Yesterday and today, I received an email with the subject “… is your Facebook account recovery code” from security@facebookmail.com. This appears to be a legitimate email address from Facebook and was sent to both my old and recent email addresses. However, I haven’t found any related emails in my security or recent email sections on Facebook, and I didn’t request any recovery code. The consistency of the “recovery code” over both days makes me suspect it’s a well-crafted scam.
It’s wise to be cautious. Scammers can spoof email addresses to appear legitimate.
You can log into Facebook and view the emails they’ve sent you.
I’ve received four of these emails so far, and each one contains the same recovery code. I don’t like that the recovery code doesn’t change with each request. If someone else sees these codes, my Bang account could be hacked. Additionally, if this information is spoofed and sent to someone else via the link, it could be a security risk.
It also seems like someone might be attempting to overload the security email system. However, I think the servers are too complex to crash that easily.
I wish I could see the device and location details for these recovery code requests.
I’ve been getting several of these emails over the past three days. As another poster mentioned, the email address appears to be a legitimate Facebook security email. My husband works in InfoSec and believes there’s a bot flooding their system.
Last night, I managed to get one. Just in case, I changed my password via the website rather than the email, but I received another one this morning.