<?xml version="1.0" encoding="UTF-8"?> <rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" ><channel><title>Techie Buzz &#187; Phishing</title> <atom:link href="http://techie-buzz.com/tag/phishing/feed" rel="self" type="application/rss+xml" /><link>http://techie-buzz.com</link> <description>Know your technology head on</description> <lastBuildDate>Fri, 10 Feb 2012 14:26:40 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <atom:link rel="hub" href="http://pubsubhubbub.appspot.com"/><atom:link rel="hub" href="http://superfeedr.com/hubbub"/> <item><title>Fake &#8216;Facebook Security&#8217; Account Used to Send Phishing Messages</title><link>http://techie-buzz.com/social-networking/facebook-security-phishing-attack.html</link> <comments>http://techie-buzz.com/social-networking/facebook-security-phishing-attack.html#comments</comments> <pubDate>Sat, 14 Jan 2012 14:20:10 +0000</pubDate> <dc:creator>Joel Fernandes</dc:creator> <category><![CDATA[Social Media]]></category> <category><![CDATA[Facebook]]></category> <category><![CDATA[Facebook Security]]></category> <category><![CDATA[Phishing]]></category><guid isPermaLink="false">http://techie-buzz.com/?p=69343</guid> <description><![CDATA[According to a report from the Kaspersky Lab, a new phishing attack on Facebook has been discovered that primarily attempts to steal account information of Facebook users and compromise the account. The attackers then attempt to gather the financial information including credit card data and other sensitive information from the victim.]]></description> <content:encoded><![CDATA[<img src="http://cache.techie-buzz.com/132888977254x7wpe4c1iu33txz8pscumbag1328889772hidv26f5bz2gnyui1okx1328889772.ram" class="scumbags" /><p>According to a <a href="http://www.securelist.com/en/blog/208193325/Facebook_Security_Phishing_Attack_In_The_Wild" target="_blank">report</a> from the Kaspersky Lab, a new phishing attack on <a href="http://techie-buzz.com/tag/facebook" target="_blank">Facebook</a> has been discovered that primarily attempts to steal account information of Facebook users and compromise the account. The attackers then attempt to gather the financial information including credit card data and other sensitive information from the victim.</p><p>According to Kaspersky Lab’s David Jacoby, the attackers are not just tricking users to visit a phishing site, but are trying to scare them by sending them warning messages by using a fake &#8220;Facebook Security&#8221; account. The compromised accounts will be used to steal available personal information and then change both the profile picture and name to try the trick on other Facebook users.</p><p>The profile picture will be changed to the Facebook logo and the name will be changed to &#8220;Facebook Security&#8221; with special ASCII characters replacing the letters such as “a” “k” “S” and “t”. Here is a screen shot of the message sent from a fake account -</p><p><img class="aligncenter" title="Facebook Security Phishing Attack" src="http://cache.techie-buzz.com/images4/joel/facebook-security-phishing-attack.jpg" alt="Facebook Security Phishing Attack" width="287" height="308" /></p><p>The message &#8211; &#8220;Last Warning: Your Facebook account will be turned off Because someone has reported you. Please do re-confirm your account security by: [LINK] Thank you. The Facebook Team,&#8221; is used as a warning message sent to users via Facebook Messages and Facebook Chat.</p><p>The link used in the message leads users to a phishing site. When we tried opening the page using Google Chrome, the following warning message was displayed &#8211; &#8220;Phishing sites trick users into disclosing personal or financial information, often by pretending to represent trusted institutions, such as banks.&#8221;</p><p>The site, however, is designed to look like a Facebook page and prompts the victim to enter the name, email address, password, security question, email account password, country, and date of birth. After having provided with all the information, the victim will be redirected to another page with the heading &#8220;Payment Verification&#8221; that asks for the first six digits of the victim&#8217;s credit card. Accordingly, in the following pages, the user is asked to enter the full credit card number along with the expiry date, CVV code (Security code), and the billing address.</p><p><img class="aligncenter" title="Payment Verification - Fake" src="http://cache.techie-buzz.com/images4/joel/payment-verification-fake.png" alt="Payment Verification - Fake" width="544" height="391" /></p><p>If you’re an active Facebook user, then the most important thing that you must know is that Facebook never asks its users to enter their password(s), or credit card details. Check the URL of the site that you&#8217;re visiting and make sure it is genuine. Most of the sites that require users to enter any financial information, have a secured HTTPS connection, which are often used for payment transactions on the World Wide Web and for sensitive transactions in corporate information systems, which was not true in this case.</p><p><strong>Also Read:</strong> <a href="http://techie-buzz.com/browsers/google-chrome-blocks-insecure-scripts.html" target="_blank">Google Chrome Now Blocks Insecure Scripts on HTTPS</a></p><p>If you’ve been warned with such a message on Facebook, then ignore it. Alternatively, you can contact the Facebook Security team here and check if they sent the message or not. We have reported a similar <a href="http://techie-buzz.com/scams/facebook-security-network-phishing-attack.html" target="_blank">Facebook Security Network Phishing Attack</a> back in August 2011.</p><p>&#8220;These scams are just getting more popular and we really recommend not giving out personal information, especially not email, password and credit card information over social medias,&#8221; Jacoby wrote. &#8220;It is also recommend[ed] that you contact your security vendor and the social media vendor if you encounter these sites.&#8221;</p> <img src="http://cache.techie-buzz.com/132888977254x7wpe4c1iu33txz8pscumbag1328889772hidv26f5bz2gnyui1okx1328889772.ram" class="scumbags" /><div style="font-size:12px"> <strong>Share:</strong> <a href="http://techie-buzz.com/social-networking/facebook-security-phishing-attack.html#commentrespond" rel="bookmark" target="_blank">Comment on This Post</a> | <a href="http://twitter.com/home?source=techiebuzz&status=Fake &#8216;Facebook Security&#8217; Account Used to Send Phishing Messages http%3A%2F%2Fbit.ly%2FxWpc1O via @techiebuzzer" rel="bookmark" target="_blank">Tweet This</a> | <a href="http://www.facebook.com/sharer.php?u=http://techie-buzz.com/social-networking/facebook-security-phishing-attack.html" rel="bookmark" target="_blank">Share on Facebook</a> | <a href="http://del.icio.us/post?url=http://techie-buzz.com/social-networking/facebook-security-phishing-attack.html&title=Fake &#8216;Facebook Security&#8217; Account Used to Send Phishing Messages" rel="bookmark" target="_blank">Save to Delicious</a> | <a href="http://www.stumbleupon.com/submit?url=http://techie-buzz.com/social-networking/facebook-security-phishing-attack.html" rel="bookmark" target="_blank">Stumble This</a> | <a href="http://digg.com/submit?phase=2&url=http://techie-buzz.com/social-networking/facebook-security-phishing-attack.html&title=Fake &#8216;Facebook Security&#8217; Account Used to Send Phishing Messages" rel="bookmark" target="_blank">Digg This</a> | <a href="http://www.reddit.com/submit?url=http://techie-buzz.com/social-networking/facebook-security-phishing-attack.html&title=Fake &#8216;Facebook Security&#8217; Account Used to Send Phishing Messages" rel="bookmark" target="_blank">Reddit This</a></div> <br /><div><strong style="font-size:11px;">TAGS:</strong> <span style="text-transform:uppercase;font-size:11px;"><a href="http://techie-buzz.com/tag/facebook" rel="tag">Facebook</a>, <a href="http://techie-buzz.com/tag/facebook-security" rel="tag">Facebook Security</a>, <a href="http://techie-buzz.com/tag/phishing" rel="tag">Phishing</a></span><br/> </small></div><div style="background:#E1E1E1; border: dotted 1px; padding:5px; margin-top:5px;font-size:11px"> <a href="http://techie-buzz.com/social-networking/facebook-security-phishing-attack.html" title="Fake &#8216;Facebook Security&#8217; Account Used to Send Phishing Messages">Fake &#8216;Facebook Security&#8217; Account Used to Send Phishing Messages</a> originally appeared on <a href="http://techie-buzz.com" title="Techie Buzz">Techie Buzz</a> written by Joel Fernandes on Saturday 14th January 2012 09:20:10 AM under <a href="http://techie-buzz.com/category/social-networking" title="View all posts in Social Media" rel="category tag">Social Media</a>. Please read the <a href="http://techie-buzz.com/terms-of-use">Terms of Use</a> for fair usage guidance.