{"id":420520,"date":"2026-09-30T11:33:30","date_gmt":"2026-09-30T11:33:30","guid":{"rendered":"https:\/\/malwaretips.com\/blogs\/?p=420520"},"modified":"2026-09-30T11:33:30","modified_gmt":"2026-09-30T11:33:30","slug":"macquarie-annual-security-update-scam","status":"publish","type":"post","link":"https:\/\/malwaretips.com\/blogs\/macquarie-annual-security-update-scam\/","title":{"rendered":"Macquarie Annual Security Update Scam: The Fake Banking Login Explained"},"content":{"rendered":"<p>An email says your annual banking security update is still unfinished. It looks like the sort of small administrative task you meant to get around to.<\/p><div id=\"mwtad463903163\" class=\"gas_fallback-ad_309684--placement_406659\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3957935887\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>The Macquarie annual security update scam uses that familiar feeling. Before clearing the notice from your to-do list, check where the proposed update actually takes place.<\/p>\n<figure class=\"wp-block-image size-full\"><img fetchpriority=\"high\" decoding=\"async\" src=\"data:image\/gif;base64,R0lGODlhAQABAAAAACH5BAEKAAEALAAAAAABAAEAAAICTAEAOw==\" class=\"wp-image-420521 lazyload\" alt=\"Illustrative phishing email claiming that an annual banking security update is incomplete\" width=\"1536\" height=\"1024\" loading=\"eager\" title=\"\" sizes=\"(max-width: 1536px) 100vw, 1536px\" data-src=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/09\/annual-hero.png\" data-srcset=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/09\/annual-hero.png 1536w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/09\/annual-hero-300x200.png 300w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/09\/annual-hero-1024x683.png 1024w\"><\/figure>\n<div id=\"mwtad1123176336\" class=\"gas_fallback-ad_309746-ad_309685-placement_406660\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"4456629336\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Overview<\/h2>\n<h3>The missing-update story comes from an impersonator<\/h3>\n<p>Macquarie&#8217;s April 2026 scam alert describes an email claiming that a customer&#8217;s annual security update is missing and inviting them to update their details.<\/p><div id=\"mwtad2666375538\" class=\"gas_fallback-ad_381396-ad_309685-placement_406667\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"1471373341\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>The link leads to a counterfeit Macquarie login page. Details entered there may be used for attempted unauthorized account access and transactions.<\/p>\n<p>That documented route supports calling the email a phishing scam. It does not mean legitimate banking security reviews are fraudulent or unnecessary.<\/p>\n<p>The real bank is being impersonated. Readers should distinguish its ordinary account services from the unfamiliar page promoted by the false notice.<\/p><div id=\"mwtad1702629936\" class=\"gas_fallback-ad_309686-ad_309685-placement_406668\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"6935453015\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<h3>Why this message can feel routine instead of alarming<\/h3>\n<p>Unlike a dramatic warning about stolen funds, a missing annual update sounds like an ordinary obligation. That makes it easy to handle without much reflection.<\/p>\n<p>You may remember updating an address or confirming information previously. The email borrows that memory without proving a genuine review is due.<\/p>\n<p>The apparent task is to complete administration. The dangerous action is supplying account credentials to a site whose ownership has not been established.<\/p><div id=\"mwtad3774999457\" class=\"gas_fallback-ad_381401-ad_309685-placement_406669\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"5315249587\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<h3>The most useful checks happen outside the email<\/h3>\n<ul>\n<li>Open the Macquarie app or official website independently.<\/li>\n<li>Check whether the same request appears in your authenticated account.<\/li>\n<li>Ask support through a known contact route if the notice remains unclear.<\/li>\n<li>Do not treat the email&#8217;s button, sender name, or deadline as verification.<\/li>\n<li>Never approve an unexpected payment merely to finish a supposed security review.<\/li>\n<\/ul>\n<p><a href=\"https:\/\/www.macquarie.com.au\/security-and-fraud\/scams\/latest-scams-alerts.html\" target=\"_blank\" rel=\"noopener\">Macquarie&#8217;s official alerts page<\/a> identifies the April campaign and advises customers to reach online banking directly rather than through message links.