There is no need of a hurry to change anything, there is a mandatory step to check your account security, activity log before doing anything later...
You are right, we must check the official security log directly from the main dashboard and should not panic because that's exactly what these scammers rely on to make people click links blindly. The scary message they write could convince people to click on the recovery emails that they have manipulated for us. That's why we should take a deep breath and manually verify.
Also, thank you for sharing that guide link for creating strong passwords and emphasizing 2FA. You are absolutely right that 2FA is a mandatory shield for any crypto user nowadays.
Although it is also worth mentioning that in this case if a beginner unknowingly clicked on that link shared by the scammer and even if they have 2FA in place, that link will take the victim to a recovery page where they have to change the password and information and on the same page they have to provide the OTPs etc. so when they do that in the active session which belongs to the scammer then the scammer can access the account using AiTM technology they have been using which automates everything. Although these attacks could stop most of the attacks.
Appreciate your highly valuable addition to the thread! Stay safe.
I have seen many times the image on the left you just shared above on my Google mail inbox,...
You are on the spot sir, because if we have not initiated anything from our end and still are receiving an email that means someone is trying to access our mail especially in this case. Scammers have to have your email first then in the recovery they will enter your email and in the name or organization field they will enter their message which would look like as shown in the images. These are not my images, they were shared by Lopp on his Twitter.
The footer note which tells us that if you have not done anything then ignore the mail is visible in the real one and not visible in the fake one, so most likely a vulnerable person could click on the email. I am glad that it helped.
Thank you, OP, for bringing this to our attention. I literally received a lot of promotional emails on a daily basis. But I never opened them and click them....
If you are already receiving many spam emails that means you are on their list, so be extra careful. We should not reuse our emails for everything and our main working emails should be isolated from offers and activities that are unnecessary for our work. That's how we can save ourselves directly in the first place but you are doing great and I am happy that it was worth sharing.
Yes bro I know the effort here in using Telegram, I have been using proxies for a long time and if they were the issue then I never faced one although I do remember reading your posts about AI and the security alert messages you received. The way you are saying it, they seem like a serious case but if the virus was actually there then you would have lost your funds already if I am not wrong. Because hackers don't delay things.