TL;DR
- Binance warned about a surge in phishing attacks through fake text messages that simulate legitimate notifications.
- Fraudulent texts include shortened malicious links and pressure victims to “verify” or “secure” their accounts impulsively.
- The exchange recommended enabling the withdrawal whitelist and the anti-phishing code to identify official communications and protect funds.
Binance detected an increase in phishing attempts targeting its users through fraudulent text messages that simulate legitimate security alerts.
The world’s largest exchange issued a formal warning describing the characteristics of these attacks and detailing the measures users can take to protect their accounts and funds.
Phishing on the Rise: How Scammers Operate
According to Binance, the messages are designed to mimic official notifications from the exchange and alert recipients about alleged changes to their account settings or detected suspicious activity. The goal is to create urgency and lead the user to click on a malicious link before they have time to verify the legitimacy of the message.
Phishing texts often look like urgent account alerts, but their goal is simple: get you to click before you think.
Learn the common warning signs and take 3 practical steps to better protect your account 👇 https://t.co/g9c5h5HxtV
— Binance (@binance) September 3, 2026
The texts typically include shortened links that conceal their actual destination, making it difficult to identify the threat at a glance. The strategy aims to make the victim react impulsively, unknowingly surrendering access to their account.
The Security Measures Binance Recommends to Its Users
Binance clarified that it never asks its users to tap a link in a text message to verify or secure their account. That clarification itself serves as a warning sign: any message that does so should be treated as fraudulent immediately.
Among its recommendations, Binance urged users to verify every link before clicking, regardless of how legitimate the message containing it may appear. It also advised enabling the withdrawal address whitelist feature, which restricts fund movements exclusively to previously approved addresses, significantly reducing the risk of unauthorized transfers.
Additionally, the exchange recommended activating its anti-phishing code, a tool that allows users to quickly identify whether an email genuinely comes from the platform or from a malicious sender impersonating it. The combination of these three measures aims to build an additional layer of protection against fraud schemes that are becoming increasingly sophisticated and difficult to detect at first glance.






