Lvl 70 account @samstonehill was hacked and sending Spam. Warning. This is why you should always use your posting key to login.

in #life7 years ago (edited)

EDIT:

The user made a good post about the hack under a new account, you can find it here.

All rewards from this post I will send to him.


Orginal post:


I just got a Memo in my account send from user @samstonehill.

It reads.

ACCOUNT BLOCKED: We have detected unauthorized activity in your account. Your account has been BLOCKED for your protection. Please Contact Account Security: ttps://security-steemit.com.mx/account-security-contact

It's of course totally fake.

Normally it's not such a big deal. But this account is lvl 70. Making it seem more legit.

Again nobody will ever ask you for your password on Steemit.

Don't fall for it.


IMG_3979.jpg


This is what the account looks like atm. It is sending messages to everyone.


3213131231231231.png


56565656.png


The link will lead to this website. It looks professional enough.


IMG_3987.JPG


I have been writing a lot about account security lately. But it's so important.

This is why you should never use your master key to login. But use your posting key.

With your posting key, it's not possible to transfer funds.

If your posting key is compromised in any way you can always use your master key to change it.

You can find your posting key here:



Exyle logo final _ RGB-04.png


Bitcoin SwC Poker, download and use affiliate code: Blazin888

Sort:  

This is what I found in his latest post.

"Am a little bit sad to tell you that this account has been hacked and I no longer have access to it.

My new account is @samstonehilltube (which I very much hope you will follow!) and if you would like to understand how this has happened and support me in this moment of crisis, please read, upvote & resteem the latest post there, which explains everything clearly, ensuring this won’t happen to anyone else 🙏🏻"

People having the account on their upvote-bot list should pay attention as well!

O man that's a real shame. Thanks for sharing. I'll send him all the rewards from this post. Liquid and SP.

🎩
😁
👕👍Great!
👖

thanks for sharing, man, it's stuff like this that is going to scare people off... it makes blockchain look bad in away, ya know

Let's just all together downvote him, and get him in - reputation
Check out my latest post

Wow, thanks for the heads up. There seems to be a ton of these phishing attempts and scams going on right now. A random user might not get much attention paid to it, but a level 70 rep account, some people might give it more credence.

Your posts about security have been excellent and with so many new users, are must reads for many. Re-Steeming man. Thanks again and you and Bianca have a great night!

Thank U for the warning

It's such a shame because he was doing such a great job raising funds for the Balinese people displaced by Agung volcanic activity.

nice post my friend and it's too sad to hear that @samstonehilltube account got hacked, the mistake he makes that he opens up that link and put his master password in it to try and contact the support team that's why steemit makes those seven rules.

The first rule of Steemit is: Do not lose your password.
The second rule of Steemit is: Do not lose your password.
The third rule of Steemit is: We cannot recover your password.
The fourth rule: If you can remember the password, it's not secure.
The fifth rule: Use only randomly-generated passwords.
The sixth rule: Do not tell anyone your password.
The seventh rule: Always back up your password.

i agree with your suggestions to try and use steemit with posting key instead of master password so in any case we lose key we atleast have our master password to recover it, thank you very much my friend for giving us wonderful tips and suggestions, so we can continue to use steemit without problems, Stay blessed.

it's pretty sad but also a valuable lesson. Thanks for the heads up, especially about the posting key, I didn't know logging in with it would be a better option. Steemit should have a tutorial about safety for new users.

Most likely it's a phishing bot, otherwise where's the presence of persistent messages. It seems that someone wants to hack into and penetrate into user accounts of Steemit . Many thanks for the useful information @exyle, we need to be more careful!

It's so sad! I just heard about it and headed over to his new account to give it a follow. I gave some flags to the posts on the old account that still had payouts pending. Most are on 0, but there are still two which can us a bit more flagging power. I hope others will finish the job.

many such event's has already happened and the wallet spam and these fraudsters are not seeing to be stopping at all !!

@exyle - Sir, thank you very much for warning us. I checked that link, Sir if you didn't update us, it looks like a genuine Steemit forum. Well organized set of scammers are doing this Sir :( Very useful article for all of us. Therefore, I wish to ReSteem your post.

+W+ [UpVoted & ReSteemed]