<\/p>\n<p>Our two example screens use fictional domains and generic layouts. They illustrate the email-to-login progression rather than reproduce a captured bank customer session.<\/p>\n<div id=\"mwtad1355535621\" class=\"gas_fallback-ad_309747-ad_309685-placement_406661\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"9589536513\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>A Security Review and a Password Request Are Not the Same Thing<\/h2>\n<div id=\"mwtad2934027883\" class=\"gas_fallback-ad_381404-ad_309685-placement_406670\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"8735619847\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><p>A bank can have legitimate reasons to ask customers to review information. That fact should not be used to authenticate every message invoking security.<\/p>\n<p>The important distinction is the route. An independently opened banking session gives you a stronger basis for checking account tasks than a link in an unexpected email.<\/p>\n<p>A familiar name at the top of a form does not create that trust. The person operating the website can place any name there.<\/p>\n<div id=\"mwtad1537108334\" class=\"mwtadp5 mwtadentity-placement\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"https:\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\"\r\n     crossorigin=\"anonymous\"><\/script>\r\n<ins class=\"adsbygoogle\"\r\n     style=\"display:block; text-align:center;\"\r\n     data-ad-layout=\"in-article\"\r\n     data-ad-format=\"fluid\"\r\n     data-ad-client=\"ca-pub-7750719144850257\"\r\n     data-ad-slot=\"8560433799\"><\/ins>\r\n<script>\r\n     (adsbygoogle = window.adsbygoogle || []).push({});\r\n<\/script><\/div><p>Similarly, a page that already contains your email address has not necessarily verified your account. The address may have been included in the link or message.<\/p>\n<p>Suppose an illustrative notice says a review only takes one minute. That description reduces the perceived effort, but says nothing about who will receive the details.<\/p>\n<p>The quick task may actually require your most important banking secret. The short completion time is therefore irrelevant to the potential consequence.<\/p>\n<div id=\"mwtad2601487332\" class=\"mwtadp6 mwtadentity-placement\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"https:\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\"\r\n     crossorigin=\"anonymous\"><\/script>\r\n<ins class=\"adsbygoogle\"\r\n     style=\"display:block; text-align:center;\"\r\n     data-ad-layout=\"in-article\"\r\n     data-ad-format=\"fluid\"\r\n     data-ad-client=\"ca-pub-7750719144850257\"\r\n     data-ad-slot=\"4034304343\"><\/ins>\r\n<script>\r\n     (adsbygoogle = window.adsbygoogle || []).push({});\r\n<\/script><\/div><p>Rather than judging whether the message sounds plausible, check whether the requested task exists when you access the bank through your own trusted route.<\/p>\n<p>If it does, complete it there. You do not need to return to the email to satisfy a genuine account requirement.<\/p>\n<div id=\"mwtad3637445189\" class=\"gas_fallback-ad_309748-ad_309685-placement_406662\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3906789406\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>How the Macquarie Annual Security Update Scam Works<\/h2>\n<h3>Step 1: The email creates an unfinished obligation<\/h3>\n<p>The lure says an annual update has not been completed. It frames the recipient as someone with a small outstanding responsibility.<\/p>\n<p>That can be persuasive even without a threat. People often want to keep financial accounts organized and avoid overlooking a legitimate maintenance request.<\/p>\n<p>The message may be read quickly between other tasks. A recognizable brand and a short instruction can encourage action before verification.<\/p>\n<p>Do not assume the claim is based on access to your banking records. The same unfinished-review story can be sent to many people.<\/p>\n<p>Receiving it does not establish that your account is overdue, restricted, or compromised. Those are facts to check through the actual bank.<\/p>\n<h3>Step 2: A convenient button supplies the wrong route<\/h3>\n<p>The email offers a direct way to update details. Clicking the button appears to save the effort of finding the relevant account page yourself.<\/p>\n<p>The convenience also puts the sender in control of the destination. The words on a button do not have to match the page it opens.<\/p>\n<p>Hovering can expose an unexpected destination on a desktop, but a complicated link can remain difficult to interpret. You are not required to solve it.