In the digital landscape, one must exercise caution, especially on platforms like LinkedIn, which are often targeted by scammers. Recently, a new phishing tactic has emerged where fraudsters are impersonating LinkedIn in official-looking comments to deceive users into revealing their login credentials.
Scammers are posting comments on LinkedIn that claim users have violated platform policies, prompting them to click on malicious links purportedly to "verify" their accounts. These links may appear trustworthy, even using LinkedIn's own link shortener, lnkd.in, to mask their true intent. Once clicked, users are directed to a phishing site designed to steal their credentials while mimicking LinkedIn's branding.
It's essential to recognise that legitimate communications from LinkedIn regarding account issues will never occur in public comment threads or prompt users to click on links. If you receive such warnings, it's best to ignore them and report the comment or user instead.
Here are some key takeaways:
Key Takeaways:
Scammers are posting comments on LinkedIn that claim users have violated platform policies, prompting them to click on malicious links purportedly to "verify" their accounts. These links may appear trustworthy, even using LinkedIn's own link shortener, lnkd.in, to mask their true intent. Once clicked, users are directed to a phishing site designed to steal their credentials while mimicking LinkedIn's branding.
It's essential to recognise that legitimate communications from LinkedIn regarding account issues will never occur in public comment threads or prompt users to click on links. If you receive such warnings, it's best to ignore them and report the comment or user instead.
Here are some key takeaways:
Key Takeaways:
- Scammers are using LinkedIn's branding to create deceptive comments.
- Phishing links lead to fake login pages that steal credentials.
- LinkedIn does not communicate account issues publicly or request clicks on links.