{"id":8893,"date":"2026-06-16T19:17:19","date_gmt":"2026-06-16T17:17:19","guid":{"rendered":"https:\/\/paucitas.com\/?page_id=8893"},"modified":"2026-09-16T05:29:28","modified_gmt":"2026-09-16T03:29:28","slug":"phishing","status":"publish","type":"page","link":"https:\/\/paucitas.com\/en\/glossary\/signals-and-risks\/phishing\/","title":{"rendered":"Phishing"},"content":{"rendered":"<style>.pterm{max-width:880px;margin:0 auto;font-family:inherit;padding-top:30px;}.pterm-hero{background:linear-gradient(135deg,#1a1a2e,#2d2d4a);border-radius:18px;padding:30px 34px;margin-bottom:28px;display:flex;align-items:center;gap:18px;flex-wrap:wrap;}.pterm-hero .ph-ico{width:56px;height:56px;border-radius:13px;background:rgba(245,135,31,.16);display:flex;align-items:center;justify-content:center;flex-shrink:0;}.pterm-hero h1{color:#fff;font-size:1.9em;margin:0;line-height:1.2;}.pterm-block{margin-bottom:24px;}.pterm-block h2{color:#1a1a2e;font-size:1.25em;margin:0 0 10px;}.pterm-def{background:#fff;border-left:4px solid #f5871f;border-radius:0 12px 12px 0;padding:18px 22px;color:#444;line-height:1.7;box-shadow:0 2px 10px rgba(0,0,0,.04);}.pterm-p{color:#444;line-height:1.7;margin:0 0 14px;}.pterm-ex{background:#fff7ef;border-radius:12px;padding:18px 22px;color:#5a4630;line-height:1.7;}.pterm-ex .lbl{display:inline-block;font-size:.72em;font-weight:700;letter-spacing:.08em;text-transform:uppercase;color:#f5871f;margin-bottom:6px;}.pterm-see{background:#f7f7fb;border-radius:12px;padding:16px 22px;color:#444;line-height:1.7;}.pterm-see .lbl{display:inline-block;font-size:.72em;font-weight:700;letter-spacing:.08em;text-transform:uppercase;color:#9a9aae;margin-bottom:6px;}.pterm-see a{color:#f5871f;font-weight:600;text-decoration:none;}.pterm a{color:#f5871f;font-weight:600;text-decoration:none;}<\/style>\n<p><a class=\"pterm-back\" style=\"display: inline-flex; align-items: center; gap: 8px; margin: 0 0 18px; padding: 9px 16px; background: #fff7ee; border: 1px solid #f3d9b8; border-radius: 999px; color: #e08a1e; font-weight: 600; text-decoration: none;\" href=\"https:\/\/paucitas.com\/en\/glossary\/signals-and-risks\/\"><span style=\"font-size: 18px; line-height: 1;\">\u2190<\/span>Back to Signals and risks<\/a><\/p>\n<div class=\"pterm\">\n<div class=\"pterm-hero\">\n<div class=\"ph-ico\"><\/div>\n<h1>Phishing<\/h1>\n<\/div>\n<div class=\"pterm-block\">\n<div class=\"pterm-def\">\n<p class=\"pterm-p\">Phishing describes attempts to obtain sensitive data through misleading messages, emails or imitation pages, such as login details, keys or a seed phrase. The message often presents itself as coming from a familiar party. Whether a message really is phishing cannot always be established at a glance.<\/p>\n<\/div>\n<\/div>\n<div class=\"pterm-block\">\n<h2>What it may indicate<\/h2>\n<p class=\"pterm-p\">An unexpected message asking for data or access can be an indication of phishing, but it need not be. Sometimes it is legitimate, sometimes not. What it really is only emerges once the sender and the requested action are calmly checked.<\/p>\n<\/div>\n<div class=\"pterm-block\">\n<div class=\"pterm-ex\">Someone receives a message that appears to come from a familiar platform, asking them to log in quickly through an enclosed link. The page looks real but asks for data that is normally not needed. Such a request can be a reason to be extra careful.<\/div>\n<\/div>\n<div class=\"pterm-block\">\n<h2>What is phishing in crypto?<\/h2>\n<p class=\"pterm-p\">Attempts to obtain login details, keys or a seed phrase through misleading messages or imitation pages that appear to come from a familiar party.<\/p>\n<\/div>\n<div class=\"pterm-block\">\n<h2>How can you recognise a phishing attempt?<\/h2>\n<p class=\"pterm-p\">Unexpected requests for data or access, links to look alike pages and pressure to act quickly are common signs. Whether it really is phishing emerges from calmly checking the sender and the request.<\/p>\n<\/div>\n<div class=\"pterm-block\">\n<h2>What do you do immediately after phishing involving crypto?<\/h2>\n<p class=\"pterm-p\">Disconnect from the application, move any remaining balance to a new wallet with new recovery words where possible, and keep all messages and transaction details. Then report it.<\/p>\n<\/div>\n<div class=\"pterm-block\">\n<h2>Can a phishing payment be reversed?