Fake Social Media Verification Scams Are the Gateway to Something Much More Sinister

Stu Sjouwerman | Oct 14, 2020

Social Media Verification Scam Using copyright violation threats or the lure of obtaining a blue checkmark to verify your account, the latest scams easily trick victims out of their social media credentials.

For anyone that is (or thinks they are) a social media “influencer”, there are no greater messages that will stir up emotions to get a response than a potential suspension on one end of the spectrum, and verification on the other. That’s what scammers are betting on in the latest phishing scams targeting users of TikTok, Instagram, and Twitter.

Using realistic-looking emails and landing pages (as shown below), the scammers convincingly take the victim for their credentials, and other details.

twitter-verify

These information stolen can be sold on the dark web, used to further scam other initiatives (case in point, recent cryptocurrency scams on Twitter) by impersonating the victim.

While this feels like a scam that doesn’t impact organizations, identity theft – even on social media – can find its way into the organization through use of company devices for personal use. Organizations should make users aware of these kinds of scams to help both the employee and the organization stay safe.

Topics: Phishing

Stop Being a Target for Social Media Exploits

Social media is the new frontier for targeted spear phishing and credential theft. Use our Free Social Media Phishing Test to identify which users are likely to click malicious links or leak data on platforms like LinkedIn and X, and get your results in just 24 hours.

Get Your Free Test

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.