My Steemit Phishing Experience: A Thank You to those who helped me escape Unscathed

in #steemit6 years ago (edited)

I have recently been out of commission here on steemit for a few weeks with a lot going on. Some of you who may follow my blog closely know that my account was hacked about two weeks ago. This was not a very fun experience and the timing was also not ideal, but let's face it, being hacked is never an ideal occurrence no matter the circumstances at hand.

maxresdefault (2).jpg
Image Source

I want to help spread the word about all of the phishing scams going on around here lately in order to ensure that it happens to as few people as possible (ideally no one). These phishing acts are beginning to spread around like a wildfire, so it is our job as steemians to help one another in addressing this raising concern. Sometimes these scams may be blatantly obvious to pick up on, but other times not so much.

A hacker may attempt to steal your account by directing you to a steemit log in page that looks exactly the same as what we normally see when we login. The only difference being the URL, which usually we are not paying that close of attention to.

phished.jpg
Image Source

Be careful what you click on and never enter your credentials into a place that you do not fully trust. I made this mistake and my account was stolen from me. Luckily, I was able to pick up on the situation rather quickly and I was able to recover my account, change my master key and obtain all of my funds back. I escaped from this rather unscathed, but this may not happen for everyone who's account has been compromised.

For the longest time, however, I did not think I was going to get my Steem Power back because every time I tried to remove the delegation I received an error code. I was so distraught about this whole situation for quite some time, until just this past Friday my funds were all back to normal (Pewww... huge sigh of relief there).

Be sure to never use your master key when logging into steemit. Store this key somewhere offline where it will be safe. A hard drive of some sort is probably the best overall option for this. Log in with your posting key and you will have the ability to post, vote and comment. If you need to use the internal steem market, then access your active key, just like you would your posting key, under the permissions tab, NOT your master key. If anyone has any questions about this, then shoot me a comment below and I will try to explain in further detail.

Before any of this had happened to me, I was really unaware of most of this stuff, hence why I was hacked in the first place. Now that I know how to keep myself safe, none of this should ever happen, at least I sure do hope so. I worked so very hard and invested my own money into the platform in order to get to the point where I was, and I thought it was all KABOOM... down the drain. I really did get lucky with recovering my account as quickly as I did and removing the delegation from the account that had hacked me.

I was really surprised that I had not heard or seen any content related to the phishing schemes that were and are still going around like crazy. This was definitely a large contributing factor to why I was compromised in the first place. @steemcleaners is a fantastic account to follow here to stay up to date on content related to hacking and scams.

thank_you.jpg
Image Source

I want to take a minute to thank those of you who offered me guidance and help along the way during this horrific incident of mine. @acrange actually provided a message on my post saying not to follow instruction and the message was a confirmed scam, but I was too quick to act and fell for the scam before his message was even posted.

I followed up with @acrange once my account was fully recovered to ask for some more advice. Thanks again for looking out, I appreciate the warning and advice which you provided. I will definitely be giving unwavering support to you from here on out (along with all the other steemians I have yet to mention).

I also reached out to @khaleelkazi during this time because I knew I could trust him and also he seems to be quite knowledgeable about most everything that is going on here. He got back to me rather quickly and stated his sympathy for my situation and also told me what to do next. Thanks again for your continued support, I will always have someone's back when they have mine -- See you around my guy.

I also heard from @guiltyparties on my 'panic' post the day after my account had been recovered. He responded to my post with the URL for delegation removal. Thank you for providing your insights in a desperate time of need, I greatly appreciate this. Without your help, who knows what may have happened to my hard earned SP.

The very next day, I saw a post about recently hacked accounts here on steemit. The list was quite long and without any dismay @conradsuperb was listed among the 40 or 50 accounts which had been hacked (that day alone). Many of these accounts were totally compromised, but since I realized what I had dug myself into so quickly, I was luckily able to dig my way out.

@bullionstackers was the one who posted this article, so I figured I would reach out to gain some other insights which previous users may not have mentioned, or known. He was able to give, not only me, but many other steemians guidance about what to do NEXT. Along with @steemcleaners , @bullionstackers is another great account to follow to stay up to date regarding phishing scams here on steemit. Thanks again Mr. stackers, I can't thank you enough for your word of advice.

@patrice noticed one of my comments on a #steemcleaners post and got back to me saying that the delegation had been removed, which at the time I did not think was true because I kept getting back an 'error code' when attempting to do so. @patrice really gave me some hope and optimism that I would be getting my SP back. I thank you for reaching out and giving me some positivity regarding the state of my, at the time, lost funds.

To wrap things up, just be very careful as to what you click on, who you associate with and where you enter your passwords. Do not trust accounts that you do not know or that have reputation scores below 25. These are usually the accounts that have been hacked and are sending out these fake messages to steal people's accounts and hard earned money.

Be smart with your passwords and store them in a safe place that you are comfortable with. Be sure to never share your keys with anyone else, unless they are a close friend or family member and you have an intent to help them get started here on steemit.

