We received a message in our admin panel, directed to AllFacebook, and not to any individual Facebook users who are admins of our page.
The red flag we immediately spotted was that the message came from “Page,” as in, a Facebook page named Page, and not from Facebook Security, or, as the scammer called it, “Security The Facebook Team.”
Does this look like an authentic Facebook page to you? We didn’t think so.
The message, which we immediately reported to Facebook, read (unedited, except for removing the URL so that none of our readers click on it):
Warning ! Security The Facebook Team ! Note:
Dear “AllFacebook.com” Owner,
Your account is reported to have violated the policies that are considered annoying or insulting Facebook users.
The system will disable your account within 12 hours if you do not do the reconfirmation. Please confirm your facebook account on the following link:
Note: Please complete your data correctly.
Thanks for being part of Facebook Community,
Facebook Verification Team.
The grammar errors would have immediately raised our suspicions if the message coming from “Page” hadn’t already done that.
Clicking on the link directed us to a page that was an obvious attempt to acquire our login information.
As we said earlier, we reported this phishing scheme to Facebook, but in case the threat has not been neutralized yet, or there are other variations, please be alert.
Readers: Have any of you received similar messages?
Phishing images courtesy of Shutterstock.