Kmak, a digital security expert, warns of the consequences of entering data on such websites. This can result in loss of savings, unauthorised transfers or further misuse of stolen information by criminals. She adds that criminals deliberately create a sense of urgency and threaten legal consequences to force a person into immediate action without thinking.
The specialist recommends: do not open links from unknown senders, do not enter any confidential data on suspicious portals, do not reply to suspicious messages or call numbers from such SMS messages. If someone has already provided their data, they should immediately contact their bank, block their card and reset transaction limits, and then thoroughly review the transaction history on their account.
Material based on reports from GS24.
Source: Google News PL — Crime (pl)