Accessibility links
  • Skip to main content
News Icon NEWS FILTER
All News Scams & Phishing Security Education Videos Mobile Security Your Security Education Identity Theft Corporate Security
Search Icon SEARCH
 

Email Icon SUBSCRIBE TO WEEKLY NEWSLETTER
Watch For This Credential Stealing Scam on X
Facebook   X   LinkedIn   Email

Watch For This Credential Stealing Scam on X

January 26, 2026

A sophisticated phishing campaign is targeting X (formerly Twitter) users with fraudulent DMCA copyright infringement notices designed to steal login credentials and compromise accounts. Security experts warn that these fake messages appear convincing but are actually elaborate traps set by cybercriminals. So, if you use that service, be on the lookout and don’t click any buttons in the message. 

The scam works by sending users official-looking notifications claiming their account has violated copyright laws through the DMCA or Digital Millennium Copyright Act. It might say something similar to some recent activity on your page may not fully meet our community standards. Please take a moment to review the information below and ensure your shared content follows our usage rules.” The messages typically warn of account suspension or legal action unless the user immediately “reviews” their account details by clicking a malicious link. Once clicked, victims are redirected to fake X login pages where attackers harvest their usernames and passwords. 

While you may not use anything that could violate the DMCA, many people do, particularly when posting videos, images, or using music in their posts. However, what makes these attacks particularly dangerous is their appearance of legitimacy—they often include official-looking logos, legal language, and urgent deadlines to pressure users into acting quickly without thinking critically. 

If you receive a suspicious DMCA notice: 

  • Don’t click any links or buttons in the message 
  • Verify authenticity by logging into X directly through your browser (not the message link) 
  • Check X’s official Help Center for legitimate copyright notices 
  • Report the phishing attempt to X’s support team 
  • If you’ve already clicked: 
  • Change your X password immediately 
  • Enable two-factor authentication 
  • Review your account for unauthorized activity 
  • Monitor your email for password reset attempts on other accounts 

Remember: Legitimate DMCA notices from X follow specific formats and never pressure you to click links urgently. When in doubt, navigate to X independently rather than clicking message links. 


Social Media Brings Out The Worst Scammers

Scams & Phishing

Social Media Brings Out The Worst Scammers

Social media attacks are a favorite of those pesky cybercriminals. One might wonder why. Well, it’s because it’s easy pickin's going for those accounts. Researchers at Arkose Labs found that of 1.2 billion social media interactions, 53% of the logins were fraudulent and 25% of new accounts were phony. Millions of people use one form of social media or another, whether it’s Facebook, Instagram, Snapchat, LinkedIn, or something else. That leaves a barrel full of phish used for targets for hackers and scammers. READ FULL STORY

There Is Plenty Of Phishing On Online Apps--Don't Get Hooked

Scams & Phishing

There Is Plenty Of Phishing On Online Apps--Don't Get Hooked

A recent documentary aired on subscription streaming service, Netflix, that highlighted how difficult it is to detect when someone is trying to take advantage of human nature and kindness. You may have seen it. It has been discussed on various media and it may be difficult to watch. But it is yet another example of how criminals use social engineering and trust to get what they want. One interviewee tells the story of how she met a guy that matched and swept her off her feet and swept her bank account clean. READ FULL STORY

Know The Signs Of A Social Security Scam

Scams & Phishing

Video Icon Know The Signs Of A Social Security Scam

Scammers frequently change their approach with new tactics and messages to trick people. We encourage you to stay up to date on the latest news and advisories by following SSA OIG on LinkedIn, Twitter, and Facebook or subscribing to receive email alerts. READ FULL STORY

DMV Warns of Scammers Driving Off with Your Info

Identity Theft

DMV Warns of Scammers Driving Off with Your Info

The California DMV has issued a warning to drivers about a new scam circulating on social media. Fraudsters are creating fake advertisements that claim to offer vehicle registration renewal at a too good to be true 50% discount, offering an appealing alternative to the official fee, which truly can make one’s head spin faster than a racecar’s wheels off the starting line. It’s not limited to California, however. Other DMVs have put out the warning flag as well. READ FULL STORY

Securing Your Online Financial Accounts – Can You Afford Not To?

Your Security

Securing Your Online Financial Accounts – Can You Afford Not To?

Most of us would agree technology makes online banking a breeze. No more trips to the brick-and-mortar, parking, or waiting in line. But with that ease comes the reality that our financial accounts are vulnerable and valuable cybercrime targets. The best answer to that risk is being proactive about your online banking security. This is the first of a two-part look at steps you can take to further secure your own accounts. After all, can you afford not to? READ FULL STORY








Close
Fraud News & Alerts!

Keep up with the latest cyber security news through our weekly Fraud News & Alerts updates. Each week you will receive an email containing the latest cyber security news, tips and breach notifications.



You're all set!

You will receive your first official security update email within the next week.

A welcome email has also just been sent to you. If you do not receive this email within the next few minutes, please check your Junk box or spam filter to confirm our emails are not being blocked.


 
Help  
Enter any word or words you like.        

The email newsletter will arrive from news@stickleyonsecurity.com


Loading
Please wait...