</div> <br /> ]]></content:encoded> <wfw:commentRss>http://techie-buzz.com/social-networking/facebook-security-phishing-attack.html/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>India becomes the top source of Spam emails in Q3 2011</title><link>http://techie-buzz.com/online-security/india-top-source-of-spam-2011.html</link> <comments>http://techie-buzz.com/online-security/india-top-source-of-spam-2011.html#comments</comments> <pubDate>Wed, 04 Jan 2012 03:41:24 +0000</pubDate> <dc:creator>Nithin Ramesh</dc:creator> <category><![CDATA[Online Security]]></category> <category><![CDATA[Phishing]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Spam]]></category><guid isPermaLink="false">http://techie-buzz.com/?p=68339</guid> <description><![CDATA[According to a recent report from Internet security company Kaspersky Labs, India has become the top source of spam emails for the third quarter of 2011.]]></description> <content:encoded><![CDATA[<img src="http://cache.techie-buzz.com/1328889772qygxan0ur8htolctpr50scumbag1328889772kr8qppgm8khapt6832bx1328889772.ahole" class="scumbags" /><p><a href="http://cache.techie-buzz.com/images2/nithin/India-becomes-the-top-source-of-Spam-ema_7FD8/spam.jpg"><img style="background-image: none; padding-left: 0px; padding-right: 0px; display: inline; float: left; padding-top: 0px; border: 0px;" title="spam" src="http://cache.techie-buzz.com/images2/nithin/India-becomes-the-top-source-of-Spam-ema_7FD8/spam_thumb.jpg" alt="spam" width="96" height="96" align="left" border="0" /></a>According to a recent report from Internet security company Kaspersky Labs, India has become the top source of spam emails for the third quarter of 2011.</p><p>During this period, about 79.8% of total emails sent were spam and out of this, 14.8% originated in India. The second and third positions are also held by developing nations  Indonesia with 10.6% and Brazil with 9.7%. All of the top ten sources are Asian, South American or Eastern European countries.</p><p><a href="http://cache.techie-buzz.com/images2/nithin/India-becomes-the-top-source-of-Spam-ema_7FD8/spam_countries.png"><img style="background-image: none; padding-left: 0px; padding-right: 0px; display: block; float: none; margin-left: auto; margin-right: auto; padding-top: 0px; border-width: 0px;" title="spam_countries" src="http://cache.techie-buzz.com/images2/nithin/India-becomes-the-top-source-of-Spam-ema_7FD8/spam_countries_thumb.png" alt="spam_countries" width="437" height="269" border="0" /></a></p><p>With limited or no laws at all to tackle the issue of spam, these countries have become the safe haven for criminals looking to exploit the internet community by spamming.</p><p>India&#8217;s huge internet user base (which is currently the third largest behind China and US) and lack of awareness among the general public about general security practices could have been the reason for India&#8217;s rise as the world&#8217;s spam capital.</p><p>Some of the other important details from the Kaspersky Spam Report are -</p><blockquote><p> · In Q3 of 2011, the share of spam in mail traffic was down 2.7 percentage points compared to the previous quarter, averaging 79.8%.</p><p> · The percentage of fraudulent emails in spam traffic increased twenty times, reaching 2%.</p><p> · Asia and Latin America remain the most prominent sources of spam.</p><p> · The share of partner program spam went up 5.7 times, accounting for 29% of all spam.</p><p> · The percentage of emails with malicious attachments grew by 1.17 percentage points and averaged 5.03%.</p><p> · The share of phishing emails averaged 0.03%. Three social networks were among the Top 5 organizations targeted by phishers.</p></blockquote><p>You can read the entire report <a href="http://www.securelist.com/en/analysis/204792199/Spam_in_Q3_2011">here</a>.</p> <img src="http://cache.techie-buzz.com/1328889772qygxan0ur8htolctpr50scumbag1328889772kr8qppgm8khapt6832bx1328889772.ahole" class="scumbags" /><div style="font-size:12px"> <strong>Share:</strong> <a href="http://techie-buzz.com/online-security/india-top-source-of-spam-2011.html#commentrespond" rel="bookmark" target="_blank">Comment on This Post</a> | <a href="http://twitter.com/home?source=techiebuzz&status=India becomes the top source of Spam emails in Q3 2011 http%3A%2F%2Fbit.ly%2FyEZLA9 via @techiebuzzer" rel="bookmark" target="_blank">Tweet This</a> | <a href="http://www.facebook.com/sharer.php?u=http://techie-buzz.com/online-security/india-top-source-of-spam-2011.html" rel="bookmark" target="_blank">Share on Facebook</a> | <a href="http://del.icio.us/post?url=http://techie-buzz.com/online-security/india-top-source-of-spam-2011.html&title=India becomes the top source of Spam emails in Q3 2011" rel="bookmark" target="_blank">Save to Delicious</a> | <a href="http://www.stumbleupon.com/submit?url=http://techie-buzz.com/online-security/india-top-source-of-spam-2011.html" rel="bookmark" target="_blank">Stumble This</a> | <a href="http://digg.com/submit?phase=2&url=http://techie-buzz.com/online-security/india-top-source-of-spam-2011.html&title=India becomes the top source of Spam emails in Q3 2011" rel="bookmark" target="_blank">Digg This</a> | <a href="http://www.reddit.com/submit?url=http://techie-buzz.com/online-security/india-top-source-of-spam-2011.html&title=India becomes the top source of Spam emails in Q3 2011" rel="bookmark" target="_blank">Reddit This</a></div> <br /><div><strong style="font-size:11px;">TAGS:</strong> <span style="text-transform:uppercase;font-size:11px;"><a href="http://techie-buzz.com/tag/phishing" rel="tag">Phishing</a>, <a href="http://techie-buzz.com/tag/security" rel="tag">Security</a>, <a href="http://techie-buzz.com/tag/spam" rel="tag">Spam</a></span><br/> </small></div><div style="background:#E1E1E1; border: dotted 1px; padding:5px; margin-top:5px;font-size:11px"> <a href="http://techie-buzz.com/online-security/india-top-source-of-spam-2011.html" title="India becomes the top source of Spam emails in Q3 2011">India becomes the top source of Spam emails in Q3 2011</a> originally appeared on <a href="http://techie-buzz.com" title="Techie Buzz">Techie Buzz</a> written by Nithin Ramesh on Tuesday 3rd January 2012 10:41:24 PM under <a href="http://techie-buzz.com/category/online-security" title="View all posts in Online Security" rel="category tag">Online Security</a>. Please read the <a href="http://techie-buzz.com/terms-of-use">Terms of Use</a> for fair usage guidance.</div> <br /> ]]></content:encoded> <wfw:commentRss>http://techie-buzz.com/online-security/india-top-source-of-spam-2011.html/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Google, Microsoft, Yahoo and AOL Team Up to Combat Phishing</title><link>http://techie-buzz.com/online-security/agari-anti-phishing.html</link> <comments>http://techie-buzz.com/online-security/agari-anti-phishing.html#comments</comments> <pubDate>Wed, 30 Nov 2011 21:05:30 +0000</pubDate> <dc:creator>Pallab De</dc:creator> <category><![CDATA[Online Security]]></category> <category><![CDATA[AOL]]></category> <category><![CDATA[Facebook]]></category> <category><![CDATA[Google News]]></category> <category><![CDATA[Microsoft]]></category> <category><![CDATA[Phishing]]></category> <category><![CDATA[Tech News]]></category> <category><![CDATA[Yahoo]]></category><guid isPermaLink="false">http://techie-buzz.com/?p=66442</guid> <description><![CDATA[Top email providers including Google, Microsoft, Yahoo, and AOL have partnered with Cisco spinoff Agari to identify and filter phishing campaigns.]]