Approximately 30,000 Facebook accounts have reportedly been compromised by a Vietnamese-linked phishing operation known as AccountDumpling. This campaign utilizes a Google AppSheet to distribute phishing emails, targeting Facebook Business account owners with fraudulent claims from Meta Support, urging them to submit appeals to avoid permanent account deletion.
Security researchers, including Shaked Chen from Guardio, characterize this operation as a sophisticated scheme with real-time monitoring and continuous adaptation. The phishing emails, sent from a Google AppSheet address, cleverly evade spam filters, creating a sense of urgency that directs users to counterfeit web pages aimed at stealing their credentials.
Several lures have been identified, such as fake notifications of account disablement and executive recruitment messages. Guardio's findings indicate that the stolen data, including personal information and account credentials, is transmitted to an attacker-controlled Telegram channel. The report underscores the ongoing threat posed by Vietnamese cybercriminals, who are increasingly employing varied tactics to exploit Facebook users.