Cyberatak on PKO BP. Customers can sleep peacefully?

PKO BP, zdjęcie ilustracyjne

PKO BP confirmed Cyberatak. Employee official data was disclosed, but transaction systems and customer data remained secure.

The growing number of cyber attacks is increasingly hit by the financial sector. Recently, the largest Polish bank – PKO BP struggled with an incident. According to the institution, the official data of the employees was disclosed.

Luka in security

The bank reported that on September 8 he received a message from the person claiming to be a “tester”. The sender claimed that he had contact details of PKO BP employees. After verification, the bank confirmed that there was actually a violation. As stated, the gap was quickly identified and removed.

PKO BP emphasized that the incident did not apply to transaction systems, which is why bank customer data remained completely safe. The bank’s confidential information, its companies or sensitive private data of employees have not been disclosed – it is only about business contact details.

The bank’s authorities ensure that all supervisory institutions and relevant services have been informed about the event. At the same time, a message was transferred to employees so that they had full knowledge of the incident and possible consequences.

Cybercriminals’ activity is growing

The event is part of a wider trend of growing cyber criminals. According to CSIRT KNF, operating at the Polish Financial Supervision Authority, as many as 175 domains used for bank fraud were identified in 2024. Criminals created false websites and advertising, impersonating financial institutions to extort login details and card numbers.

The scheme of action is often similar. On social networks there are advertising of alleged prizes that direct users to pages confusingly similar to banking services. The Google search engine was also used to publish false ads, including impersonating PKO BP.

Experts from CSIRT KNF remind you of several rules that help avoid threats. First of all, always check the website address, making sure that it does not contain typos or suspicious characters. It is worth using only official banking applications to log in and perform financial operations. It is also important to maintain vigilance towards SMSs or phones asking for data-in case of doubt, contact the bank’s helpline directly.

Similar Posts