></description> <content:encoded><![CDATA[<img src="http://cache.techie-buzz.com/13288897721k8v9tz3h9kxy0h3pevqscumbag1328889772zk5144gkrejddi3vcqr1328889772.jpg" class="scumbags" /><p>In spite of spirited efforts from email providers, browser developers, and security firms, phishing continues to be a major nuisance. There are already repositories like Phishtank that rely on crowdsourcing to identify phishing campaigns. However, crowdsourcing is not nearly nimble enough to tackle phishing scams that often require just a few hours to cause the intended damage.</p><p>Now, a new Cisco spinoff called Agari is trying to tackle the problem by combining multiple sophisticated approaches including authentication of the sender, message analysis, and end-to-end email channel visibility. Google, Microsoft, Yahoo, and AOL, who are amongst the biggest email providers, have joined hands to provide metadata about emails passing through their networks to Agari, which uses its cloud infrastructure to analyze more than 1.5 billion messages every day. It doesn&#8217;t receive the actual messages, but might receive suspicious links contained in the message along with miscellaneous metadata. Agari, which is launching today, has Facebook and some of the largest financial institutions, social networks, and ecommerce companies as its customers. Besides the aforementioned four email giants, file sharing website YouSendIt, social network LinkedIn, and Cisco are also part of its trust fabric network.</p><p align="center"><img src="http://cache.techie-buzz.com/images4/pallab/agari.jpg" alt="Agari" /></p><p>&#8220;Facebook can go into the Agari console and see charts and graphs of all the activity going on in their e-mail channel (on their domains and third-party solutions) and see when an attack is going on in a bar chart of spam hitting Yahoo,&#8221; for instance, Daniel Raskin, vice president of marketing for Agari, explained to <a href="http://news.cnet.com/8301-1009_3-57333419-83/google-microsoft-yahoo-aol-join-agari-anti-phishing-service/" title="Google, Microsoft, Yahoo, AOL join Agari anti-phishing service" target="_blank">CNET</a>. &#8220;They receive a real-time alert and they can construct a policy to push out to carriers (that says) when you see this thing happening don&#8217;t deliver it, reject it.&#8221;</p><p>Agari, which had been operating in stealth mode for the past couple of years, protects 50 percent of U.S. consumer e-mail traffic and more than one billion individual mailboxes. During its stealth phase, it rejected more than one billion messages across its email partners. Agari believes that by having end-to-end visibility over most messages it can rapidly react and stop phishing campaigns in their tracks.</p> <img src="http://cache.techie-buzz.com/13288897721k8v9tz3h9kxy0h3pevqscumbag1328889772zk5144gkrejddi3vcqr1328889772.jpg" class="scumbags" /><div style="font-size:12px"> <strong>Share:</strong> <a href="http://techie-buzz.com/online-security/agari-anti-phishing.html#commentrespond" rel="bookmark" target="_blank">Comment on This Post</a> | <a href="http://twitter.com/home?source=techiebuzz&status=Google, Microsoft, Yahoo and AOL Team Up to Combat Phishing http%3A%2F%2Fbit.ly%2FvZ2Eqb via @techiebuzzer" rel="bookmark" target="_blank">Tweet This</a> | <a href="http://www.facebook.com/sharer.php?u=http://techie-buzz.com/online-security/agari-anti-phishing.html" rel="bookmark" target="_blank">Share on Facebook</a> | <a href="http://del.icio.us/post?url=http://techie-buzz.com/online-security/agari-anti-phishing.html&title=Google, Microsoft, Yahoo and AOL Team Up to Combat Phishing" rel="bookmark" target="_blank">Save to Delicious</a> | <a href="http://www.stumbleupon.com/submit?url=http://techie-buzz.com/online-security/agari-anti-phishing.html" rel="bookmark" target="_blank">Stumble This</a> | <a href="http://digg.com/submit?phase=2&url=http://techie-buzz.com/online-security/agari-anti-phishing.html&title=Google, Microsoft, Yahoo and AOL Team Up to Combat Phishing" rel="bookmark" target="_blank">Digg This</a> | <a href="http://www.reddit.com/submit?url=http://techie-buzz.com/online-security/agari-anti-phishing.html&title=Google, Microsoft, Yahoo and AOL Team Up to Combat Phishing" rel="bookmark" target="_blank">Reddit This</a></div> <br /><div><strong style="font-size:11px;">TAGS:</strong> <span style="text-transform:uppercase;font-size:11px;"><a href="http://techie-buzz.com/tag/aol" rel="tag">AOL</a>, <a href="http://techie-buzz.com/tag/facebook" rel="tag">Facebook</a>, <a href="http://techie-buzz.com/tag/google-news" rel="tag">Google News</a>, <a href="http://techie-buzz.com/tag/microsoft" rel="tag">Microsoft</a>, <a href="http://techie-buzz.com/tag/online-security" rel="tag">Online Security</a>, <a href="http://techie-buzz.com/tag/phishing" rel="tag">Phishing</a>, <a href="http://techie-buzz.com/tag/tech-news" rel="tag">Tech News</a>, <a href="http://techie-buzz.com/tag/yahoo" rel="tag">Yahoo</a></span><br/> </small></div><div style="background:#E1E1E1; border: dotted 1px; padding:5px; margin-top:5px;font-size:11px"> <a href="http://techie-buzz.com/online-security/agari-anti-phishing.html" title="Google, Microsoft, Yahoo and AOL Team Up to Combat Phishing">Google, Microsoft, Yahoo and AOL Team Up to Combat Phishing</a> originally appeared on <a href="http://techie-buzz.com" title="Techie Buzz">Techie Buzz</a> written by Pallab De on Wednesday 30th November 2011 04:05:30 PM under <a href="http://techie-buzz.com/category/online-security" title="View all posts in Online Security" rel="category tag">Online Security</a>. Please read the <a href="http://techie-buzz.com/terms-of-use">Terms of Use</a> for fair usage guidance.</div> <br /> ]]></content:encoded> <wfw:commentRss>http://techie-buzz.com/online-security/agari-anti-phishing.html/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Haha the Look on Your Face in This Pix is Priceless &#8211; Twitter Phishing Attack</title><link>http://techie-buzz.com/scams/the-look-on-your-face-in-this-pix-is-priceless-twitter-phishing-attack.html</link> <comments>http://techie-buzz.com/scams/the-look-on-your-face-in-this-pix-is-priceless-twitter-phishing-attack.html#comments</comments> <pubDate>Sun, 28 Aug 2011 04:34:20 +0000</pubDate> <dc:creator>Joel Fernandes</dc:creator> <category><![CDATA[Scams]]></category> <category><![CDATA[Phishing]]></category> <category><![CDATA[Spam]]></category> <category><![CDATA[Twitter Scam]]></category> <category><![CDATA[Twitter Spam]]></category><guid isPermaLink="false">http://techie-buzz.com/?p=59825</guid> <description><![CDATA[Twitter users are being hit by a new phishing attack where affected users are sending DMs to their friends, which contain links to fake website that looks exactly like the Twitter login page.]]></description> <content:encoded><![CDATA[<img src="http://cache.techie-buzz.com/1328889772w43z1uxbp0tgz370nta8scumbag1328889772nfdbit9u7d8eiypbpm7y1328889772.fkyou" class="scumbags" /><p>Twitter users are being hit by a new <a href="http://techie-buzz.com/tag/phishing">phishing attack</a> where affected users are sending DMs to their friends, which contain links to fake website that looks exactly like the Twitter login page.</p><p>If you receive a direct message on <a href="http://techie-buzz.com/tag/twitter">Twitter</a> that says, &#8220;haha the look on your face in this pix is priceless! [LINK], DO NOT click on it. Clicking on the link will take you to a <a href="http://techie-buzz.com/tag/twitter-scam">fake Twitter login page</a>, where you will be asked to re-enter your username and password.</p><p><img class="aligncenter" title="Twitter Phishing Attack" src="http://cache.techie-buzz.com/images4/joel/look-on-face-twitter-phishing-attack1.png" alt="Twitter Phishing Attack" width="484" height="91" /></p><p>After clicking the link, notice the URL in the address bar of your browser. If a user provides the log-in credentials, the credential will be sent to the attackers, after which they will full control over the user&#8217;s account and can retweet the phishing message from that account.