News: 1756381268

  ARM Give a man a fire and he's warm for a day, but set fire to him and he's warm for the rest of his life (Terry Pratchett, Jingo)

Euro banks block billions in rogue PayPal direct debits after fraud glitch

(2025/08/28)


Shoppers and merchants in Germany found themselves dealing with billions of euros in frozen transactions this week, thanks to an apparent failure in PayPal's fraud-detection systems.

According to the Association of German Banks, the problem hit on Monday when banks noticed a slew of recent unauthorized direct debits from PayPal. The body [1]said the banks responded in various ways, which is one way of putting it – the Süddeutsche Zeitung [2]reported that some stopped all PayPal transactions, with the total number of frozen payments likely to be around €10 billion.

A spokesperson for the German Savings Banks Association (DSGV), which represents hundreds of regional banks across the country, confirmed the issue to The Register . The DSGV said PayPal had assured it the problem was resolved, adding that PayPal payments had been running smoothly since Tuesday morning and the US payments platform was informing affected customers "directly."

[3]

The DSGV said the unauthorized payments had a "significant impact on transactions throughout Europe, particularly in Germany." However, there have been no confirmed reports of the incident being felt outside Germany. Austrian media [4]reported that the banks there had seen no problems.

[5]

[6]

PayPal is the most popular method of online payment in Germany, having been used for 28.5 percent of online purchases last year, according to [7]research by the EHI Retail Institute. (The next most popular option is buying on account.)

Tested: Microsoft Recall can still capture credit cards and passwords, a treasure trove for crooks [8]READ MORE

That's largely down to PayPal's payment protection, which appeals to privacy-conscious Germans. In the wake of the unauthorized direct debit issue, financial industry consultant Peter Woeste Christensen told [9]local media that PayPal's particular strength in Germany was partly thanks to the poor user experience of German banks' own apps.

[10]AWS, Cloudflare, Digital Ocean, and Google helped Feds investigate alleged Rapper Bot DDoS perp

[11]P2P payment service Zelle sued for enabling payment fraud hell

[12]Terrible tales of opsec oversights: How cybercrooks get themselves caught

[13]Netflix, Apple, BofA websites hijacked with fake help-desk numbers

PayPal had not responded to The Register 's request for comment at the time of publication, although SZ quoted a spokesperson as saying PayPal had quickly identified the cause and was working with banks to "ensure all accounts are updated." The US company referred to the incident as a "temporary service interruption."

PayPal's reputational hit in Germany is likely to be exacerbated by last week's reports of hackers offering millions of PayPal credentials that they claimed PayPal had recently exposed in plaintext. The hackers' claims appear dubious, with PayPal denying any recent breach, but the reports gained significant traction in Germany.

"It's possible that the data is incorrect or outdated," read a Wednesday advisory from the German consumer organization [14]Stiftung Warentest , which bundled the leak report with this week's snafu. "Nonetheless, PayPal users should change their passwords as a precaution." ®

Get our [15]Tech Resources



[1] https://bankenverband.de/zahlungsverkehr/deutsche-kreditwirtschaft-zu-unregelmaessigkeiten-im-zahlungsverkehr

[2] https://www.sueddeutsche.de/wirtschaft/paypal-sicherheitsprobleme-banken-milliarden-zahlungen-li.3303912?reduced=true

[3] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/cybercrime&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=2&c=2aLB9HCyOs7CxP-czG1HLxwAAAMo&t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0

[4] https://www.diepresse.com/20036839/paypal-sicherheitssystem-ausgefallen-banken-stoppen-lastschriften

[5] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/cybercrime&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44aLB9HCyOs7CxP-czG1HLxwAAAMo&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0

[6] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/cybercrime&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33aLB9HCyOs7CxP-czG1HLxwAAAMo&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0

[7] https://www.ehi.org/presse/paypal-festigt-spitzenposition/

[8] https://www.theregister.com/2025/08/01/microsoft_recall_captures_credit_card_info/

[9] https://www.spiegel.de/wirtschaft/service/paypal-milliardenzahlungen-gestoppt-die-deutschen-banken-sind-viel-zu-abhaengig-von-paypal-a-e0fea6f9-410a-45a2-8012-5cbcd3006056

[10] https://www.theregister.com/2025/08/25/infosec_in_brief/

[11] https://www.theregister.com/2025/08/17/cybersecurity_news_roundup/

[12] https://www.theregister.com/2025/07/01/terrible_tales_of_opsec_oversights/

[13] https://www.theregister.com/2025/06/20/netflix_apple_bofa_websites_hijacked/

[14] https://www.test.de/Datenleck-bei-Paypal-Jetzt-Paypal-Passwort-aendern-6241357-0/

[15] https://whitepapers.theregister.com/



More to this than meets the eye

may_i

Just two weeks ago, I tried to pay for a small order of electronic components from Mouser in the USA with PayPal. I'm in Sweden.

I've made similar purchases from Mouser with PayPal many times before. This time, PayPal immediately marked the transaction as 'under security review' and subsequently denied the payment.

There would seem to be a major problem with their fraud detection systems and it started earlier than last week.

Devilish

Brave Coward

PayPal is not fit for purpose.

/s

PaySecam

elsergiovolador

More like.

This has been happening for a while

speed

this has been happening to dutch Bunq clients as early as last week (https://tweakers.net/nieuws/238190/bunq-neemt-maatregelen-tegen-ongeautoriseerde-afschrijvingen-via-paypal.html, article in dutch). Something is very seriously wrong at Paypal

One good suit is worth a thousand resumes.