Free tech support / small logo


Facebook's new login system, huh?

I just received an email from Facebook telling me about a new login system that they're implementing in a few days, and telling me I need to log in and update my profile. I'm skeptical. Is this legit, Dave, or bogus?


Dave's Answer:

It's bogus, you're right to be suspicious!

The message says this exactly exactly or slightly tweaked:

"In an effort to make your online experience safer and more enjoyable, Facebook will be implementing a new login system that will affect all Facebook users. These changes will offer new features and increased account security. Before you are able to use the new login system, you will be required to update your account."

Seems legit, and even looks legitimate in your mailbox:

facebook phishing scam

Look just a bit closer at the link, however, and you'll see that there's something fishy (and phishy too):

  http://www.facebook.com.pinaoeeiili.com/usersdirectory/LoginFacebook.php...

What's "pinaoeeiili.com"? I was curious, so I dug around a bit, and found that it was only registered yesterday (12/25/2009) and then immediately used for what we in the biz call a phishing attack.

The goal of the message is to separate you from your account and password information, of course, but if you aren't the skeptical type and you don't want to become skeptical, then you can use this simple trick: when you go to a site that asks for your login credentials, rather than just choosing a bookmarked site or typing in a URL, enter completely bogus credentials and see what happens! :-)

If you do this on the mock Facebook login page on "pinaoeeiili.com" you'll find that it proceeds to asking for your additional personal information regardless of what you specify because, of course, it has no way of checking whether you've entered your account password properly or not.

A better strategy, though, is to just become a bit more skeptical and suspicious of email you get. If Facebook really wants to change its login system, it'll just tell you next time you check your account anyway, right?

Now, be careful out there!









Subscribe!
Never miss another Q&A article! Click to subscribe: Add to Google Reader Add to My Yahoo! Subscribe in NewsGator RDF XML
Comments
Rather amazingly, there are no comments on this article yet.

I have something to say, now that you mention it, but ...
Starbucks coffee cup I do have a lot to say, and questions of my own for that matter, but first I'd like to say thank you for all your efforts on this Web site by buying you a cup of coffee!

I do have a comment, now that you mention it!











Remember personal info?


Please note that I will never send you any unsolicited email. Ever.

While I'm at it, please note that by submitting a question or comment you're agreeing to my terms of service, which are: you relinquish any subsequent rights of ownership to your material by submitting it on this site.









Recent Entries


Search
I Need Help!
Need Help? Ask Dave Taylor!


© 2002 - 2012 by Dave Taylor. All Rights Reserved.

Note: This web site is for the purpose of disseminating information for educational purposes, free of charge, for the benefit of all visitors. We take great care to provide quality information. However, we do not guarantee, and accept no legal liability whatsoever arising from or connected to, the accuracy, reliability, currency or completeness of any material contained on this web site or on any linked site.

[whiteboard marker tray]
"Ask Dave Taylor®" is a registered trademark of Intuitive Systems, LLC.