Home » CenturyLink/Embarq » Currently Reading:

Gone Phishing: Hackers Target CenturyLink With Authentic Looking Customer Portal Website – Customers Beware

Phillip Dampier February 11, 2010 CenturyLink/Embarq No Comments

CenturyLink customers should exercise caution in responding to e-mail links to CenturyLink’s online account portal.  Hackers have meticulously duplicated the look and feel of the nation’s fourth largest phone company’s online account website with hopes customers will provide personal information that can be used for identity theft or fraudulent financial activity.

Trend Micro’s TrendLabs group warned readers it noticed the well-done phishing fakes popping up on several websites, preparing to collect information from unsuspecting customers.  Most phishing attacks typically start with unsolicited e-mail purporting to be from CenturyLink, with a convenient link included for customers to click.  Only this e-mail will not direct visitors to CenturyLink, instead diverting customers to the impostor websites that look like the real thing.

Customers can protect themselves from these phishing tricks and traps by following this advice:

  1. If receiving e-mail from a company asking you to follow a link to their website, you are safer typing in the company’s website address yourself, ignoring the link.  Links that look authentic in an e-mail can be anything but when you click on them.  If you intend to share personal information or password to log in to a website, it’s better to start your journey there yourself.
  2. If the site you reach shows an unexpected address in the URL window, that is often a warning sign trouble is brewing.  CenturyLink’s account login screen should display either https://secure.centurylink.net/login.php or https://eam.centurylink.com/eam/login.do.  If it shows a series of numbers or a website address other than centurylink.com or centurylink.net, consider ending your visit and starting over at centurylink.com, typed into your browser yourself.  When in doubt, don’t enter your login information.
  3. A padlock should be visible somewhere in your browser at the CenturyLink login screen.  Most place the padlock at the bottom of the browser screen.  No padlock?  Danger.
  4. Any code errors on the page that show up should also be a point of concern along with spelling and grammatical errors.

In general, using up to date antivirus software and applying security patches regularly will offer some advance warning of a suspicious message.  But nothing beats common sense.

The authentic CenturyLink website. Notice the padlock circled on the right.

The fake version phishing for your personal information. Circled on the left is a warning of code errors on the page. On the right, notice the absence of a padlock icon.







Search This Site:

Contributions:

Recent Comments:

  • Scott: Your typical cable company could care less if you don't recommend them, when the only option or competition is your local telephone company offering 3...
  • Paul Moncrief: LET'S KICK THE GIANT IN THE KNEECAP AND PUCNH HIM IN THE WALLET for FINANCIAL RAPE. I'm exhausted from dealing with Exec CS. Over 8 hours alone last...
  • jr: Companies need to realize that if they have caps, a customer won't recommend them to their friends in person and online. With almost everyone having a...
  • Tim: Google proved, by just proposing the idea, that people DO want faster speeds and it threw the industry argument, "Most users don't want faster speeds ...
  • Tim: I like the ISP's that have a cap but don't have a meter for their customers. It is basically saying, "Hey trust me. I won't screw you over. (winks)" ...
  • Connie: It's a long ugly story that I've posted on my blog, but the transition from Verizon to Frontier has been a debacle. I spent from noon yesterday to 10...
  • Brian H.: Yup, me too, Greensboro, NC. I call every single month to contest the bill before I pay. It's a huge pain in my arse, but they keep saying it should...
  • Blakey: If you don't like FOX, the stay away from DirecTV as it is part of Rupert Murdoch's News Corporation the parent company of Fox News. FUN FACT: ...
  • Scott: I had the same issue on my 4Mbit cable during evenings, I was lucky to get 1-2Mbit speed until several hours later. After I cancelled my TV/Phone o...
  • Matt Drew: "Broadband providers who bill consumers based on their usage answer to no one. Completely deregulated, providers need not submit to independent verif...
  • Stew: Nonone wants to be a anything in the future. They only want the millions in bonus now. Of course when the future becomes the present they will still ...
  • Bob in Illinois: If you're committed to be a landline telephone company for the long term, you must install fiber for the future. If you balk at installing fiber, m...

Your Account: