I got a pretty good Spoofed security email from Facebook

JEDI

Lifer
Sep 25, 2001
29,391
2,737
126
Facebook <security@facebookmail.com>

We received a request to reset your Facebook password.
Enter the following password reset code: xxxxxxxx

Alternatively, you can directly change your password.
<change password link>

Didn't request this change?
If you didn't request a new password, let us know.
(with 'let us know' linked)


google says security@facebookmail.com is legit from facebook.
i have a yahoo acct and when you mouseover the title of the email, it gives the real reply email addr which was still security@facebookmail.com.

but when i look in my facebook acct's settings, there's an option to see emails sent to me from facebook.
it said none in the past 2 weeks. :eek:
this is the 2nd email i received from security@facebookmail.com in the past 2 days.

pretty good spoof.
besides the spoofed email addr, when you mouse over the links it says:
The <change password link> directs to facebook.com/n/?recover...
and 'let us know' links to facebook.com/login/recover...

wonder how they did it?
 
Last edited:

SKORPI0

Lifer
Jan 18, 2000
18,468
2,406
136
I keep getting these FB password reset every other week. Ignored them of course.