Posts

Showing posts with the label #CyberDudeBivash #Facebook #Phishing #Meta #Passkeys #2FA #BusinessManager #AccountSecurity #BrandProtection #SocialEngineering

Phishing Attack Targets Facebook Users — A Threat Analysis Report By CyberDudeBivash • Last updated: 22 September 2025 (IST)

Image
  Executive Snapshot What’s happening: Facebook users—particularly Page/Business account admins —are being targeted by lures that claim policy violations, account bans or copyright strikes , herding victims to fake login/appeal pages that steal passwords and sometimes 2FA codes . Recent industry write-ups and consumer advisories warn about precisely these “Page Support/Disabled in 48 hours” phishes. Malwarebytes +1 Why it works: The attacks look official and often pressure for immediate action , culminating in a spoofed Facebook login . Some kits also coax victims to share one-time codes—an increasingly common upgrade. Forbes +1 What’s new: Facebook is rolling out passkey support (WebAuthn/FIDO) on mobile to reduce credential theft; passkeys bind to the real domain and won’t fire on a fake site—an important anti-phishing upgrade for users who enable it. The Verge Baseline guidance: Turn on phishing-resistant MFA/passkeys , avoid link-based appeals , and use dire...