Facebook phishing scam: hey, do you remember this photo?

Facebook phishing scam: hey, do you remember this photo?

Summary: A new scam on Facebook is trying to steal your account credentials. Never re-enter your e-mail address and password without first checking that you are indeed on facebook.com.


Facebook scammers are exploiting ignorant victims curious enough to blindly click a link that they think leads them to a photo they've once seen before. There is no such photo, but the scammers do instead manage to steal your e-mail address and password for logging into Facebook.

This version says something like "hey, do you remember this photo?" or "Can you remember this photo?" or "Remember this photo?" followed by a fraudulent link. Here's how Facecrooks describes what happens next:

The scam message will be accompanied by a bit.ly or other link of some kind. Clicking on any of them will take you a page designed to look like the Facebook login page. Users who let their guard down or who aren’t paying careful attention, may not notice they have been redirected to a scam site. Obviously, if you login on this screen, the scammers can gain total access to your account.

Facebook has said before that it it will never request your password over email but will sometimes prompt to re-enter it on the website. The trouble here is that users aren't checking that they are still on Facebook. Just because it looks like Facebook, doesn't mean it is: check the URL in the address bar at the top of your browser.

As a general word of caution, don't click on everything your Facebook friends share on the social network. If you see a scam like this one, report it. Then go check your Messages and Wall to make sure you're not spreading the scam; the sooner you clean it up and Unlike any relevant Pages, the better. You can also contact Facebook Security if you'd like to.

See also:

Topics: Social Enterprise, Security

Emil Protalinski

About Emil Protalinski

Emil is a freelance journalist writing for CNET and ZDNet. Over the years,
he has covered the tech industry for multiple publications, including Ars
Technica, Neowin, and TechSpot.

Kick off your day with ZDNet's daily email newsletter. It's the freshest tech news and opinion, served hot. Get it.


Log in or register to join the discussion
  • Facebook Scams

    Facebook scams or any other kinds, I think everybody should check Scam Detector, an app that Apple released recently. They have hundreds and hundreds of scams exposed, in several industries. For those interested, the app has an online presence as well: www.scam-detector.com
  • Facebook Scam!!

    It is suppose to be in UK numbers but I don't know. 2348051447995 or 2348171021754 is the numbers. If a guy name William Almond answers then it is his number. He is a scammer. He likes to scan Facebook for single woman and he likes to earn your trust and makes sure you have fallen for him. Then he will ask to send you money through Western Union. $200 to $500, he will ask to send. For he will say he is on an oil rig in Nigeria, Africa and needs help of going coming back to the states to see his daughter, Daniella Almond. I have looked him and his daughter on the net and found NOTHING. DO NOT FALL FOR THE SCAM!! PLEASE DO NOT DO IT EVEN IF YOU HAVE FALLEN FOR HIM! THANK YOU!

    I got this from him.

    Hello,how are you,i saw your profile and could not just move away from it,you are so cute,beautiful and very lovely.i am interested in you,i would want to get to know you so much more.I will love to hear back from you.
    Martha Hope