Latest Threat: Luxemburger Wort "Subscription Renewal" Phishing Scam
January 30, 2026
A new phishing campaign is targeting subscribers of the Luxemburger Wort. The fraudulent email, appearing to come from Mediahuis Luxembourg, claims that a recent attempt to renew your subscription failed because the payment could not be processed.
The message pressures the recipient to "immediately" update their payment information to ensure continued access to digital content and services. This is a targeted attempt to steal credit card details from local news readers.
How to spot this phishing attack:
1. Fraudulent Email Address: The actual sender address is messages-contact-no-repIy-info-communication-Iuxembourg@scarlet.be. Mediahuis Luxembourg does not use the Belgian ISP Scarlet for official subscription communications.
2. Visual Typos in the Address: The scammers have replaced the letter "l" with a capital "I" in several places within the email address—such as "repIy" and "Iuxembourg"—to evade automated spam filters.
3. Generic Greeting: The email uses a simple "Bonjour" rather than addressing the subscriber by their specific name, which a legitimate service provider would typically do.
4. Urgency Tactic: The email warns that action is "required" and that updating your details will "immediately" resolve the situation, pushing the user to act without verifying the source.
If you receive this email, do not click the update button. Delete it immediately. To check your subscription status safely, navigate directly to the official website at wort.lu and log in to your personal account area.