<\/p>\n<p>Opening the official app independently removes that uncertainty. A genuine review should be explainable by legitimate support without requiring the original email link.<\/p>\n<h3>Step 3: The counterfeit login borrows the bank&#8217;s appearance<\/h3>\n<p>The reported destination imitates a Macquarie login page. Its purpose is to make entering account details feel like an ordinary step toward completing the review.<\/p>\n<p>Colors, field labels, and tidy spacing are easy to copy. A form&#8217;s resemblance to online banking does not establish a relationship with the bank.<\/p>\n<p>A secure-connection symbol is also insufficient. It can mean that information travels securely to the wrong website, which is still the wrong recipient.<\/p>\n<p>Check the full domain rather than searching visually for the word Macquarie. A bank name inside a longer unrelated address can be part of the deception.<\/p>\n<p>Do not use an invented example domain from an article as a blocklist of the only threat. Operators can change addresses while keeping the same story.<\/p>\n<h3>Step 4: Credentials leave the user&#8217;s control<\/h3>\n<p>Entering a client identifier and password into an impostor&#8217;s form can expose them to that operator. The genuine bank need not receive the attempted login.<\/p>\n<p>The form may show an error or move to another screen. Neither outcome proves that the information was rejected or kept private.<\/p>\n<p>Some phishing pages capture text as it is entered. If you typed sensitive information, do not rely on having avoided the final button.<\/p>\n<p>The bank&#8217;s warning establishes the risk of unauthorized access and transactions. It does not disclose every technical behavior of every page using this lure.<\/p>\n<p>That is why this article does not claim a particular live interception system, malware family, or universal sequence of verification-code prompts.<\/p>\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" src=\"data:image\/gif;base64,R0lGODlhAQABAAAAACH5BAEKAAEALAAAAAABAAEAAAICTAEAOw==\" class=\"wp-image-420522 lazyload\" alt=\"Illustrative counterfeit annual banking review page requesting a client ID and password\" width=\"1536\" height=\"1024\" loading=\"lazy\" title=\"\" sizes=\"auto, (max-width: 1536px) 100vw, 1536px\" data-src=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/09\/annual-detail.png\" data-srcset=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/09\/annual-detail.png 1536w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/09\/annual-detail-300x200.png 300w, https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/09\/annual-detail-1024x683.png 1024w\"><\/figure>\n<h3>Step 5: Further requests can widen the exposure<\/h3>\n<p>If another screen or caller asks for an authentication code, app approval, or payment, stop. Evaluate that request separately from the original review story.<\/p>\n<p>A code can authorize something very different from what a person claims. Read the notification&#8217;s actual description before taking any action.<\/p>\n<p>Do not approve an unfamiliar transaction to cancel it. A payment confirmation does not become a cancellation because someone says so over the phone.<\/p>\n<p>These are possible follow-up risks, not proof that the April email campaign always included them. Your response should reflect what actually happened to you.<\/p>\n<p>The useful next step is contact with the bank through a verified route, not another attempt to make the suspicious page work.<\/p>\n<div id=\"mwtad2389672648\" class=\"gas_fallback-ad_318930-ad_309685-placement_406663\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3818335085\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>How to Read the Sender and Domain Without Getting Lost<\/h2>\n<h3>Expand the sender information<\/h3>\n<p>A display name can say Account Services while the underlying address belongs elsewhere. Expand the sender details if your email application allows it.<\/p>\n<p>An unfamiliar address is a reason for caution, but a plausible address is not a complete pass. Sender presentation can be misleading or abused.<\/p>\n<p>Avoid replying to ask whether the email is real. That simply asks the person who sent the notice to validate their own claim.<\/p>\n<h3>Distinguish the website from its path<\/h3>\n<p>In a web address, a bank name after a slash is part of the page path, not evidence that the bank owns the site.<\/p>\n<p>For example, account-review.example\/macquarie would belong to the fictional example site. The final word would merely label a page there.