Facebook Users Targeted in ‘Login’ Phish Scam

by Anika Shah - Technology
0 comments

facebook Phishing Scam Uses Email Trick

A few weeks ago, we warned our readers about a phishing campaign targeting Instagram users. This campaign didn’t use the typical links to fake websites, but instead used email links. Now, it truly seems these scammers are targeting Facebook users.

Here’s how it works: You receive an email saying someone logged into your Facebook account from a new device. The subject line might say “We’ve Received a request to Reset your password for Facebook Account!”

new device login

“A user just logged into your Facebook account from a new device iPhone 14 PRO Max. We are sending you this email to verify its really you.”

All the links in the email – “Report the user”, “Yes, me”, “unsubscribe”, and even the email address at the bottom – do the same thing.

They open your default email program with a pre-addressed message. The subject line of the message matches the button or text you clicked.

The email addresses these messages are sent to are the same ones we saw in the Instagram phishing scam:

  • prestige@vacasa[.]uk.com (a misspelling of vacasa.com, a vacation rental site)
  • ministry@syntec[.]uk.com (a misspelling of syntechnologies.co.uk, a hardware provider)

Related Posts

Leave a Comment