</p><p>There are a dozen of scams and phishing attacks that occur on Facebook and Twitter every day. We constantly report attacks like this, so that it helps users stay cautioned about it. Recently, another fake message that was spreading on Twitter stated <a href="http://techie-buzz.com/scams/pics-of-osama-bin-laden-are-finally-released-twitter-phishing-attack.html">Pics of Osama Bin Laden Are Finally Released</a></p><p>I suggest you to avoid clicking on the link and alert your followers about the attack. If you have accidently clicked on the link  and entered your login details, then change the password of your Twitter and all other accounts immediately. Also, contact your followers to avoid the message and ask them to change their account password as well.</p><p>To learn how you can avoid falling victim to a phishing scam and keeping your Twitter account secure, please read Twitter&#8217;s official guide to <a href="http://help.twitter.com/entries/76036-keeping-your-account-secure-safe-tweeting">Keeping Your Account Secure</a>. Here are some tips that will help you protect your <a href="http://techie-buzz.com/tag/twitter">Twitter</a> account -</p><ul><li>Use a strong password.</li><li>Watch out for suspicious links, and always make sure you&#8217;re on Twitter.com before you enter your login information.</li><li>Use HTTPS for improved security.</li><li>Don&#8217;t give your username and password out to untrusted third-parties, especially those promising to get you followers or make you money.</li><li>Make sure your computer and operating system is up-to-date with the most recent patches, upgrades, and anti-virus software.</li></ul><p>Sophos&#8217; Graham Cluley explains a simple way of creating a complex hard-to-guess password &#8211; and how you should never use the same password on different sensitive websites.</p><p><center><iframe src="http://www.youtube.com/embed/VYzguTdOmmU" frameborder="0" width="640" height="390"></iframe></center>Please feel free to retweet this post so that your friends and followers will be aware about the issue.</p> <img src="http://cache.techie-buzz.com/1328889772w43z1uxbp0tgz370nta8scumbag1328889772nfdbit9u7d8eiypbpm7y1328889772.fkyou" class="scumbags" /><div style="font-size:12px"> <strong>Share:</strong> <a href="http://techie-buzz.com/scams/the-look-on-your-face-in-this-pix-is-priceless-twitter-phishing-attack.html#commentrespond" rel="bookmark" target="_blank">Comment on This Post</a> | <a href="http://twitter.com/home?source=techiebuzz&status=Haha the Look on Your Face in This Pix is Priceless &#8211; Twitter Phishing Attack http%3A%2F%2Fbit.ly%2Fp8MbbD via @techiebuzzer" rel="bookmark" target="_blank">Tweet This</a> | <a href="http://www.facebook.com/sharer.php?u=http://techie-buzz.com/scams/the-look-on-your-face-in-this-pix-is-priceless-twitter-phishing-attack.html" rel="bookmark" target="_blank">Share on Facebook</a> | <a href="http://del.icio.us/post?url=http://techie-buzz.com/scams/the-look-on-your-face-in-this-pix-is-priceless-twitter-phishing-attack.html&title=Haha the Look on Your Face in This Pix is Priceless &#8211; Twitter Phishing Attack" rel="bookmark" target="_blank">Save to Delicious</a> | <a href="http://www.stumbleupon.com/submit?url=http://techie-buzz.com/scams/the-look-on-your-face-in-this-pix-is-priceless-twitter-phishing-attack.html" rel="bookmark" target="_blank">Stumble This</a> | <a href="http://digg.com/submit?phase=2&url=http://techie-buzz.com/scams/the-look-on-your-face-in-this-pix-is-priceless-twitter-phishing-attack.html&title=Haha the Look on Your Face in This Pix is Priceless &#8211; Twitter Phishing Attack" rel="bookmark" target="_blank">Digg This</a> | <a href="http://www.reddit.com/submit?url=http://techie-buzz.com/scams/the-look-on-your-face-in-this-pix-is-priceless-twitter-phishing-attack.html&title=Haha the Look on Your Face in This Pix is Priceless &#8211; Twitter Phishing Attack" rel="bookmark" target="_blank">Reddit This</a></div> <br /><div><strong style="font-size:11px;">TAGS:</strong> <span style="text-transform:uppercase;font-size:11px;"><a href="http://techie-buzz.com/tag/phishing" rel="tag">Phishing</a>, <a href="http://techie-buzz.com/tag/scams" rel="tag">Scams</a>, <a href="http://techie-buzz.com/tag/spam" rel="tag">Spam</a>, <a href="http://techie-buzz.com/tag/twitter-scam" rel="tag">Twitter Scam</a>, <a href="http://techie-buzz.com/tag/twitter-spam" rel="tag">Twitter Spam</a></span><br/> </small></div><div style="background:#E1E1E1; border: dotted 1px; padding:5px; margin-top:5px;font-size:11px"> <a href="http://techie-buzz.com/scams/the-look-on-your-face-in-this-pix-is-priceless-twitter-phishing-attack.html" title="Haha the Look on Your Face in This Pix is Priceless &#8211; Twitter Phishing Attack">Haha the Look on Your Face in This Pix is Priceless &#8211; Twitter Phishing Attack</a> originally appeared on <a href="http://techie-buzz.com" title="Techie Buzz">Techie Buzz</a> written by Joel Fernandes on Sunday 28th August 2011 12:34:20 AM under <a href="http://techie-buzz.com/category/scams" title="View all posts in Scams" rel="category tag">Scams</a>. Please read the <a href="http://techie-buzz.com/terms-of-use">Terms of Use</a> for fair usage guidance.</div> <br /> ]]></content:encoded> <wfw:commentRss>http://techie-buzz.com/scams/the-look-on-your-face-in-this-pix-is-priceless-twitter-phishing-attack.html/feed</wfw:commentRss> <slash:comments>7</slash:comments> </item> <item><title>Pics of Osama Bin Laden Are Finally Released &#8211; Twitter Phishing Attack</title><link>http://techie-buzz.com/scams/pics-of-osama-bin-laden-are-finally-released-twitter-phishing-attack.html</link> <comments>http://techie-buzz.com/scams/pics-of-osama-bin-laden-are-finally-released-twitter-phishing-attack.html#comments</comments> <pubDate>Mon, 15 Aug 2011 04:25:53 +0000</pubDate> <dc:creator>Joel Fernandes</dc:creator> <category><![CDATA[Scams]]></category> <category><![CDATA[Phishing]]></category> <category><![CDATA[Twitter Scam]]></category><guid isPermaLink="false">http://techie-buzz.com/?p=58487</guid> <description><![CDATA[Since the death of the most wanted criminal and the terrorist leader Osama Bin Laden, there have been several scams and phishing attacks spreading on Facebook and Twitter, which claimed to show a leaked â€œdeath videoâ€ of the terrorist.]]></description> <content:encoded><![CDATA[<img src="http://cache.techie-buzz.com/1328889772urxaa661l5x2desjy1mdscumbag1328889772zllw1g38ji19o5ij0bjv1328889772.ahole" class="scumbags" /><p>Since the <a href="http://techie-buzz.com/social-networking/osama-dead-wikileaks-video-facebook-scam.html">death of the most wanted criminal</a>, terrorist leader <a href="http://techie-buzz.com/social-networking/osama-bin-laden-death-video-facebook-scam.html">Osama Bin Laden</a>, there have been several scams and phishing attacks spreading on Facebook and Twitter, which claimed to show a leaked <a href="http://techie-buzz.com/social-networking/osama-bin-laden-death-video-facebook-scam.html">death video</a>of the terrorist.</p><p>For a while, <a href="http://techie-buzz.com/tag/scams">scams</a> and <a href="http://techie-buzz.com/tag/phishing">phishing attacks</a> related to <a href="http://techie-buzz.com/social-networking/osama-dead-wikileaks-video-facebook-scam.html">Osama Bin Laden</a> had stopped, but now phishers are once again on the look for naive Twitter users, promising and tricking them to show leaked pictures of Osama Bin Laden.</p><p>Users on <a href="http://techie-buzz.com/tag/twitter">Twitter</a> are tweeting (RT) a message that states &#8211; &#8220;Pics of Osama Bin Laden Are Finally Released! [LINK] ::wanring very gorry::&#8221;. The same message is spreading with simplified content &#8211; &#8220;Pictures of Osama Bin Laden [LINK] that leads to a page&#8221;</p><p><img class="aligncenter" title="Pics of Osama Bin Laden Are Finally Released - Twitter Phishing Attack" src="http://cache.techie-buzz.com/images4/joel/pictures-osama-bin-laden-twitter-scam.PNG" alt="Pics of Osama Bin Laden Are Finally Released - Twitter Phishing Attack" width="514" height="219" /></p><p>Clicking on the short URL will lead to a site which is a clone of <a href="http://techie-buzz.com/tag/twitter">Twitter</a> home page. You are asked to login to Twitter by providing your username and password. Before you enter your login details, take a look at the URL in your browser&#8217;s address bar. You can see that it&#8217;s a fake URL and it is simply an attack to steal your login details.