Home » CenturyLink » Currently Reading:

Gone Phishing: Hackers Target CenturyLink With Authentic Looking Customer Portal Website – Customers Beware

Phillip Dampier February 11, 2010 CenturyLink No Comments

CenturyLink customers should exercise caution in responding to e-mail links to CenturyLink’s online account portal.  Hackers have meticulously duplicated the look and feel of the nation’s fourth largest phone company’s online account website with hopes customers will provide personal information that can be used for identity theft or fraudulent financial activity.

Trend Micro’s TrendLabs group warned readers it noticed the well-done phishing fakes popping up on several websites, preparing to collect information from unsuspecting customers.  Most phishing attacks typically start with unsolicited e-mail purporting to be from CenturyLink, with a convenient link included for customers to click.  Only this e-mail will not direct visitors to CenturyLink, instead diverting customers to the impostor websites that look like the real thing.

Customers can protect themselves from these phishing tricks and traps by following this advice:

  1. If receiving e-mail from a company asking you to follow a link to their website, you are safer typing in the company’s website address yourself, ignoring the link.  Links that look authentic in an e-mail can be anything but when you click on them.  If you intend to share personal information or password to log in to a website, it’s better to start your journey there yourself.
  2. If the site you reach shows an unexpected address in the URL window, that is often a warning sign trouble is brewing.  CenturyLink’s account login screen should display either https://secure.centurylink.net/login.php or https://eam.centurylink.com/eam/login.do.  If it shows a series of numbers or a website address other than centurylink.com or centurylink.net, consider ending your visit and starting over at centurylink.com, typed into your browser yourself.  When in doubt, don’t enter your login information.
  3. A padlock should be visible somewhere in your browser at the CenturyLink login screen.  Most place the padlock at the bottom of the browser screen.  No padlock?  Danger.
  4. Any code errors on the page that show up should also be a point of concern along with spelling and grammatical errors.

In general, using up to date antivirus software and applying security patches regularly will offer some advance warning of a suspicious message.  But nothing beats common sense.

The authentic CenturyLink website. Notice the padlock circled on the right.

The fake version phishing for your personal information. Circled on the left is a warning of code errors on the page. On the right, notice the absence of a padlock icon.

Search This Site:

Contributions:

Recent Comments:

  • Joe V: I hope the people of New Jersey are happy. They voted for Chris Christie and this is exactly what they got....
  • Susan: After diligently watching my credit score for over a year and how negative as well as positive postings affect it, I have a hard time believing that o...
  • David Therchik: An intense investigation needs to put into this! As soon as one starts I bet they'll stop charging/cheating people from over usage. Before they bought...
  • Charles Bingham: I did but customer no service was no help - said it did no good to have pass word with symbols, cap and small letters and #'s. IF only I had an alte...
  • Phillip Dampier: That assumes this customer had access to a working usage meter and notification messages and ignored them. Evidently it was big enough of a problem fo...
  • Are you kidding me...: "Over the years" people are using the internet differently. If your bill went up, you have usage. Responsible would be calling and talking to them ab...
  • Charles Bingham: Actually my usage has decreased over the years as I sold my business and only kept the internet for a few tax returns that I still do, no employees no...
  • Are you kidding me...: This entire article reeks of "poor me, I'm a victim and I can't be responsible about my own Internet usage, my own bills or my own actions." Grow up....
  • a gci customer: even with the new plans, you are still data capped, they just speed rate you at that point vs charging you for overages. You are given the ability t...
  • random-gci-customer: How do you think their Senior Vice President of Consumer services funds his opulent exotic car collection??? https://www.dropbox.com/s/uj7yh1r7hcfc03...
  • whyatt: Well this is what I know. There are 4 internet plans called r:10 r:50 r:100 and RED. And these plans are cheaper than the old plans. Those old plans u...
  • oobovigif: Well I guess they don't want the Tax Breaks anymore either. They just need to seriously Stop with all this BS about lack of Spectrum. They have Plenty...

Your Account: