I work as a cybersecurity analyst in a large organization and part of my job is triaging the phishing emails that come in. So I feel that I have a pretty good finger on what's hot and what's not with phishing scams and other frauds delivered via email.
I can definitely confirm an uptick in Paypal fraud attempts. What's changed is that the emails are coming from Paypal themselves. It used to be folks would just spoof the paypal address but if you looked at the delivery headers the email didn't come from Paypal. Now, people are creating a lot more bogus Paypal accounts and the emails come from the legit Paypal email servers. My general impression is that Paypal needs to further secure their account signup process so that this stuff happens less.
If it were up to me I would block all financial tech sites at work, banks, paypal, venmo, zelle, cashapp, whatever. The agency does not pay for stuff using those sources, we issue purchase orders and generate checks after we receive and verify the (paper) invoices. I don't need or want users getting themselves scammed at work, they can do that on their own time.
But it's not up to me so we allow folks to use their work email addresses to sign up for Paypal and other fintech things.