logo

New Phishing Campaign Spreads Via LinkedIn Comments

ID: cb22e31d-5a16-5487-a606-2318035a90e2

STIX ID: report--cb22e31d-5a16-5487-a606-2318035a90e2

Feed Name: KnowBe4 Blog

Threat Score
60/100

Date Published: 2026-01-22

Date Updated: 2026-04-28

Author: KnowBe4 Team

...
...

A widespread phishing campaign is abusing LinkedIn comment replies to impersonate LinkedIn, claim accounts are restricted, and provide links to convincingly spoofed login portals that harvest Google, Microsoft, or Apple credentials. Attackers use bots and LinkedIn’s official URL shortener (lnkd.in) to make the messages appear legitimate; LinkedIn confirms it does not communicate policy violations via public comments and is taking action. Users are advised not to interact with such comments or click external links and to report suspicious behavior.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.