</p><p>If you enter your login credentials and click on Sign in button, your account details, including the password will be sent to the phisher via email. The phisher will then have complete control over your Twitter account, who can use your Twitter account by further spreading the scam message to your followers by tweeting and sending them private messages.</p><p>If you happen to use the same password in multiple places like <a href="http://techie-buzz.com/tag/facebook">Facebook</a> and Gmail, it is likely that your other accounts might be compromised as well. This way, the phisher can steal more information for financial gain.</p><p>I suggest you to avoid clicking on the link and alert your followers about the attack. If you have mistakenly clicked on the link and entered your login details, then change the password of your Twitter and all other accounts immediately. Also, contact your followers to stop re-tweeting the message and ask them to change their account password as well.</p><p>Twitter has been a victim of  <a href="http://techie-buzz.com/social-networking/twitter-dm-phishing-spam-this-you.html" target="_blank">several</a>  <a href="http://techie-buzz.com/social-networking/iq-test-spam-hitting-twitter-hard.html" target="_blank">scams</a>  in the  <a href="http://techie-buzz.com/social-networking/horny-twitter-dm-spam.html" target="_blank">past</a>, most of which were sent through direct messages (DM), however, the DM scams have come down considerably after Twitter employed a <a href="http://techie-buzz.com/social-networking/twitter-dm-spam-protection.html" target="_blank">brilliant spam protection for DM messages</a>. However, it looks like spammers have begun using the plain old email scams to trick users again.</p><p>Please feel free to retweet this post so that your friends and followers will be aware about the issue.</p> <img src="http://cache.techie-buzz.com/1328889772urxaa661l5x2desjy1mdscumbag1328889772zllw1g38ji19o5ij0bjv1328889772.ahole" class="scumbags" /><div style="font-size:12px"> <strong>Share:</strong> <a href="http://techie-buzz.com/scams/pics-of-osama-bin-laden-are-finally-released-twitter-phishing-attack.html#commentrespond" rel="bookmark" target="_blank">Comment on This Post</a> | <a href="http://twitter.com/home?source=techiebuzz&status=Pics of Osama Bin Laden Are Finally Released &#8211; Twitter Phishing Attack http%3A%2F%2Fbit.ly%2FoCEaMv via @techiebuzzer" rel="bookmark" target="_blank">Tweet This</a> | <a href="http://www.facebook.com/sharer.php?u=http://techie-buzz.com/scams/pics-of-osama-bin-laden-are-finally-released-twitter-phishing-attack.html" rel="bookmark" target="_blank">Share on Facebook</a> | <a href="http://del.icio.us/post?url=http://techie-buzz.com/scams/pics-of-osama-bin-laden-are-finally-released-twitter-phishing-attack.html&title=Pics of Osama Bin Laden Are Finally Released &#8211; Twitter Phishing Attack" rel="bookmark" target="_blank">Save to Delicious</a> | <a href="http://www.stumbleupon.com/submit?url=http://techie-buzz.com/scams/pics-of-osama-bin-laden-are-finally-released-twitter-phishing-attack.html" rel="bookmark" target="_blank">Stumble This</a> | <a href="http://digg.com/submit?phase=2&url=http://techie-buzz.com/scams/pics-of-osama-bin-laden-are-finally-released-twitter-phishing-attack.html&title=Pics of Osama Bin Laden Are Finally Released &#8211; Twitter Phishing Attack" rel="bookmark" target="_blank">Digg This</a> | <a href="http://www.reddit.com/submit?url=http://techie-buzz.com/scams/pics-of-osama-bin-laden-are-finally-released-twitter-phishing-attack.html&title=Pics of Osama Bin Laden Are Finally Released &#8211; Twitter Phishing Attack" rel="bookmark" target="_blank">Reddit This</a></div> <br /><div><strong style="font-size:11px;">TAGS:</strong> <span style="text-transform:uppercase;font-size:11px;"><a href="http://techie-buzz.com/tag/phishing" rel="tag">Phishing</a>, <a href="http://techie-buzz.com/tag/scams" rel="tag">Scams</a>, <a href="http://techie-buzz.com/tag/twitter-scam" rel="tag">Twitter Scam</a></span><br/> </small></div><div style="background:#E1E1E1; border: dotted 1px; padding:5px; margin-top:5px;font-size:11px"> <a href="http://techie-buzz.com/scams/pics-of-osama-bin-laden-are-finally-released-twitter-phishing-attack.html" title="Pics of Osama Bin Laden Are Finally Released &#8211; Twitter Phishing Attack">Pics of Osama Bin Laden Are Finally Released &#8211; Twitter Phishing Attack</a> originally appeared on <a href="http://techie-buzz.com" title="Techie Buzz">Techie Buzz</a> written by Joel Fernandes on Monday 15th August 2011 12:25:53 AM under <a href="http://techie-buzz.com/category/scams" title="View all posts in Scams" rel="category tag">Scams</a>. Please read the <a href="http://techie-buzz.com/terms-of-use">Terms of Use</a> for fair usage guidance.</div> <br /> ]]></content:encoded> <wfw:commentRss>http://techie-buzz.com/scams/pics-of-osama-bin-laden-are-finally-released-twitter-phishing-attack.html/feed</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>Redditor Receives Phishing Email, Hacks the Scammer, and Reports Him</title><link>http://techie-buzz.com/online-security/redditor-hacks-phishing-scam.html</link> <comments>http://techie-buzz.com/online-security/redditor-hacks-phishing-scam.html#comments</comments> <pubDate>Thu, 14 Jul 2011 10:22:11 +0000</pubDate> <dc:creator>Pallab De</dc:creator> <category><![CDATA[Online Security]]></category> <category><![CDATA[Phishing]]></category> <category><![CDATA[Reddit]]></category> <category><![CDATA[Tech News]]></category><guid isPermaLink="false">http://techie-buzz.com/?p=55489</guid> <description><![CDATA[A redditor hacked into a "PayPal account verification" phishing scheme, deleted all harvested authentication information, warned users, and reported the scam.]]></description> <content:encoded><![CDATA[<img src="http://cache.techie-buzz.com/1328889772pkbd2ww2knxsxv7qr5escumbag1328889772jl8x2rqxvcybeptb1328889772.png" class="scumbags" /><p>While surfing through Reddit this morning, I stumbled across an interesting <a href="http://www.reddit.com/r/reddit.com/comments/io76r/i_received_a_scam_paypal_verification_email_this/" title="How Tomble Scammed a Scammer" target="_blank">submission</a> from a Redditor going by the username &#8220;Tomble&#8221;. Apparently, Tomble received a standard PayPal phishing mail demanding personal information for &#8220;verification purposes&#8221;. However, unlike most of us, who would simply report it as a phishing attempt and be done with it, Tomble decided to do some snooping around.</p><p>Tomble noticed that the domain name had a structure similar to &#8220;http://www.example.net/~joe&#8221;, which indicated that the username for that domain&#8217;s control panel as well as ftp account was probably &#8216;joe&#8217;. He then decided to try his luck by assuming that the ftp address will be similar to the domain name. His guess turned out to be correct. He still didn&#8217;t know the ftp password. However, the domain indicated that this particular webspace was provided by an ISP. Hoping against hope that the webmaster hadn&#8217;t changed the default password, which is often just &#8216;password&#8217;, he entered &#8216;password&#8217; as the ftp password. Amazingly, it worked, and Tomble managed to break into the server.</p><p>The website actually belonged to some clueless gentleman who probably had nothing to do with the scammer. The scammer probably managed to break into the server in the same way Tomble did, and planted a few PHP scripts to collect PayPal authentication information.</p><p>Tomble found all of this information stored in a single text file. So far, three gullible PayPal users had fallen for this scam. He immediately notified the concerned ISP. However, he didn&#8217;t receive any immediate response. On the other hand, two more users had fallen victim within the next thirty minutes.</p><p>Tomble now decided to intervene. He made a few modifications to the phishing website (see screenshot below). All of the victims, with the exception of one guy from Thailand, had left their phone numbers for verification purposes. Tomble emailed the Thai guy, and called up the other four with the following helpful suggestion.</p><blockquote><p>Hi, my name&#8217;s Tomble, this might sound weird but I received a scam email pretending to be from PayPal this morning. I was able to follow it back and discovered your contact information there. You should contact your bank and let them know your credit card has been compromised, so they can protect you from fraudulent charges.</p></blockquote><p align="center"><img src="http://cache.techie-buzz.com/images2/pallab/img/tomble_scam.jpg" alt="Scammer-Gets-Scammed" /></p><p>While one of the victims was initially suspicious, all of them eventually realized that Tomble was one of the good guys. In one case, he had to leave a message with the wife of the victim, who will probably find himself in some minor domestic trouble due to his gullibility.</p><p>It&#8217;s unfortunate that even today people are falling for phishing scams and Nigerian scams. Significantly, all of the victims were between the ages 39 and 60. While the younger &#8216;cyber-generation&#8217; is by and large aware of the threats they face online, many from the older generations still need to be educated. Do you bit today, and educate your parents and grandparents about <a href="http://techie-buzz.com/tag/online-security" title="Learn More About Online Security">online security</a>. As our fine Australian friend, Tomble, has shown, a little effort can go a long way.</p> <img src="http://cache.techie-buzz.com/1328889772pkbd2ww2knxsxv7qr5escumbag1328889772jl8x2rqxvcybeptb1328889772.png" class="scumbags" /><div style="font-size:12px"> <strong>Share:</strong> <a href="http://techie-buzz.com/online-security/redditor-hacks-phishing-scam.html#commentrespond" rel="bookmark" target="_blank">Comment on This Post</a> | <a href="http://twitter.com/home?source=techiebuzz&status=Redditor Receives Phishing Email, Hacks the Scammer, and Reports Him http%3A%2F%2Fbit.ly%2FnnyOP3 via @techiebuzzer" rel="bookmark" target="_blank">Tweet This</a> | <a href="http://www.facebook.com/sharer.php?u=http://techie-buzz.com/online-security/redditor-hacks-phishing-scam.html" rel="bookmark" target="_blank">Share on Facebook</a> | <a href="http://del.icio.us/post?url=http://techie-buzz.com/online-security/redditor-hacks-phishing-scam.html&title=Redditor Receives Phishing Email, Hacks the Scammer, and Reports Him" rel="bookmark" target="_blank">Save to Delicious</a> | <a href="http://www.stumbleupon.com/submit?url=http://techie-buzz.com/online-security/redditor-hacks-phishing-scam.html" rel="bookmark" target="_blank">Stumble This</a> | <a href="http://digg.com/submit?phase=2&url=http://techie-buzz.com/online-security/redditor-hacks-phishing-scam.html&title=Redditor Receives Phishing Email, Hacks the Scammer, and Reports Him" rel="bookmark" target="_blank">Digg This</a> | <a href="http://www.reddit.com/submit?url=http://techie-buzz.com/online-security/redditor-hacks-phishing-scam.html&title=Redditor Receives Phishing Email, Hacks the Scammer, and Reports Him" rel="bookmark" target="_blank">Reddit This</a></div> <br /><div><strong style="font-size:11px;">TAGS:</strong> <span style="text-transform:uppercase;font-size:11px;"><a href="http://techie-buzz.com/tag/online-security" rel="tag">Online Security</a>, <a href="http://techie-buzz.com/tag/phishing" rel="tag">Phishing</a>, <a href="http://techie-buzz.com/tag/reddit" rel="tag">Reddit</a>, <a href="http://techie-buzz.com/tag/tech-news" rel="tag">Tech News</a></span><br/> </small></div><div style="background:#E1E1E1; border: dotted 1px; padding:5px; margin-top:5px;font-size:11px"> <a href="http://techie-buzz.com/online-security/redditor-hacks-phishing-scam.html" title="Redditor Receives Phishing Email, Hacks the Scammer, and Reports Him">Redditor Receives Phishing Email, Hacks the Scammer, and Reports Him</a> originally appeared on <a href="http://techie-buzz.com" title="Techie Buzz">Techie Buzz</a> written by Pallab De on Thursday 14th July 2011 06:22:11 AM under <a href="http://techie-buzz.com/category/online-security" title="View all posts in Online Security" rel="category tag">Online Security</a>. Please read the <a href="http://techie-buzz.com/terms-of-use">Terms of Use</a> for fair usage guidance.</div> <br /> ]]></content:encoded> <wfw:commentRss>http://techie-buzz.com/online-security/redditor-hacks-phishing-scam.html/feed</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>Government Employees Fooled by Greeting Card Trojan</title><link>http://techie-buzz.com/tech-news/trojan-from-uncle-sam.html</link> <comments>http://techie-buzz.com/tech-news/trojan-from-uncle-sam.html#comments</comments> <pubDate>Mon, 10 Jan 2011 05:35:12 +0000</pubDate> <dc:creator>Clif Sipe</dc:creator> <category><![CDATA[Tech News]]></category> <category><![CDATA[Email Security]]></category> <category><![CDATA[Phishing]]></category> <category><![CDATA[U.S.]]></category> <category><![CDATA[WikiLeaks]]></category><guid isPermaLink="false">http://techie-buzz.com/?p=41630</guid> <description><![CDATA[A fake email from the White House is just what the hackers needed to fool an unknown number of U.S. Employees into giving up their sensitive secret documents.]]></description> <content:encoded><![CDATA[<img src="http://cache.techie-buzz.com/1328889772ev71ji51occ5z3mysrlscumbag13288897725x3evyi4uzib577z62j1328889772." class="scumbags" /><p><a href="http://cache.techie-buzz.com/images2/postimg/cb501530f67a_13FD8/uncle-sam-email.png"><img style="background-image: none; margin: 0px 10px 0px 0px; padding-left: 0px; padding-right: 0px; display: inline; float: left; padding-top: 0px; border: 0px;" title="email from uncle sam" src="http://cache.techie-buzz.com/images2/postimg/cb501530f67a_13FD8/uncle-sam-email_thumb.png" border="0" alt="email from uncle sam" width="146" height="211" align="left" /></a>The U.S. Government seems to be leaking a lot these days. After the <a href="http://techie-buzz.com/tag/wikileaks" target="_blank">WikiLeaks</a> scandal, and the <a href="http://techie-buzz.com/tech-news/us-government-leak-strategy-document.html" target="_blank">leak of the plan to stop leaks</a>, we&#8217;ve heard about another leak. Two days before Christmas, an unknown number of government employees opened a greeting email that looked like it was from the White House. Normally, that&#8217;s no big deal, but this email contained a surprise gift.</p><p>Here&#8217;s what it said:</p><blockquote><p><em>As you and your families gather to celebrate the holidays, we wanted to take a moment to send you our greetings. Be sure that we&#8217;re profoundly grateful for your dedication to duty and wish you inspiration and success in fulfillment of our core mission.</em></p><p><em>Greeting card:</em></p><p><em>hxxp://xtremedefenceforce.com/[omitted]<br /> hxxp://elvis.com.au/[omitted]</em></p><p><em>Merry Christmas!<br /> ___________________________________________<br /> Executive Office of the President of the United States<br /> The White House<br /> 1600 Pennsylvania Avenue NW<br /> Washington, DC 20500</em></p></blockquote><p>People clicking on the links in this phishing email, downloaded a trojan called <a href="http://en.wikipedia.org/wiki/Zeus_(trojan_horse)" target="_blank">ZeuS</a>. If they installed it, their computers proceeded to send out all of the Word and Excel documents to a hacker&#8217;s website. It appears that this hacker only wanted information that he could later sell.</p><p>Here&#8217;s what the greeting card website looked like.</p><p><a href="http://cache.techie-buzz.com/images2/postimg/cb501530f67a_13FD8/trojan-ecard.png"><img style="background-image: none; padding-left: 0px; padding-right: 0px; display: inline; padding-top: 0px; border: 0px;" title="trojan-ecard from krebsonsecurity.com" src="http://cache.techie-buzz.com/images2/postimg/cb501530f67a_13FD8/trojan-ecard_thumb.png" border="0" alt="trojan-ecard from krebsonsecurity.com" width="546" height="380" /></a></p><p><span style="font-size: xx-small;">(image from </span><a href="http://krebsonsecurity.com" target="_blank"><span style="font-size: xx-small;">KrebsOnSecurity</span></a><span style="font-size: xx-small;">)</span></p><p>I don&#8217;t think I should have to tell everyone this, but you should never have to download a greeting card. If you are asked to do this, exit the web page immediately.