The social media platform LinkedIn has built itself up to be a fundamental part of the business community. It’s no longer acceptable for a working professional or business to not have a profile on LinkedIn. Social networking on LinkedIn has enabled advancements in marketing, hiring, and tons of other business activities. However, with so much business and personal information posted on the platform for anyone to view, phishing threats are terribly easy for hackers to achieve.
Why is this?
Spear phishing is a type of phishing that is targeted towards a specific individual, organization or business. Usually this comes in the form of posing as a coworker or boss. But how are cyber criminals able to pull this off on LinkedIn? It comes back to having all the information they need right in the platform. This includes the name of the person, where they work, what position they have, and all of their connections.
Email addresses are also very easily exploited as most companies follow the same system for assigning these to all employees whether that be their last name and first initial followed by the company domain or their first and last name separated by a period. Once a hacker figures out one email from a company, it's easy for them to find all of the others.
Hackers aren’t only using LinkedIn to get information to send outside of the platform, but fake profiles and messages are being sent within the system for further phishing. Messages can be sent to anyone, even if they aren’t a connection, so there is nothing stopping a cyber criminal from creating a fake account and sending you a phishing message.
LinkedIn is doing their best to try and address the phishing issues that have risen. They have a website available for users to report fake profiles and phishing attempts. You can also forward any phishing emails that come from LinkedIn or you believe were taken from your LinkedIn profile to phishing@linkedin.com and they will block this email.
That being said, these tools aren't foolproof and phishing will still happen one way or another. LinkedIn is a valuable tool for so many individuals and businesses that they would be hard pressed to give up.
Here are our top tips to help you stay safe on LinkedIn:
If you have any questions or would like more information about keeping yourself safe on LinkedIn, please reach out to us at info@rcsprofessional.com.
For more tips on keeping yourself secure from external threats, watch our Cybersecurity awareness training and subscribe.