Do you have a Facebook page or group for your business? Because business pages frequently have a large number of followers, threat actors or cyber criminals are increasingly targeting them. And we don't 'like' that one bit!
Cyber Protect Officers from the East Midlands Special Operations Unit (EMSOU) - whom we work closely with - have issued warnings about the risks of a compromise, whilst also offering protective measures you can take to prevent cyber criminals accessing your page/group.
Shevani Raichura, Cyber Protect Officer at EMSOU, said:
“Taking over pages with large numbers of followers allows criminals to post phishing links, scams and other malicious posts. So, how do these threat actors do it?
It often starts with a phishing email. We have seen reports of an email from an address purporting to be from the Facebook Page-Support Centre asking the user to sign in and resolve an “issue”.
These emails often bypass spam filters and can often be accompanied by an alert on Facebook which makes it look legitimate. The notification on Facebook is often from an unlinked/unrelated page.
This is a typical phishing attack, with the aim being to capture your credentials and take over your account”
The below graphic is typical of what you may see...
So how do you protect your business account from this new phishing attack?
If you're suspicious that you may have inadvertently fallen for a phishing attack there are a few things you should do.
Reporting
Report all Fraud and Cybercrime to Action Fraud by calling 0300 123 2040 or online. Forward suspicious emails to report@phishing.gov.uk. Report SMS scams by forwarding the original message to 7726 (spells SPAM on the keypad).
Click to Open Code Editor