<\/p>\n<p>Long subdomains can also distract from the actual registered domain. If the address feels confusing, use your established banking bookmark instead.<\/p>\n<h3>Verify the request rather than collecting more clues<\/h3>\n<p>You do not need to prove criminal ownership of a domain before refusing to enter a password. Uncertainty is enough to choose a safer route.<\/p>\n<p>Check your account directly, then contact support if necessary. This resolves the practical question without interacting further with the suspect site.<\/p>\n<p>A well-written message can be false, and an awkward legitimate message can be real. Independent verification is more dependable than a grammar test.<\/p>\n<div id=\"mwtad3839377164\" class=\"gas_fallback-ad_381388-ad_309685-placement_406705\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3191649120\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>If You Only Opened the Email or Clicked the Link<\/h2>\n<p>Write down your actions while they are fresh. Distinguishing a viewed page from a submitted password helps support avoid both unnecessary alarm and an incomplete response.<\/p>\n<p>Reading an email is not the same as giving away credentials. Do not assume your account was emptied simply because you opened the notice.<\/p>\n<p>If you clicked but entered nothing, close the page and inspect whether you downloaded anything or granted permissions. Those details determine whether additional action is needed.<\/p>\n<p>A website asking to send notifications is making a separate request. You can remove that permission in browser settings if you granted it.<\/p>\n<p>If a file downloaded automatically, do not open it. Tell your security software or support professional what happened rather than experimenting with the file.<\/p>\n<p>Check banking activity through the official app for reassurance. A suspicious email&#8217;s existence does not itself prove that someone has already logged in.<\/p>\n<p>If you entered details, however, act promptly. Waiting for visible losses can give an attacker more time to use information you already disclosed.<\/p>\n<div id=\"mwtad205199590\" class=\"gas_fallback-ad_381392-ad_309685-placement_406664\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"2944237110\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>What to Do if You Have Fallen Victim to This Scam<\/h2>\n<ol>\n<li><strong>Contact Macquarie through the official app or website.<\/strong>\n<p>Explain that you responded to an annual-security-update message and may have entered details on a false login page. Use independently obtained support information.<\/p>\n<p>Ask the bank to check recent access and transactions and advise what restrictions or credential changes are necessary for your account.<\/p>\n<\/li>\n<li><strong>Describe the information and approvals separately.<\/strong>\n<p>Specify whether you entered a client ID, password, card details, verification code, or personal information, and whether you approved anything in the banking app.<\/p>\n<p>Do not send passwords in an email report. Support needs to understand the type of disclosure, not receive another copy of the secret.<\/p>\n<\/li>\n<li><strong>Change exposed credentials from a trusted device.<\/strong>\n<p>Use the legitimate banking process and follow support&#8217;s instructions. If you reused the password elsewhere, replace it on those services with unique alternatives.<\/p>\n<p>If the suspect page led you to install software, use another clean device for recovery until the affected one has been assessed.<\/p>\n<\/li>\n<li><strong>Review activity and report anything unfamiliar.<\/strong>\n<p>Check completed and pending transactions, new recipients, and changed contact details where the bank makes them available. Record anything you cannot explain.<\/p>\n<p>Tell the bank which actions you performed under deception. Accurate information helps distinguish an unauthorized login from a payment you were tricked into approving.<\/p>\n<\/li>\n<li><strong>Keep the original notice and relevant timestamps.<\/strong>\n<p>Save the email, full sender information, destination URL, and approximate time you entered information. Screenshots can help, provided you keep them private.<\/p>\n<p>Avoid reopening the fraudulent form to recreate the experience. The evidence you already have is safer than further interaction with the operator.<\/p>\n<\/li>\n<li><strong>Check for device or browser changes.<\/strong>\n<p>Run Malwarebytes if you downloaded or installed suspicious software, or notice signs of compromise. Obtain security tools through their official websites.