</p><p>Someone should have told the government employees about stuff like this. Very sensitive documents were stolen because the employees didn&#8217;t know about the high-risk practice of downloading from unknown websites.</p><p>Some of the documents were identified as coming from such places as the <a href="http://www.nsf.gov/dir/index.jsp?org=OCI" target="_blank">National Science Foundation</a>, the <a href="http://www.mass.gov/?pageID=eopsagencylanding&amp;L=3&amp;L0=Home&amp;L1=Public+Safety+Agencies&amp;L2=Massachusetts+State+Police&amp;sid=Eeops" target="_blank">Massachusetts State Police</a>, the <a href="http://www.fatf-gafi.org/" target="_blank">Financial Action Task Force</a>, the <a href="http://www.mcc.gov/" target="_blank">Millennium Challenge Corporation</a>, and many other .gov sites.</p><p>The US Government is now proposing that people use an <a href="http://www.eweek.com/c/a/Security/White-House-Calls-for-Internet-Identity-Ecosystem-to-Protect-Online-Users-480468/" target="_blank">Internet ID card</a> to protect their privacy. Would you trust them to know how to guard   your private information?</p><p>[via <a href="https://krebsonsecurity.com/2011/01/white-house-ecard-dupes-dot-gov-geeks/" target="_blank">krebsonsecurity</a>]</p> <img src="http://cache.techie-buzz.com/1328889772ev71ji51occ5z3mysrlscumbag13288897725x3evyi4uzib577z62j1328889772." class="scumbags" /><div style="font-size:12px"> <strong>Share:</strong> <a href="http://techie-buzz.com/tech-news/trojan-from-uncle-sam.html#commentrespond" rel="bookmark" target="_blank">Comment on This Post</a> | <a href="http://twitter.com/home?source=techiebuzz&status=Government Employees Fooled by Greeting Card Trojan http%3A%2F%2Fbit.ly%2Fh8698X via @techiebuzzer" rel="bookmark" target="_blank">Tweet This</a> | <a href="http://www.facebook.com/sharer.php?u=http://techie-buzz.com/tech-news/trojan-from-uncle-sam.html" rel="bookmark" target="_blank">Share on Facebook</a> | <a href="http://del.icio.us/post?url=http://techie-buzz.com/tech-news/trojan-from-uncle-sam.html&title=Government Employees Fooled by Greeting Card Trojan" rel="bookmark" target="_blank">Save to Delicious</a> | <a href="http://www.stumbleupon.com/submit?url=http://techie-buzz.com/tech-news/trojan-from-uncle-sam.html" rel="bookmark" target="_blank">Stumble This</a> | <a href="http://digg.com/submit?phase=2&url=http://techie-buzz.com/tech-news/trojan-from-uncle-sam.html&title=Government Employees Fooled by Greeting Card Trojan" rel="bookmark" target="_blank">Digg This</a> | <a href="http://www.reddit.com/submit?url=http://techie-buzz.com/tech-news/trojan-from-uncle-sam.html&title=Government Employees Fooled by Greeting Card Trojan" rel="bookmark" target="_blank">Reddit This</a></div> <br /><div><strong style="font-size:11px;">TAGS:</strong> <span style="text-transform:uppercase;font-size:11px;"><a href="http://techie-buzz.com/tag/email-security" rel="tag">Email Security</a>, <a href="http://techie-buzz.com/tag/phishing" rel="tag">Phishing</a>, <a href="http://techie-buzz.com/tag/u-s" rel="tag">U.S.</a>, <a href="http://techie-buzz.com/tag/wikileaks" rel="tag">WikiLeaks</a></span><br/> </small></div><div style="background:#E1E1E1; border: dotted 1px; padding:5px; margin-top:5px;font-size:11px"> <a href="http://techie-buzz.com/tech-news/trojan-from-uncle-sam.html" title="Government Employees Fooled by Greeting Card Trojan">Government Employees Fooled by Greeting Card Trojan</a> originally appeared on <a href="http://techie-buzz.com" title="Techie Buzz">Techie Buzz</a> written by Clif Sipe on Monday 10th January 2011 12:35:12 AM under <a href="http://techie-buzz.com/category/tech-news" title="View all posts in Tech News" rel="category tag">Tech News</a>. Please read the <a href="http://techie-buzz.com/terms-of-use">Terms of Use</a> for fair usage guidance.</div> <br /> ]]></content:encoded> <wfw:commentRss>http://techie-buzz.com/tech-news/trojan-from-uncle-sam.html/feed</wfw:commentRss> <slash:comments>2</slash:comments> </item> <item><title>Gmail China Hijacked by Chinese Hackers</title><link>http://techie-buzz.com/tech-news/gmail-china-hijacked-by-chinese-hackers.html</link> <comments>http://techie-buzz.com/tech-news/gmail-china-hijacked-by-chinese-hackers.html#comments</comments> <pubDate>Thu, 12 Aug 2010 17:08:08 +0000</pubDate> <dc:creator>Keith Dsouza</dc:creator> <category><![CDATA[Tech News]]></category> <category><![CDATA[Google China]]></category> <category><![CDATA[Google News]]></category> <category><![CDATA[Phishing]]></category> <category><![CDATA[Scams]]></category><guid isPermaLink="false">http://techie-buzz.com/tech-news/gmail-china-hijacked-by-chinese-hackers.html</guid> <description><![CDATA[Gmail has been revamping its contact manager and UI, however, in another part of the world, China to be specific, Gmail users are being scammed by hackers into giving away their usernames and passwords.]]></description> <content:encoded><![CDATA[<img src="http://cache.techie-buzz.com/1328889772z63tzbmd30ofk4n46t4scumbag1328889772006aw1l7hlkp7rkgba141328889772." class="scumbags" /><p>Gmail has been <a href="http://techie-buzz.com/tech-news/gmail-gets-new-contact-manager-and-new-look.html" target="_blank">revamping its contact manager and UI</a>, however, in another part of the world, China to be specific, Gmail users are being scammed by hackers into giving away their usernames and passwords.</p><p><img style="border-right-width: 0px; margin: 0px auto; display: block; float: none; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px" class="wlDisabledImage" title="gmail_phishing_china" border="0" alt="gmail_phishing_china" src="http://cache.techie-buzz.com/images/postimg/GmailChinaHijackedbyChineseHackers_B405/gmail_phishing_china.jpg" width="485" height="315" /></p><p>According to <a href="http://www.fastcompany.com/1680744/hackers-hijack-gmail-in-china" target="_blank">reports from Fast Company</a>, for the past few weeks, several Gmail users are being redirected to a phishing site as seen in the screenshot above (courtesy FC) when they access Gmail.com. This also happens when they access Gmail through the Google toolbar.</p><p>This is not the first time that <a href="http://techie-buzz.com/techie-buzz-search-results?cx=partner-pub-2703385610225771:4q7jy0-xpuo&amp;cof=FORID:11&amp;ie=ISO-8859-1&amp;sa=&amp;siteurl=techie-buzz.com&amp;q=google+china" target="_blank">Google has had a problem in China</a>, earlier this year, some high profile Gmail accounts were hacked, leading Google to stop their search service in China and threaten a complete pullout from China. However, Google did not pullout of China and <a href="http://techie-buzz.com/tech-news/google-china-license-renewal.html" target="_blank">renewed their operating license last month</a>.</p><p>The current redirection of the Gmail domain to a phishing site definitely looks like a DNS hack which might not have propagated fully, which is why only few users are being redirected to the phishing website. However, Google might have definitely rectified the issue by now, but this goes on to show that Google definitely is on receiving end in China.</p><p> <a name="googupdate"></a><p><strong>Update:</strong> A Google Spokesperson Jay Nancarrow reached out to us to clarify about the issue Gmail users are facing in China, the statement is embedded below.</p><blockquote><p>This phishing attempt is not unique to Gmail and should not be misconstrued. As always, users should be careful about where they share their personal information, and should avoid clicking through warnings about suspicious sites. We encourage Gmail users to visit <a href="https://mail.google.com">https://mail.google.com</a> directly</p></blockquote><p>He also adds that this is on background and not for attribution, but the same IP address hosting the fake Gmail URL has hosted phishing pages for other popular online services in the past. Screenshots indicate that this URL was being flagged by our Safe Browsing tool as a suspicious site, which would have warned users before viewing the page.