I think my account might have become compromised by phishing.

  • Profile Image
    Asked on June 26, 2017 at 12:52 PM

    I received an email today from Jotform and replied to it with simply "This was NOT me"....   then I realized it may have "not" been from you guys.  I will paste the info below.  I want to make sure no one can reset my password by just knowing my email address?  >.<  It said my password had been reset but it hasn't....


    from: JotForm <noreply@jotform.com>
    reply-to: reply@abouthyper.net,
    JotForm <noreply@jotform.com>
    to: rollo04@fw6m0bd.com
    date: Fri, Jun 23, 2017 at 2:24 PM
    subject: Is_That_You_cynthia.elsafarini
    mailed-by: 1and1.fr
    signed-by: jotform.com



    Your password was reset using the email address reply@abouthyper.net on Thursday June 22, 2017 at 05:50am.

    Operating system: Windows
    Browser: Chrome
    IP address:
    Estimated location:  Brandenburgische Str 14, 55278 Hahnheim Germany

    If you did this, you can safely disregard this email.
    If you didn't do this, please contact us by replying to this email for more informations

    Don't recognize this activity?
    A malicious user might have your password. Please Contact us. we'll review your recent activity and help you take corrective action.

    Why are we sending this? We take security very seriously and we want to keep you in the loop on important actions in your account.
    We were unable to determine whether you have used this browser or device with your account before. This can happen when you sign in for the first time on a new computer, phone or browser, when you use your browser's incognito or private browsing mode or clear your cookies, or when somebody else is accessing your account.

    Security Team

  • Profile Image
    Answered on June 26, 2017 at 01:41 PM

    Sorry for any inconvenience and thank you for reporting this to us.

    To my understanding, you have replied to the email. No worries as long as you didn't give any login information then your account is safe.

    There was a JotForm user spamming these "password change" email that is trying to look like they're coming from us. We have already identified the spammer and have blocked his account.

    Please contact us again if you receive and further emails as we are still making sure these do not continue.

  • Profile Image
    Answered on July 06, 2017 at 02:01 AM

    The hell if you guys did fix it because I just got the same in my spam two days ago. So the program is still running. I can have 1000 acres of land with a tiny Mary Jane plant and it would be found. You can police the dark net ECT ECT. But you can't stop this? Blah
  • Profile Image
    Answered on July 06, 2017 at 03:19 AM

    We will be addressing your issue on this thread: https://www.jotform.com/answers/1192274

    Thank you.