Can you really see who viewed your Facebook profile? Rogue application spreads virally

Graham Cluley
Graham Cluley
@
@[email protected]
@gcluley

Can you really see who viewed your Facebook profile? Rogue application spreads virally

Once again, a rogue application is spreading virally between Facebook users pretending to offer you a way of seeing who has viewed your profile.

As we’ve described a couple of times before, plenty of Facebook users would *love* to know who has been checking them out online.. but unfortunately scammers are aware of this, and use the lure of such functionality as a way to trick you into making bad decisions.

Messages spreading rapidly across the Facebook social network right now say:

OMG OMG OMG… I cant believe this actually works! Now you really can see who viewed your profile! on [LINK]

OMG OMG OMG... I cant believe this actually works! Now you really can see who viewed your profile!

If you’re tempted to click on the link you’re taken to a webpage which encourages you to go a little deeper and permit an application to have access to your Facebook profile.

See who viewed your profile!

Rogue application requests access rights

But do you really want complete strangers to be able to email you, access your personal data and even post messages to any Facebook pages you may administer?

Sign up to our free newsletter.
Security news, advice, and tips.

If you’ve got this far then you really shouldn’t go any further. Scams like this have been used to earn commission for the mischief makers behind them, who have no qualms about using your Facebook profile to spread their spammy links even further.

Because if you do continue, you’ll find that your profile will be yet another victim of the viral scam – spreading the message to all of your online Facebook friends and family. And no, you don’t ever find out who has been viewing your profile.

OMG OMG OMG... I cant believe this actually works! Now you really can see who viewed your profile!

Ever wondered how many people fall for a scam like this? Well, the figures can be shocking. This current campaign is using a variety of different links – but via bit.ly we can see that at least one of them has already tricked nearly 60,000 people into clicking.

Stats for bit.ly link

I’ve informed the security teams at both bit.ly and Facebook about these links, and requested that they be shut down as soon as possible.

Always think before you add an unknown application on Facebook, and ask yourself if you’re really comfortable with ceding such power to complete strangers. Rogue application attacks like this, spreading virally, are becoming increasingly common – and do no good for anyone apart from the scammers behind them.

If you’ve been hit by a scam like this, remove references to it from your newsfeed, and revoke the right of rogue applications to access your profile via Account/ Privacy Settings/ Applications and Websites.

Here’s a YouTube video where I show you how to clean-up your Facebook account:

And don’t forget to warn your friends about scams like this and teach them not to trust every link that is placed in front of them.


Graham Cluley is an award-winning keynote speaker who has given presentations around the world about cybersecurity, hackers, and online privacy. A veteran of the computer security industry since the early 1990s, he wrote the first ever version of Dr Solomon's Anti-Virus Toolkit for Windows, makes regular media appearances, and is the co-host of the popular "Smashing Security" podcast. Follow him on Twitter, Mastodon, Threads, Bluesky, or drop him an email.

What do you think? Leave a comment

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.