Yet Another Facebook Scam
My mother fell for a Facebook phishing thing that contained a new element I've never seen before. It was an email (which actually came from "facebookmail.com", but she didn't know how to check that part) saying blah blah we think your account has been compromised, please change your password, and had a link to do so, but the link was an actual facebook.com link.
If you didn't check out the email headers, you could easily fall for this one. I have no idea specifically how they did it, but it was some facebook.com/somethingorother.php? with a long-ass string of nonsense, which ostensibly takes you to some other domain while still keeping the facebook.com address in your browser's address bar. I guess the moral of this story is "Don't Click Links"; instead use your bookmark or whatever to get to Facebook and then change your password from there.
But still - good advice - awhile back there was a spoof MTV page claiming eminem died in a car crash, had pics and everything, it WAS MTV as far as any regular person could tell, until you looked at the url, and buried int he long ass string was like http://[email protected]/hahah
Most modern browsers spot that now and put up a fat phishing alert scam sign.