

The sender domain does not belong to Facebook. The sender is named as “Policy Issues”, a tricky way to lure and cause panic to the recipient. On closer inspection, several additional red flags are seen in the email header.

Such mistakes are almost always indicators that a message may not be legitimate. Some errors are present in the message such as the improper capitalization of the word “Page”, and the missing dot at the end of the third sentence. A 48-hour ultimatum was given, invoking a sense of urgency to the recipient. The sender, who appears to be from Facebook’s support team, is giving the user a chance to appeal this termination. This claim can resonate with Facebook users as most people have heard that the social media site is clamping down on users who violate the rules. This malicious email claims that the user’s page is about to be terminated due to a violation of Facebook’s community standards. This time, our team came across a phishing email that makes use of Meta’s Messenger chatbot feature. In this case, the threat actors are attempting to steal Facebook login credentials.įrom phishing and scam attempts, to bogus job offers, fraudsters are always coming up with new techniques to steal credentials or money. With millions of active users, scammers and threat actors have easy access to numerous potential victims. The application’s popularity makes it an attractive target for cybercriminals. This was shown in an earlier Trustwave SpiderLabs blog that detailed how chatbots are used in email phishing attacks. Within the current digital landscape, chatbots are widely used by companies and individuals to connect with their customers online, and almost immediately pops up when chatting with brands or businesses. One important feature of this platform is Messenger’s bot. Facebook Messenger is one of the most popular messaging platforms in the world, amassing 988 million monthly active users as of January 2022, according to Statista.
