Taobao's customers, be aware of phishing cancellation emails like the one below that are being sent by cyber criminals/scammers to potential victims. The phishing emails steal Taobao customers' usernames and passwords by tricking them into clicking on a link within same emails that go to a fake Taobao website. The fake website will ask visitors to sign in with their Taobao's usernames and passwords. But, any attempt to sign into the fake web page will send the visitors' usernames and passwords(credentials) to the cybercriminals behind the scam. Once the cybercriminals have gotten the stolen credentials, they will use it to gain access to their potential victims' Taobao accounts, hijack and use them fraudulently.
It is recommended that Taobao customers go directly to www.taobao.com to sign into their accounts, instead of clicking on a link in an e-mail message. Once they have signed in, they will be notified of cancellations, updates or other important messages, if there are any.
The "Taobao - Your Cancellation" Phishing Scams
From: Roisin Douglas <contradistinctn@northstate.net>
Subject: Taobao - Your Cancellation 194-511445-7244914
Date: May 29, 2017 at 5:57:30 PM CDT
Your order has been successfully canceled.
For your reference, here's a summary of your order:
You just canceled order 194-511445-7244914 placed on May 29, 2017.
Status: CANCELED
1 DMC-17525 $4.49
Free Super Saver Shipping Details
2 GLK-63739 $17.65
Sold by: Taobao LLC
Thank you for visiting Taobao!
Taobao
Earth's Biggest Selection
Taobao's customers who have been tricked by the order cancellation phishing scams are asked to change their Taobao password immediately before their accounts are hijacked and used fraudulently. They should also check their accounts for discrepancies. For Taobao' customers whose accounts have already been hijacked, they are asked to contact Taobao for help.