New 'phishing' scam using emails impersonating the State Tax Administration Agency
A phishing attempt has been detected by sending an email impersonating the State Tax Administration Agency (AEAT).
A Tax Agency Notification screen appears regarding the status of your refund for the 2025 tax year.
The objective of the attack is theft of credentials and/or personal data.
Domain(s) involved: taxagency.cyou
Fake page (final URL): http://agenciatributaria.cyou https://agenciatributaria.cyou
Indicators of suspicion
-
Sender domain unofficial or inconsistent with the impersonated entity.
-
Links that do not belong to legitimate domains (.aeat.es / .gob.es).
-
Use of urgency, threat, or psychological pressure.
-
Request for credentials or confidential information.


Remember that the Tax Agency never requests confidential, financial or personal information, account numbers or card numbers, via SMS or email, nor does it attach any information such as invoices or other data.
If you have any questions, please go directly to the Electronic Office and check if you have any pending communications or notifications; Do not use links contained in SMS messages or emails.