Usually the email headers clearly show that the sender is not the bank. Unfortunately elderly and other people who are not particularly IT savvy can easily fall into the trap.
The email service providers should have systems in place with algorithms that identify this type of phishing and block the forwarding of such emails.
Normaly banks do not, or at least should not, send emails with links. Any email that contains certain keywords in the title or the text, and a link, should be automatically rejected. There are already black list systems for spam, phishing, and malware however these can often be too agressive as most emails are sent through shared servers. An AI based email filtering system would probably give better results.

To my mind it is time that email service providers had a legal obligation to filter dangerous emails.


Peter

[Linked Image]