I read that one of our STEEMIAN friend been trick into a fake phishing steemit site that trying to steal his/her username and password! This will enable the scammer to login into your account and steal/transfer out your steem and SBD!
Phishing is the attempt to obtain sensitive information such as usernames, passwords, and credit card details (and >money), often for malicious reasons, by disguising as a trustworthy entity in an electronic communication.
The scammer actually setup a website looks exactly identical to steemit but the URL address are slightly different. On this case its https://steemit.ml (FAKE Phishing SITE!) He will copy your post to the Fake phishing site and make a comment on your ORIGINAL post saying someone has plagiarize/copy your post with a link ( tinyurl address) to the fake phishing site.
So when you read his comment and click on the url, it will brings you to the fake steemit site where you are prompt to enter your login id and password!
DO NOT LOGIN! check the URL address!
This phishing tactics are quite common way to steal login ID and password in Online Banking, Cryptocurrencies Wallets, etc. Please be careful whenever you click a link, always double check the URL.
WATCH OUT AND BE EXTRA CAREFUL, ALWAYS CHECK THE URL!
What should you do IF you did login to a fake phishing site? Here are a good guide by how to recover from a phishing attack, https://steemit.com/security/@steemcleaners/phishing-attacks-and-recovery
Further reading on how our steemian create
- a Proactive Measure to Limit Phishing on Steemit, https://steemit.com/steemcleaners/@anyx/introducing-guard-a-proactive-measure-to-limit-phishing-on-steemit