Facebook Marketplace phishing text uses recipients’ names to prompt replies

· Original article ↗

Summary

A fake Marketplace listing sent by text uses the recipient’s name as the seller to encourage a reply. Responding can confirm the number is active; the article advises ignoring unsolicited messages and checking Facebook activity independently.

Key points

  • The unsolicited message includes a fabricated Marketplace listing that uses the recipient’s name; its profile picture may belong to another Facebook user with the same name.
  • The article suggests scammers may use name-and-phone-number pairs, potentially obtained from data breaches, to personalize the lure.
  • The apparent impersonation is designed to prompt a corrective reply. Responding confirms the number is active and may lead to resale or other scams.
  • The article says AI agents could make this kind of personalization easier to scale, but the exact source and motive behind the messages are unknown.
  • Do not reply to unsolicited messages or click links, call numbers, scan QR codes, or share one-time codes they contain. Verify suspicious messages through another channel.
  • Check Facebook activity and recovery settings independently; preserve and report a profile if it truly impersonates you. Use facebook.com/hacked if you find signs of account compromise.

Article Details

Event Type
Personalized phishing messages impersonating Facebook Marketplace listings
Impact
Recipients receive fabricated listings that identify them as the seller, encouraging them to reply to correct apparent impersonation. Replying confirms that their phone number is active and may enable resale of the number or further fraud. The source identifies malware delivery and Facebook account takeover as possible follow-on risks, but the messages' exact motive and any resulting losses or compromises are not established.

Vendors

Products

Related Articles