Our members have brought to our attention that there’s been an increased number
of phishing attempts on BrickLink. To combat this, we have anonymized usernames
on the Members Page.
Anonymized usernames
Depending on the length of the username, only one or two characters at the beginning
and end or usernames are displayed. This ensures that phishers will not be able
to contact users from the Members Page.
Here are some additional measures and things to look out for:
Email headers
Please note that emails coming from other BrickLink members and not employees
or administrators will contain the following message: “This message originated
from another BrickLink member and not a BrickLink employee or administrator.
Please avoid clicking on any links, sending funds, or replying with any personal
information.”
Direct payments
As a reminder, BrickLink does not process or manage payments directly. If
you receive emails implying otherwise, it’s likely a scam. Also, never provide
personal or payment information in response to an unsolicited email or message.
Please report any suspicious activity to BrickLink support: bricklink@support.lego.com
Thanks for your help in keeping the BrickLink community safe,
The BrickLink Team
Depending on the length of the username, only one or two characters at the beginning
and end or usernames are displayed. This ensures that phishers will not be able
to contact users from the Members Page.
Just for info, mods (and I guess other CEPs) still see the full names.
[…]
“Please avoid clicking on any links, sending funds, or replying with any personal
information.”
A few sellers have remarked that this header is a bit confusing when they need
to ask for payment or correct/full postal address for an order….
Depending on the length of the username, only one or two characters at the beginning
and end or usernames are displayed. This ensures that phishers will not be able
to contact users from the Members Page.
Just for info, mods (and I guess other CEPs) still see the full names.
[…]
“Please avoid clicking on any links, sending funds, or replying with any personal
information.”
A few sellers have remarked that this header is a bit confusing when they need
to ask for payment or correct/full postal address for an order….
Absolutely!
The paragraph may contain something like "... except as part of an Order"
Yes, If you sign out you will see the change and you can no longer click the
user name to send an email
Milissa
In Announce, SylvainLS writes:
Anonymized usernames
Depending on the length of the username, only one or two characters at the beginning
and end or usernames are displayed. This ensures that phishers will not be able
to contact users from the Members Page.
Just for info, mods (and I guess other CEPs) still see the full names.
I don't know if this has been mentioned by anyone, but this seems to have
affected some of the search functionality. For example, if you search for a
store name that includes 'brick' all of the results are anonymised:
Is it possible to at least make the 'Store' field an active hyperlink,
or apply a fix to this? I appreciate that this change has been introduced with
the best of intentions, but it may deter potential buyers if they can't easily
locate stores.
I don't know if this has been mentioned by anyone, but this seems to have
affected some of the search functionality. For example, if you search for a
store name that includes 'brick' all of the results are anonymised:
Is it possible to at least make the 'Store' field an active hyperlink,
or apply a fix to this? I appreciate that this change has been introduced with
the best of intentions, but it may deter potential buyers if they can't easily
locate stores.
Oh yes, 100% agree!
People may not always remember the exact shop name and this search is very useful
for this: type part of the name and get a link to enter the shop.
Of course if you wish to search for "brick" then you're doomed
I don't know if this has been mentioned by anyone, but this seems to have
affected some of the search functionality. For example, if you search for a
store name that includes 'brick' all of the results are anonymised:
Is it possible to at least make the 'Store' field an active hyperlink,
or apply a fix to this? I appreciate that this change has been introduced with
the best of intentions, but it may deter potential buyers if they can't easily
locate stores.
Our members have brought to our attention that there’s been an increased number
of phishing attempts on BrickLink. To combat this, we have anonymized usernames
on the Members Page.
Anonymized usernames
Depending on the length of the username, only one or two characters at the beginning
and end or usernames are displayed. This ensures that phishers will not be able
to contact users from the Members Page.
Our members have brought to our attention that there’s been an increased number
of phishing attempts on BrickLink. To combat this, we have anonymized usernames
on the Members Page.
Anonymized usernames
Depending on the length of the username, only one or two characters at the beginning
and end or usernames are displayed. This ensures that phishers will not be able
to contact users from the Members Page.
Our members have brought to our attention that there’s been an increased number
of phishing attempts on BrickLink. To combat this, we have anonymized usernames
on the Members Page.
Anonymized usernames
Depending on the length of the username, only one or two characters at the beginning
and end or usernames are displayed. This ensures that phishers will not be able
to contact users from the Members Page.
Our members have brought to our attention that there’s been an increased number
of phishing attempts on BrickLink. To combat this, we have anonymized usernames
on the Members Page.
Anonymized usernames
Depending on the length of the username, only one or two characters at the beginning
and end or usernames are displayed. This ensures that phishers will not be able
to contact users from the Members Page.
