Facebook warns members about rise in '419' scam

Fraudsters pose as Facebook members and ask their friends for money

More and more fraudsters are harvesting the log-in data of Facebook members in order to impersonate them and ask their friends for money, according to the social-networking company.

The scammers use phishing techniques to trick Facebook members into providing log-in information. For example, fraudsters often send legitimate-looking e-mail messages purporting to be from Facebook that ask members to visit a Web page and enter their log-in credentials.

They also post messages on members' profile Walls with links to supposed video clips or photos that really lead to phishing Web sites.

Once scammers can log in to someone's Facebook account, they often engage in what Facebook calls a "419" scam: pretending to be the member, they send messages to the person's friends asking for money.

In a "419" scam, fraudsters usually ask that the money be wired to them using Western Union, saying they're stranded and penniless in a foreign country.

There has been an increase in "419" scams recently, although the number of Facebook members who have been affected remains low, the company said Tuesday in its official blog.

Facebook is working with Western Union to raise awareness about the scam, implementing technical measures to better detect and deal with the issue and collaborating with law enforcement agencies and e-mail providers to identify the criminals.

It's no surprise that cyberthieves are attracted to Facebook, where more than 300 million members worldwide post a lot of personal information, much more than on other sites.

If malicious hackers gain access to someone's Facebook profile, they will likely learn not only the person's full name, but probably also their date of birth, place of employment, education history, marital status, phone numbers and addresses, as well as get the chance to contact hundreds of family members, friends and professional acquaintances.

Even if someone's Facebook account isn't compromised, security experts warn people to be careful about the information they post on their profiles and who they share it with.

Although Facebook gives its members very granular access controls over their profile content, the company has admitted that its privacy features can be confusing to understand and complicated to manage.

For that reason, Facebook announced in July that it would simplify its privacy options, an initiative that is still in progress.

Join the CSO newsletter!

Error: Please check your email address.

Tags 419 scamscamsFacebookprivacy

More about FacebookWestern Union

Show Comments

Featured Whitepapers

Editor's Recommendations

Solution Centres

Stories by Juan Carlos Perez

Latest Videos

  • 150x50

    CSO Webinar: The Human Factor - Your people are your biggest security weakness

    ​Speakers: David Lacey, Researcher and former CISO Royal Mail David Turner - Global Risk Management Expert Mark Guntrip - Group Manager, Email Protection, Proofpoint

    Play Video

  • 150x50

    CSO Webinar: Current ransomware defences are failing – but machine learning can drive a more proactive solution

    Speakers • Ty Miller, Director, Threat Intelligence • Mark Gregory, Leader, Network Engineering Research Group, RMIT • Jeff Lanza, Retired FBI Agent (USA) • Andy Solterbeck, VP Asia Pacific, Cylance • David Braue, CSO MC/Moderator What to expect: ​Hear from industry experts on the local and global ransomware threat landscape. Explore a new approach to dealing with ransomware using machine-learning techniques and by thinking about the problem in a fundamentally different way. Apply techniques for gathering insight into ransomware behaviour and find out what elements must go into a truly effective ransomware defence. Get a first-hand look at how ransomware actually works in practice, and how machine-learning techniques can pick up on its activities long before your employees do.

    Play Video

  • 150x50

    CSO Webinar: Get real about metadata to avoid a false sense of security

    Speakers: • Anthony Caruana – CSO MC and moderator • Ian Farquhar, Worldwide Virtual Security Team Lead, Gigamon • John Lindsay, Former CTO, iiNet • Skeeve Stevens, Futurist, Future Sumo • David Vaile - Vice chair of APF, Co-Convenor of the Cyberspace Law And Policy Community, UNSW Law Faculty This webinar covers: - A 101 on metadata - what it is and how to use it - Insight into a typical attack, what happens and what we would find when looking into the metadata - How to collect metadata, use this to detect attacks and get greater insight into how you can use this to protect your organisation - Learn how much raw data and metadata to retain and how long for - Get a reality check on how you're using your metadata and if this is enough to secure your organisation

    Play Video

  • 150x50

    CSO Webinar: How banking trojans work and how you can stop them

    CSO Webinar: How banking trojans work and how you can stop them Featuring: • John Baird, Director of Global Technology Production, Deutsche Bank • Samantha Macleod, GM Cyber Security, ME Bank • Sherrod DeGrippo, Director of Emerging Threats, Proofpoint (USA)

    Play Video

  • 150x50

    IDG Live Webinar:The right collaboration strategy will help your business take flight

    Speakers - Mike Harris, Engineering Services Manager, Jetstar - Christopher Johnson, IT Director APAC, 20th Century Fox - Brent Maxwell, Director of Information Systems, THE ICONIC - IDG MC/Moderator Anthony Caruana

    Play Video

More videos

Blog Posts