This was an incredible learning experience for me, as I am still relatively new to this entire space. You never think it will happen to you, but when/if it does, it is such a terrible feeling-- let me tell you.

Stay safe my friends, and STEEM ON!!

Sort:  

sad to hear you got scammed.... many did. Stay safe man and check this out, it will help you out. get the app

15 SBD Design/Writing/Video Contest to Promote Steemed Phish And Stop All Phishing Attempts On Steemit

thanks for dropping by and putting this link here, will check it out for sure

steem on & cheers my friend

Thank you so much @conradsuperb for spreading awareness!

I think we should follow something strictly.

  • Don't click the link you are not sure about it. Hackers try to do anything just to click the link.
  • After clicking link, if it asks you to sign in in spite of being logged in before, that's a sign that something is wrong. Check out the url that you're redirected to.
  • The last but not least, never ever use your master key/owner key to sign in. Use it only to change your password.

Glad to know that everything is ok now.
Be careful and stay safe! :)

My pleasure after what occurred to me. Your bullet points are spot on @rezoanulvibes I think you nailed it right on the head my man.

Keep spreading the word -- the more that know the less this sh*t will happen

Respect

Hey @conradsuperb! I'm really glad to hear that it all worked out for you in the end! Thanks for the kind words, I'm always here if you need anything!

Phishing scams scare me! I'm really cautious anytime I make any transfers or log in to any site! I've become really dramatic about scanning URLs and saving ALL the sites I visit regularly as bookmarks so I never have to worry about clicking bad links. It's become a tedious process to always be worried about them, but in the end I think it's well worth it! I'm glad to hear that you were able to get this all sorted out and hope you never have issues in the future, stay safe buddy!

For sure, I always know I have someone I can trust. Also, the bookmarking thing is really a good idea I am gonna start doing that from now on.

These scams are really scary and you really gotta watch your back because they're everywhere these days. That's why I posted this to try and cover other people's backs as well-- the more that see this the better.

See you around buddy !!

I am so, so happy you got your account back safely!

With all the effort, hard work, time and even your own money that you put into this, I can only imagine how you felt when this happened.

I resteemed so more people can see this post and get informed.

Again, I am so glad you recovered your account because I really do consider you to be a valuable member of this community! :)

Yes I am too!! I was reallllllly realllllllllllllllly upset for those 10 days or so where my SP was just locked up in my account... I could see my account growing, but could literally do nothing about it. I didn't think the delegation was going to be lifted for a while, but sure enough my SP came back to me :))))))))))))))

Thanks Nina, I appreciate your words and of course your support-- the community needs more of you going around !!!

See you soon <3

Glad to hear your account is safe. Resteemed to spread the message.

Yessir, thank you very much. I appreciate the spread of word

Best,

Connor

I try and be leery of everything that doesn't seem normal. One night while reading articles all of a sudden I get a pop up on the article that asked me to log in. I knew I had already logged in because I had went to my wallet and redeemed my rewards which requires you to log in. There was no way to get rid of the pop up so I closed out Steemit in my browser and reopened it. The pop up was gone. Then to be safe I logged out and logged back in. It was just unusual to see a pop up sign in log while reading a article, you get a message that says in order to vote you have to log in but I've never seen one for reading articles. Call me a skeptic but weirder things do happen.

there are so many ways these hackers are trying to steal accounts these days, it's crazy to me. I haven't heard anything like this before, but thanks for sharing. Always gotta be leery in a place where a lot of money is being made. I will definitely use this as a learning tool for the future.

Im always gonna think twice now.
Good luck to you my friend !!

So glad to hear that everything is ok now! I am a fan off @bullionstackers he warned me once. Also @verhp11 Made a post I liked
For safety tips visit: https://steemit.com/steem/@verhp11/safety-first-first-aid-kit-for-steemians-who-are-just-beginning-this-great-journey and steemcleaners is great but Where There is earned money There Will also be alot off criminals so Watch your back ehhhh account
Good luck greets from holland

Yeah, bullion is the man!!! also thanks for linking that post, definitely going to check it out... thanks for dropping by :))

Greeting back at ya from my home state of OHIO here in the U S of A

~Respect from @conradsuperb

@conradsuperb
Glad your Account are Ok.
Still Intact.

Me too! thank you again for your wisdom Mr. bullion!!
-Respect

Great outcome for you my friend. Thanks for sharing your experience and spread awareness about this matter.

Indeed, couldn't be happier with how it turned out for me.... join the movement && spread the word

stay safe and keep steeming !!

How good you managed to recover your account. Thank you very much for giving such valuable recommendations so that others do not fall into traps.

Yes, Indeed && of course it is my pleasure. I hope this can be of help to a lot of steemians out there.

We need to spread the word more and more so people know how to remain safe from hackers -- they're everywhere these days

Coin Marketplace

STEEM 0.20
TRX 0.14
JST 0.030
BTC 66914.48
ETH 3341.32
USDT 1.00
SBD 2.72