Here are some additional measures and things to look out for:
Email headers
Please note that emails coming from other BrickLink members and not employees
or administrators will contain the following message: “This message originated
from another BrickLink member and not a BrickLink employee or administrator.
Please avoid clicking on any links, sending funds, or replying with any personal
information.”
Direct payments
As a reminder, BrickLink does not process or manage payments directly. If
you receive emails implying otherwise, it’s likely a scam. Also, never provide
personal or payment information in response to an unsolicited email or message.
Please report any suspicious activity to BrickLink support: bricklink@support.lego.com
Thanks for your help in keeping the BrickLink community safe,
The BrickLink Team
This morning I have received two messages from the same account with subject:
"Notice of Suspension". Should I notify BrickLink of the specific account?
Thank you
This morning I have received two messages from the same account with subject:
"Notice of Suspension". Should I notify BrickLink of the specific account?
Thank you
But reporting compromised accounts seems pointless at this point, admins don't
check such accounts' outbox for spamming therefore they don't find anything
against the ToS so these "hacked" accounts can remain on the platform
and continue the spamming by the scammers. An example below.
This morning I have received two messages from the same account with subject:
"Notice of Suspension". Should I notify BrickLink of the specific account?
Thank you
This morning I have received two messages from the same account with subject:
"Notice of Suspension". Should I notify BrickLink of the specific account?
Thank you
Stop list the account, then delete the messages.
I have just received one of these messages. I may be a little dense here, but
how do I stop list the account?
This morning I have received two messages from the same account with subject:
"Notice of Suspension". Should I notify BrickLink of the specific account?
Thank you
Stop list the account, then delete the messages.
I have just received one of these messages. I may be a little dense here, but
how do I stop list the account?
"Problem center" at tge bottom of the page, then block a buyer.
This morning I have received two messages from the same account with subject:
"Notice of Suspension". Should I notify BrickLink of the specific account?
Thank you
Stop list the account, then delete the messages.
I have just received one of these messages. I may be a little dense here, but
how do I stop list the account?
"Problem center" at tge bottom of the page, then block a buyer.
According to other members reports, there are also compromised accounts which
the scammers spamming members from via messages. Reporting such compromised accounts
seems useless since the admins don't check their outbox for spam messages
and these "hacked" profiles can remain on the platform continuing their
spamming by the scammers. An example below.
According to other members reports, there are also compromised accounts which
the scammers spamming members from via messages. Reporting such compromised accounts
seems useless since the admins don't check their outbox for spam messages
and these "hacked" profiles can remain on the platform continuing their
spamming by the scammers.
Please don't conclude too quickly.
The fact the account remains apparently normal may not mean the account isn't
(partly or totally) limited in some invisible way.
According to other members reports, there are also compromised accounts which
the scammers spamming members from via messages. Reporting such compromised accounts
seems useless since the admins don't check their outbox for spam messages
and these "hacked" profiles can remain on the platform continuing their
spamming by the scammers.
Please don't conclude too quickly.
The fact the account remains apparently normal may not mean the account isn't
(partly or totally) limited in some invisible way.
True, we don't see the back end, but the front end communicates that nothing
was wrong with the said account while phishing message(s) was sent from it to
other member(s).
I've seen a seller breaking the ToS by linking to their Vinted page but nothing
was wrong with it either.
So yeah, either way, handling the reports should be improved.
According to other members reports, there are also compromised accounts which
the scammers spamming members from via messages. Reporting such compromised accounts
seems useless since the admins don't check their outbox for spam messages
and these "hacked" profiles can remain on the platform continuing their
spamming by the scammers.
Please don't conclude too quickly.
The fact the account remains apparently normal may not mean the account isn't
(partly or totally) limited in some invisible way.
True, we don't see the back end, but the front end communicates that nothing
was wrong with the said account while phishing message(s) was sent from it to
other member(s).
Could be due to adoption of DSA rules.
You can't anymore "remove an account" based on (even righly) reports.
Which is fine; everyone could face this kind of "justice" error.
So the account may be in a "frozen" state until they decide with some
proofs it's to be unregistred officially. And in between they must have to
file enough documents/proofs in case someone contests this decision - which must
take required weeks so a discussion can occur in the middle if there was an error.
According to other members reports, there are also compromised accounts which
the scammers spamming members from via messages. Reporting such compromised accounts
seems useless since the admins don't check their outbox for spam messages
and these "hacked" profiles can remain on the platform continuing their
spamming by the scammers.
Please don't conclude too quickly.
The fact the account remains apparently normal may not mean the account isn't
(partly or totally) limited in some invisible way.
Hi Everyone - just to reiterate we do take all reports of phishing seriously
and take appropriate action to prevent further harm. We can receive multiple
reports so often times action is taken in other means. We will pass this feedback
to our teams to discuss how we can make this more clear for everyone.