‘We noticed a login from a new device’: the message from fraudsters targeting your X account

by | Aug 15, 2026 | Financial

‘We noticed a login from a new device’: the message from fraudsters targeting your X account

Phishing scams targeting X accounts have become increasingly sophisticated, with fraudsters sending emails that closely resemble legitimate login notifications from the platform. These messages alert users to suspicious account activity, such as logins from unfamiliar locations, and prompt them to take protective action by resetting their password or reviewing authorized applications.

The fake emails replicate the visual design and formatting of genuine X communications, including the platform’s logo and professional layout. However, cybersecurity experts note that several indicators can help users identify these fraudulent messages. The emails typically lack specific account identifiers, such as the user’s X handle, and provide vague information about login locations. More importantly, the sender email address and the destinations of embedded links reveal the true nature of the phishing attempt, as X only sends communications from @X.com or @e.X.com domains.

Once criminals gain access to compromised accounts through these schemes, they typically exploit them for further fraudulent activities. Common follow-up crimes include cryptocurrency scams, additional phishing campaigns, and the spread of misinformation. Scammers may also use stolen credentials to authorize malicious applications that provide unauthorized account access without requiring the original password.

Security professionals recommend that users verify suspicious emails by checking sender addresses and link destinations before clicking. Rather than following email prompts, users should open the official X application directly to investigate any potential security concerns. Those who clicked links should avoid entering sensitive information, though simply viewing a fake page poses minimal risk. Users who have entered passwords or authentication codes should immediately change their credentials and enable two-factor authentication if not already active. X maintains a help guide for users who believe their accounts have been compromised, and the company may proactively reset passwords for accounts suspected of being breached.

Article Attribution | Read More at Article Source

Article summary produced by Claude AI