<\/p>\n<p>AdGuard can provide an additional layer against some deceptive ads and browsing destinations. It cannot change exposed bank credentials or reverse a fraudulent payment.<\/p>\n<\/li>\n<li><strong>Report the message and watch for a second approach.<\/strong>\n<p>Use the bank&#8217;s published scam-reporting channel and your email provider&#8217;s phishing report function. Consider reporting losses to police and Scamwatch.<\/p>\n<p>Be cautious if someone later calls about this exact incident. Knowledge of the report or the original email does not authenticate a new caller.<\/p>\n<\/li>\n<\/ol>\n<div id=\"mwtad3911106099\" class=\"gas_fallback-ad_381392-ad_309685-placement_406665\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"2944237110\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Frequently Asked Questions<\/h2>\n<h3>Is every annual bank security review a scam?<\/h3>\n<p>No. This warning concerns a documented impersonation email and false login route. Confirm actual account requirements inside independently accessed banking or with legitimate support.<\/p>\n<h3>What does the Macquarie annual security update email claim?<\/h3>\n<p>It claims a required annual update is incomplete and directs the reader to update details. The bank identified the linked login page as fraudulent.<\/p>\n<h3>Does the padlock mean the login page is safe?<\/h3>\n<p>A padlock does not authenticate the bank. An impostor can use an encrypted connection on a domain that has no legitimate relationship with your account.<\/p>\n<h3>What if the page said my password was incorrect?<\/h3>\n<p>Assume the entered password may still have been captured. An error message is controlled by the page and does not prove your details were discarded.<\/p>\n<h3>Should I approve an app request to complete the review?<\/h3>\n<p>Do not approve an unexpected request. Read its purpose and verify it through the bank, particularly if it mentions a payment, new recipient, or security change.<\/p>\n<h3>Do I need a new card after entering only my password?<\/h3>\n<p>Ask the bank what is required for the actual exposure. Password disclosure and card-detail theft are different issues, so the correct response can differ.<\/p>\n<h2>The Bottom Line<\/h2>\n<p>The Macquarie annual security update scam makes a counterfeit login look like routine account maintenance. The convenient email link is where trust is misplaced.<\/p>\n<p>Handle genuine banking tasks through the official app or an independently opened website. If you supplied details, contact the bank promptly and explain exactly what happened.<\/p>\n<div id=\"mwtad3719562460\" class=\"gas_fallback-ad_176819-ad_309685-placement_406666\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"8386082122\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>","protected":false},"excerpt":{"rendered":"<p>An email says your annual banking security update is still unfinished. It looks like the sort of small administrative task you meant to get around to. The Macquarie annual security update scam uses that familiar &#8230; <\/p>\n<p class=\"read-more-container\"><a title=\"Macquarie Annual Security Update Scam: The Fake Banking Login Explained\" class=\"read-more button\" href=\"https:\/\/malwaretips.com\/blogs\/macquarie-annual-security-update-scam\/#more-420520\" aria-label=\"Read more about Macquarie Annual Security Update Scam: The Fake Banking Login Explained\">Read more<\/a><\/p>\n","protected":false},"author":51,"featured_media":420521,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[49],"tags":[],"class_list":["post-420520","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-scam-reports","masonry-post","generate-columns","tablet-grid-50","mobile-grid-100","grid-parent","grid-50","resize-featured-image"],"_links":{"self":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/420520","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/users\/51"}],"replies":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/comments?post=420520"}],"version-history":[{"count":2,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/420520\/revisions"}],"predecessor-version":[{"id":420806,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/420520\/revisions\/420806"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media\/420521"}],"wp:attachment":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media?parent=420520"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/categories?post=420520"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/tags?post=420520"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}