Binance Warns Users Over Phishing Texts
Binance has warned users about a rise in phishing text messages that imitate account security alerts and direct recipients to fake websites through shortened links.
The exchange said the messages often claim that account settings were changed or that a suspicious login was detected, then pressure recipients to verify or secure their accounts immediately. Binance has not disclosed how many users received the texts or whether the latest campaign caused losses.
Fake Binance Alerts Use Shortened Links to Steal Credentials
The phishing messages are designed to resemble genuine Binance security notifications and create urgency around supposed account problems.
Following the shortened links can take users to fake websites built to resemble Binance login or verification pages. Attackers can then collect passwords, authentication codes or other information that could be used to access an account.
Binance said it does not ask users to verify or secure an account by clicking links sent through text messages. Users receiving unexpected security alerts are advised to open the official Binance app or access its website directly.
Binance Verify Checks Suspicious Websites and Contacts
Binance Verify allows users to check whether a website, email address, phone number or social media account is associated with the exchange before responding or entering account information.
The exchange also recommends using security measures including withdrawal address whitelists and its anti-phishing code, which places a user-selected code inside legitimate Binance emails.
Users who have already followed a suspicious link are advised to contact Binance through official support channels and avoid providing passwords, recovery phrases or authentication codes.
Binance Has Not Disclosed Losses From September Phishing Warning
Binance’s September 3 warning does not identify a specific attacker or investigation. The exchange has also not disclosed how many customers were targeted or whether funds were stolen in the latest campaign.
Users have been advised to avoid shortened links in unexpected security messages and verify suspicious communications through official Binance channels.