Protect the Security of Your Advertising Assets and Avoid Unexpected Losses.

ANA BÁEZ

Meta Ads: The security of your advertising assets

Digital security is key for any brand that relies on social media and advertising platforms like Meta Ads. A hack into these accounts can result not only in a threat to your customer data, but also in lost revenue, campaign disruptions, and a negative impact on customer relationships.

From our experience in campaign management and digital security, we know that with appropriate preventative measures and rapid response, risks can be minimized and serious damage avoided.

Until recently, Meta support was provided via email. The problem? Communication could take days. To speed up the process, Meta implemented support via messenger. However, what seemed like a quick fix turned into a new phishing scheme, as some hackers are trying to exploit this avenue to impersonate Meta and steal information, leading the profile owner to follow deceptive steps to gain control of the account . 

We'll teach you the golden rules for protecting your account and avoiding security incidents. By following these steps, you'll be able to identify potential threats and react appropriately in the event of a hacking attempt, minimizing risks and maintaining the continuity of your campaigns.

1. Don't Rely on Off-Platform Communications

If your trading asset has a problem, you'll see it on the platform. Never by email or messenger.

Meta has implemented support via Messenger, which can cause confusion and be a potential avenue for phishing attacks.

  • Confirm the problems within the platform:

Any important information will appear in the Business Manager or in the Meta Help section. Be wary of suspicious messages that involve clicking on unknown links. Keep in mind that most official Meta emails are typically billing-related, with no links.

  • Be cautious with suspicious messages: 

Typically, official billing emails from Meta don't include links, and emails from Instagram or Facebook about your account will only come from specific addresses like @mail.instagram.com or @facebookmail.com.

  • Confirm Messenger support only from open tickets:

Be sure to verify the authenticity of the support message on Messenger by checking the case reference on the platform. Keep in mind that you will only receive assistance through Messenger after opening a ticket.

2. Avoid Suspicious Links and Files

Phishing tactics attempt to trick users into clicking on malicious links.

  • Do not click on suspicious links

If you receive a suspicious email or message claiming to be from Meta, do not click on any links or download any attachments. Remember, Meta does not communicate in this way.

  • Do not reply to these messages

Don't respond to messages asking for your password or any other information, as Meta will never request sensitive data this way. You can check if you're a Meta Marketing Pro here. 

3. Activate Two-Factor Authentication

Two-factor authentication (2FA) adds an extra layer of security to your account.

  • Set up two-factor authentication for both your personal Facebook account and Business Manager.
  • Require all Business Manager members to also enable 2FA to reduce account vulnerability in the event of hacking attempts.

4. Control the access and permissions of the Administrators

It is crucial to maintain strict control over who has access to the Business Manager account:

  • Business Manager administrators should be trusted users, limiting full access to those who truly need it.
  • Partial permissions: Full control should be granted to an active user. In any case, if they don't have a relevant role, it's best to grant them partial access.
  • Always maintain at least two administrators to ensure account access if one of the administrators experiences a problem due to loss of access.

How to react to a hack

If you notice suspicious activity on your account, follow these steps immediately:

  1. Log in to your account and change the passwords for all related accounts.
  2. Review your security settings for unauthorized logins and, if necessary, remove unknown access.
  3. Report the incident to Meta through the Help section in Business Manager and follow their recovery recommendations.

Implementing these security practices is critical to avoiding disruptions and protecting the integrity of your Meta Ads advertising campaigns. However, we know that managing digital security can be complex and requires constant attention. Our team is here to help you optimize the protection of your assets and ensure the continuity of your campaigns.

If you need specialized advice or support, don't hesitate to contact us.

 

Back to blog