<\/h2>\n<p class=\"pterm-p\">No. A confirmed transaction on the blockchain is final. What can be done is recording the route, so that an authorised body can base further steps on it.<\/p>\n<\/div>\n<div class=\"pterm-block\">\n<h2>Is phishing always an email?<\/h2>\n<p class=\"pterm-p\">No. It also happens through text messages, chat apps, phone calls and advertisements with a copied page. The form varies, the purpose stays the same.<\/p>\n<\/div>\n<div class=\"pterm-block\">\n<h2>What phishing looks like in a crypto file<\/h2>\n<p class=\"pterm-p\">In crypto cases the decisive moment is almost never the transfer itself but the message that preceded it. Someone receives a warning about a locked account, a support chat that appears to come from a platform, or an invitation to validate a wallet, and acts within minutes. Because the resulting transaction is authorised by the holder, it looks entirely normal on the chain, which is why the file has to combine the on-chain record with the message, the link and the timestamps that show how the instruction arrived.<\/p>\n<p class=\"pterm-p\">That combination is what makes a report usable. We fix the transaction data, the destination and the moment, and we describe the sequence of contact that led to it, including the domain that was used and the moment it appeared. Keeping the original message, the full address of the sender and any screenshots is more useful than a summary written afterwards, because those details can be checked. Where the same domain or address turns up in other reports, an institution can connect cases that would otherwise stay separate.<\/p>\n<\/div>\n<div class=\"pterm-block\">\n<div class=\"pterm-src\" style=\"background: #f4f6fb; border-radius: 12px; padding: 18px 22px; color: #3a4152; line-height: 1.7;\"><span class=\"lbl\" style=\"display: inline-block; font-size: .72em; font-weight: bold; letter-spacing: .08em; text-transform: uppercase; color: #5a6b8c;\">External source<\/span><span style=\"display: block; margin-top: 8px;\">The FCA sets out how consumers can protect themselves from scams and describes the pressure techniques that come first, such as unexpected contact, urgency and a request to act through an unfamiliar channel. It also stresses checking a firm through official channels rather than through the details supplied in a message. That advice is close to what a file usually shows in hindsight. See <a href=\"https:\/\/www.fca.org.uk\/consumers\/protect-yourself-scams\" target=\"_blank\" rel=\"noopener\">FCA: protect yourself from scams<\/a>.<\/span><\/div>\n<\/div>\n<div class=\"pterm-see\">\n<p><span class=\"lbl\">See also<\/span><\/p>\n<div><a href=\"https:\/\/paucitas.com\/en\/glossary\/tracing-transactions\/seed-phrase\/\">Seed phrase<\/a> (category Transactions), <a href=\"https:\/\/paucitas.com\/en\/glossary\/fraud-and-scams\/fake-crypto-platform\/\">Fake crypto platform<\/a> (category Transactions), <a href=\"https:\/\/paucitas.com\/en\/glossary\/fraud-and-scams\/pig-butchering\/\">Pig butchering<\/a> (category Fraud). Phishing can be part of a larger set-up.<\/div>\n<div style=\"margin-top:8px;\"><span class=\"lbl\">Related topic<\/span> <a href=\"https:\/\/paucitas.com\/en\/topics\/crypto-fraud-investigation\/\">Crypto fraud investigation: establishing a suspicion of fraud as fact<\/a><\/div>\n<div style=\"margin-top:8px;\"><span class=\"lbl\">Frequently asked question<\/span> <a href=\"https:\/\/paucitas.com\/en\/questions\/partial-access-to-my-wallet-who-can-help\/\">I still have partial access to my wallet, who can look at it with me?<\/a><\/div>\n<\/div>\n<\/div>\n<p><script type=\"application\/ld+json\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"DefinedTerm\",\"@id\":\"https:\/\/paucitas.com\/en\/glossary\/signals-and-risks\/phishing\/#term\",\"name\":\"Phishing\",\"alternateName\":[\"crypto phishing\",\"phishing attack\",\"phishing scam\"],\"description\":\"Phishing describes attempts to obtain sensitive data through misleading messages, emails or imitation pages, such as login details, keys or a seed phrase. The message often presents itself as coming from a familiar party. Whether a message really is phishing cannot always be established at a glance.