This is my story about the FBSTARTER.COM scam on Facebook, from 10:30am this morning.
So it started with an innocuous email from a recent "friend" on Facebook.

And the page, when you get there looks legit.

Looks Okay... Right?
But the code behind the page is wrong.

the code behind the page
And the POST action is odd looking.
post code
And of course they are looking for one thing.

password input
But things don't work quite like they should.

signup - page not found
And who is Boris?

So I enter some bogus info to see what happens.

entering some bogus info
And I am taken to the my Facebook page, since my cookies are set to load my page.
Hopefully, I didn't do something stupid and reveal my cookies to Boris. My guess is what I did was send him a @scammer.com email address with a scammmy password.
BUT… Maybe I'll go change my password just in case.
Update: I DID change my password. And just now got the following message from Facebook.

The lesson, keep alert out there folks. And don't let Boris steal hijack your Facebook account. Who knows what might happen then. Your social stream could be derailed.
@jmacofearth
permalink: http://bit.ly/phishing-Facebook
Check out the Facebook Fails Index
And the mother of it all: The F-Bomb and F-Book: The F-Book Manifesto! [Facebook = F-Book]
Another version by TechCrunch.





