Government Gateway Phishing Scam
The Government Gateway is a UK Government Portal enabling UK citizens who have username and password to access a range of government services online.
These include the Department of Works and Pensions encompassing Jobsearch, unemployment, incapacity and retirement benefits/pensions and other UK Government departments.
You can imagine the havoc and harm that can be inflicted if someone manages to trick you by a phishing e-mail redirecting you to a fake login page whereby you unknowingly reveal your username and password details.
E-Mail received:
Date: 18/03/2025, 04:21
From: Government Gateway noreply=bounce0-com.tw@info-agenda-kdeop001googl.firebaseapp.com
Reply to: x8w4pgwk6lkgk1z0@emails.gorgias.com
Subject: updating your online access - Government Gateway [E-mail address redacted]
Notes
UK Government e-mail communications will come from a .gov.uk e-mail address and will address you personally by name. This e-mail was sent from noreply=bounce0-com.tw@info-agenda-kdeop001googl.firebaseapp.com which is no way a government e-mail address. This is also connected to the firebaseapp.com domain
The e-mail gives a reply to e-mail address of x8w4pgwk6lkgk1z0@emails.gorgias.com again it is not a government e-mail address. Gorgias.com is a website dealing with conversational AI so perhaps their mail servers have been hacked.
Another "red flag" give away is the website you are asked to login to... https://one-digitalservice.zwf.fi/abula/#[e-mail address redacted]?mode=resetPassword&oobCode=8_r33L3nj8XHpJAGihbX2rsjP5
V_ejHIR5d8DneVte0AAAGVp3yTeg&apiKey=AIzaSyCfrQc7PGpoHj4kHHyDyySDDbjh6j5FCS0
&lang=en
Again any uk government website address will be on the .gov.uk domain extension. The link appears to be to a Finnish (.fi) website. Do not click on the link, it will take you to a dangerous website.
Recommendation:
Just delete. Sad to say there will be some people somewhere who will fall for the official looking "government" e-mail.
Further Reading
Beware of Scam Emails Posing as Government Gateway Requests
Examples of phishing emails, suspicious phone calls and texts
Latest Government Gateway Phishing Scam
Government Gateway - Wikipedia
Michael Fowler
Other articles by Michael Fowler:
SEO Services Spam - Michael Fowler
If you have a website be prepared to be inundated with emails from SEO companies offering to get you Google page 1 listings, for a price...
more >>
Natasha - Romance Scammer - Michael Fowler
Natasha, another lady from Kazakhstan would like to get to know me but is it all lies ..."
more >>
FBI Compensation of US$15 Million - Michael Fowler
Is it my lucky day when the Director of the FBI (Federal Bureau of Investigation) contacts me to tell me I am due compensation of US$15 Million?
more >>
Beluga Bible Translations - A Bit Fishy? - Michael Fowler
Alright we know a Beluga Whale is a mammal and not a fish. But what I am questioning is whether Beluga Bible Translations is a legitimate Christian Mission or whether it is fishy?
China Domain name Scam - Michael Fowler
The China Domain name Scam and what to do when you receive an e-mail from the Chinese Registrars.
Amory Dixon - Persistant Spammer - Michael Fowler
What happens when you reply to a persistant spammer.
Scamminder.com - Legit or Scam - Michael Fowler
Scamminder is it a legitimate Scam Detection website or a scam itself?
Credit: Paper Valentines Day Hearts Pink by Valeria Aksakova on Freepik