\",\"inDefinedTermSet\":\"https:\/\/paucitas.com\/en\/glossary\/signals-and-risks\/#set\",\"url\":\"https:\/\/paucitas.com\/en\/glossary\/signals-and-risks\/phishing\/\",\"inLanguage\":\"en\"},{\"@type\":\"FAQPage\",\"@id\":\"https:\/\/paucitas.com\/en\/glossary\/signals-and-risks\/phishing\/#faq\",\"inLanguage\":\"en\",\"mainEntity\":[{\"@type\":\"Question\",\"name\":\"What do you do immediately after phishing involving crypto?\",\"acceptedAnswer\":{\"@type\":\"Answer\",\"text\":\"Disconnect from the application, move any remaining balance to a new wallet with new recovery words where possible, and keep all messages and transaction details. Then report it.\"}},{\"@type\":\"Question\",\"name\":\"Can a phishing payment be reversed?\",\"acceptedAnswer\":{\"@type\":\"Answer\",\"text\":\"No. A confirmed transaction on the blockchain is final. What can be done is recording the route, so that an authorised body can base further steps on it.\"}},{\"@type\":\"Question\",\"name\":\"Is phishing always an email?\",\"acceptedAnswer\":{\"@type\":\"Answer\",\"text\":\"No. It also happens through text messages, chat apps, phone calls and advertisements with a copied page. The form varies, the purpose stays the same.\"}},{\"@type\":\"Question\",\"name\":\"What is phishing in crypto?\",\"acceptedAnswer\":{\"@type\":\"Answer\",\"text\":\"Attempts to obtain login details, keys or a seed phrase through misleading messages or imitation pages that appear to come from a familiar party.\"}},{\"@type\":\"Question\",\"name\":\"How can you recognise a phishing attempt?\",\"acceptedAnswer\":{\"@type\":\"Answer\",\"text\":\"Unexpected requests for data or access, links to look alike pages and pressure to act quickly are common signs. Whether it really is phishing emerges from calmly checking the sender and the request.\"}}]},{\"@type\":\"Article\",\"@id\":\"https:\/\/paucitas.com\/en\/glossary\/signals-and-risks\/phishing\/#article\",\"headline\":\"Phishing\",\"description\":\"Phishing describes attempts to obtain sensitive data through misleading messages, emails or imitation pages, such as login details, keys or a seed phrase. The message often presents itself as coming from a familiar party. Whether a message really is phishing cannot always be established at a glance.\",\"inLanguage\":\"en-US\",\"datePublished\":\"2026-06-16T19:17:19+02:00\",\"dateModified\":\"2026-09-16T05:29:28+02:00\",\"author\":{\"@type\":\"Organization\",\"@id\":\"https:\/\/paucitas.com\/#organization\",\"name\":\"Paucitas B.V.\",\"url\":\"https:\/\/paucitas.com\"},\"publisher\":{\"@type\":\"Organization\",\"@id\":\"https:\/\/paucitas.com\/#organization\",\"name\":\"Paucitas B.V.\",\"url\":\"https:\/\/paucitas.com\"},\"mainEntityOfPage\":{\"@type\":\"WebPage\",\"@id\":\"https:\/\/paucitas.com\/en\/glossary\/signals-and-risks\/phishing\/\"},\"about\":{\"@id\":\"https:\/\/paucitas.com\/en\/glossary\/signals-and-risks\/phishing\/#term\"}}]}<\/script><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u2190Back to Signals and risks Phishing Phishing describes attempts to obtain sensitive data through misleading messages, emails or imitation pages, such as login details, keys [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":0,"parent":8861,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_monsterinsights_skip_tracking":false,"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"disabled","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"default","adv-header-id-meta":"","stick-header-meta":"default","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"set","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"class_list":["post-8893","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/paucitas.com\/en\/wp-json\/wp\/v2\/pages\/8893","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/paucitas.com\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/paucitas.com\/en\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/paucitas.com\/en\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/paucitas.com\/en\/wp-json\/wp\/v2\/comments?post=8893"}],"version-history":[{"count":9,"href":"https:\/\/paucitas.com\/en\/wp-json\/wp\/v2\/pages\/8893\/revisions"}],"predecessor-version":[{"id":14351,"href":"https:\/\/paucitas.com\/en\/wp-json\/wp\/v2\/pages\/8893\/revisions\/14351"}],"up":[{"embeddable":true,"href":"https:\/\/paucitas.com\/en\/wp-json\/wp\/v2\/pages\/8861"}],"wp:attachment":[{"href":"https:\/\/paucitas.com\/en\/wp-json\/wp\/v2\/media?parent=8893"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}