Beware of fake Meta emails from hackers that steal your ad account logins

A dangerous phishing campaign is targeting businesses that advertise on Meta platforms like Facebook and Instagram. Hackers are sending fake emails claiming that users’ ad accounts have been suspended due to policy violations. These emails trick victims into clicking malicious links that steal login credentials and grant attackers full control over their accounts.
- Fraudulent emails claim “YOUR ADS ARE TEMPORARILY SUSPENDED” and urge immediate action.
- Attackers use fake Meta Business pages (e.g., "businesshelpmanager.com") to mimic official Meta support.
- Victims are tricked into adding a hacker-controlled authenticator app labeled "SYSTEM CHECK."
- The phishing page convincingly replicates Meta’s login system to steal credentials.
- Attackers use multiple domain redirects and social engineering to bypass security.
How the Attack Works
- Victims receive an email that appears to be from Instagram or Meta, warning them about ad policy violations. The email contains urgent language, pressuring users to click a "Check more details" button.
- Once clicked, users are redirected to a fake Meta support page that looks identical to the real one. The page claims that immediate action is required to prevent account suspension.
- Hackers take the scam further by offering fake “support chat” sessions, making the interaction seem legitimate. Eventually, victims are instructed to install an unauthorized authenticator app or enter their Facebook password on a phishing site, handing full control of their account to cybercriminals.
Cybercriminals are becoming more sophisticated in their phishing tactics, and businesses relying on Meta advertising need to stay alert. This scam is designed to create panic, pushing users to act quickly without verifying the source. Always double-check emails and never enter your login credentials on unverified sites. Stay informed and protect your digital assets from these evolving threats.
- Other (42)
- Ransomware (141)
- Events and News (27)
- Features (45)
- Security (462)
- Tips (79)
- Google (23)
- Achievements (11)
- Products (34)
- Activation (7)
- Dealers (1)
- Bank Phishing (44)
- Malware Alerts (205)
- Cyber Attack (254)
- Data Backup (11)
- Data Breach (94)
- Phishing (154)
- Securty Tips (1)
- Browser Hijack (18)
- Adware (15)
- Email And Password (67)
- Android Security (66)
- Knoweldgebase (38)
- Botnet (15)
- Updates (3)
- Alert (71)
- Hacking (57)
- Social Media (8)
- vulnerability (56)
- Hacker (31)
- Spyware (9)
- Windows (6)
- Microsoft (21)
- Uber (1)
- YouTube (1)
- Trojan (2)
- Website hacks (4)
- Paytm (1)
- Credit card scam (1)
- Telegram (3)
- RAT (5)
- Bug (3)
- Twitter (2)
- Facebook (7)
- Banking Trojan (7)
- Mozilla (2)
- COVID-19 (5)
- Instagram (2)
- NPAV Announcement (9)
- IoT Security (1)
- Deals and Offers (2)
- Cloud Security (11)
- Offers (5)
- Gaming (1)
- FireFox (2)
- LinkedIn (2)
- WhatsApp (4)
- Amazon (2)
- DMart (1)
- Payment Risk (4)
- Occasion (3)
- firewall (2)
- Cloud malware (2)
- Cloud storage (2)
- Financial fraud (9)
- Impersonation phishing (1)
- DDoS (5)
- Smishing (2)
- Whale (0)
- Whale phishing (4)
- WINRAR (2)
- ZIP (2)