Explanation
Threat actors are using a Post.lu theme to collect personal information and credit card information.
The phishing mail leads the user to believe that a new package was delivered, and by clicking on the link “MyPost” the user is redirected to the phishing landing page.
After clicking on the link, they are first redirected to a fake form which asks for personal information.
Once this information is provided, they are then redirected to a fake credit card form.
Example