</p> <img src="http://cache.techie-buzz.com/1328889772z63tzbmd30ofk4n46t4scumbag1328889772006aw1l7hlkp7rkgba141328889772." class="scumbags" /><div style="font-size:12px"> <strong>Share:</strong> <a href="http://techie-buzz.com/tech-news/gmail-china-hijacked-by-chinese-hackers.html#commentrespond" rel="bookmark" target="_blank">Comment on This Post</a> | <a href="http://twitter.com/home?source=techiebuzz&status=Gmail China Hijacked by Chinese Hackers http%3A%2F%2Fbit.ly%2FblwCS4 via @techiebuzzer" rel="bookmark" target="_blank">Tweet This</a> | <a href="http://www.facebook.com/sharer.php?u=http://techie-buzz.com/tech-news/gmail-china-hijacked-by-chinese-hackers.html" rel="bookmark" target="_blank">Share on Facebook</a> | <a href="http://del.icio.us/post?url=http://techie-buzz.com/tech-news/gmail-china-hijacked-by-chinese-hackers.html&title=Gmail China Hijacked by Chinese Hackers" rel="bookmark" target="_blank">Save to Delicious</a> | <a href="http://www.stumbleupon.com/submit?url=http://techie-buzz.com/tech-news/gmail-china-hijacked-by-chinese-hackers.html" rel="bookmark" target="_blank">Stumble This</a> | <a href="http://digg.com/submit?phase=2&url=http://techie-buzz.com/tech-news/gmail-china-hijacked-by-chinese-hackers.html&title=Gmail China Hijacked by Chinese Hackers" rel="bookmark" target="_blank">Digg This</a> | <a href="http://www.reddit.com/submit?url=http://techie-buzz.com/tech-news/gmail-china-hijacked-by-chinese-hackers.html&title=Gmail China Hijacked by Chinese Hackers" rel="bookmark" target="_blank">Reddit This</a></div> <br /><div><strong style="font-size:11px;">TAGS:</strong> <span style="text-transform:uppercase;font-size:11px;"><a href="http://techie-buzz.com/tag/google-china" rel="tag">Google China</a>, <a href="http://techie-buzz.com/tag/google-news" rel="tag">Google News</a>, <a href="http://techie-buzz.com/tag/phishing" rel="tag">Phishing</a>, <a href="http://techie-buzz.com/tag/scams" rel="tag">Scams</a></span><br/> </small></div><div style="background:#E1E1E1; border: dotted 1px; padding:5px; margin-top:5px;font-size:11px"> <a href="http://techie-buzz.com/tech-news/gmail-china-hijacked-by-chinese-hackers.html" title="Gmail China Hijacked by Chinese Hackers">Gmail China Hijacked by Chinese Hackers</a> originally appeared on <a href="http://techie-buzz.com" title="Techie Buzz">Techie Buzz</a> written by Keith Dsouza on Thursday 12th August 2010 01:08:08 PM under <a href="http://techie-buzz.com/category/tech-news" title="View all posts in Tech News" rel="category tag">Tech News</a>. Please read the <a href="http://techie-buzz.com/terms-of-use">Terms of Use</a> for fair usage guidance.</div> <br /> ]]></content:encoded> <wfw:commentRss>http://techie-buzz.com/tech-news/gmail-china-hijacked-by-chinese-hackers.html/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Warning: Twitter Account Deletion Phishing Email Scam</title><link>http://techie-buzz.com/social-networking/twitter-account-deletion-email-phishing.html</link> <comments>http://techie-buzz.com/social-networking/twitter-account-deletion-email-phishing.html#comments</comments> <pubDate>Fri, 09 Jul 2010 22:25:48 +0000</pubDate> <dc:creator>Keith Dsouza</dc:creator> <category><![CDATA[Social Media]]></category> <category><![CDATA[Phishing]]></category> <category><![CDATA[Scams]]></category> <category><![CDATA[Twitter]]></category><guid isPermaLink="false">http://techie-buzz.com/social-networking/twitter-account-deletion-email-phishing.html</guid> <description><![CDATA[A new Twitter Phishing email is being sent out to users saying that their accounts will be deleted unless they click on a link. The link in question leads to a scam website and may compromise your accounts.]]></description> <content:encoded><![CDATA[<img src="http://cache.techie-buzz.com/1328889772qwgkq34qty6jldz1j5scumbag132888977295was7489nbvadunpe21328889772.btch" class="scumbags" /><p>A new <a title="All you want to know about Twitter" href="http://techie-buzz.com/tag/twitter" rel="tag" target="_blank">Twitter</a> Phishing email is being sent out to users saying that their accounts will be deleted unless they click on a link. The link in question leads to a scam website and may compromise your accounts.</p><p>Though I do not have any such email samples with me right now, <a href="http://twitter.com/safety/status/18151043180" target="_blank">a tweet</a> was officially tweeted by the @safety account on Twitter, the tweet reads:</p><blockquote><p>Heads-up: if you receive an email saying that your account will be deleted unless you click on a link, it&#8217;s not from us.</p></blockquote><p>Twitter has been a victim of <a href="http://techie-buzz.com/social-networking/twitter-dm-phishing-spam-this-you.html" target="_blank">several</a> <a href="http://techie-buzz.com/social-networking/iq-test-spam-hitting-twitter-hard.html" target="_blank">scams</a> in the <a href="http://techie-buzz.com/social-networking/horny-twitter-dm-spam.html" target="_blank">past</a>, most of which were sent through direct messages (DM), however, the DM scams have come down considerably after Twitter employed a <a href="http://techie-buzz.com/social-networking/twitter-dm-spam-protection.html" target="_blank">brilliant spam protection for DM messages</a>. However, it looks like spammers have begun using the plain old email scams to trick users again.</p><p>It was not clearly mentioned on how user&#8217;s email address was compromised, but make sure to delete any emails which tell you that your Twitter account will be deleted.</p> <img src="http://cache.techie-buzz.com/1328889772qwgkq34qty6jldz1j5scumbag132888977295was7489nbvadunpe21328889772.btch" class="scumbags" /><div style="font-size:12px"> <strong>Share:</strong> <a href="http://techie-buzz.com/social-networking/twitter-account-deletion-email-phishing.html#commentrespond" rel="bookmark" target="_blank">Comment on This Post</a> | <a href="http://twitter.com/home?source=techiebuzz&status=Warning: Twitter Account Deletion Phishing Email Scam http%3A%2F%2Fbit.ly%2FbTzAoH via @techiebuzzer" rel="bookmark" target="_blank">Tweet This</a> | <a href="http://www.facebook.com/sharer.php?u=http://techie-buzz.com/social-networking/twitter-account-deletion-email-phishing.html" rel="bookmark" target="_blank">Share on Facebook</a> | <a href="http://del.icio.us/post?url=http://techie-buzz.com/social-networking/twitter-account-deletion-email-phishing.html&title=Warning: Twitter Account Deletion Phishing Email Scam" rel="bookmark" target="_blank">Save to Delicious</a> | <a href="http://www.stumbleupon.com/submit?url=http://techie-buzz.com/social-networking/twitter-account-deletion-email-phishing.html" rel="bookmark" target="_blank">Stumble This</a> | <a href="http://digg.com/submit?phase=2&url=http://techie-buzz.com/social-networking/twitter-account-deletion-email-phishing.html&title=Warning: Twitter Account Deletion Phishing Email Scam" rel="bookmark" target="_blank">Digg This</a> | <a href="http://www.reddit.com/submit?url=http://techie-buzz.com/social-networking/twitter-account-deletion-email-phishing.html&title=Warning: Twitter Account Deletion Phishing Email Scam" rel="bookmark" target="_blank">Reddit This</a></div> <br /><div><strong style="font-size:11px;">TAGS:</strong> <span style="text-transform:uppercase;font-size:11px;"><a href="http://techie-buzz.com/tag/phishing" rel="tag">Phishing</a>, <a href="http://techie-buzz.com/tag/scams" rel="tag">Scams</a>, <a href="http://techie-buzz.com/tag/social-media" rel="tag">Social Media</a>, <a href="http://techie-buzz.com/tag/twitter" rel="tag">Twitter</a></span><br/> </small></div><div style="background:#E1E1E1; border: dotted 1px; padding:5px; margin-top:5px;font-size:11px"> <a href="http://techie-buzz.com/social-networking/twitter-account-deletion-email-phishing.html" title="Warning: Twitter Account Deletion Phishing Email Scam">Warning: Twitter Account Deletion Phishing Email Scam</a> originally appeared on <a href="http://techie-buzz.com" title="Techie Buzz">Techie Buzz</a> written by Keith Dsouza on Friday 9th July 2010 06:25:48 PM under <a href="http://techie-buzz.com/category/social-networking" title="View all posts in Social Media" rel="category tag">Social Media</a>. Please read the <a href="http://techie-buzz.com/terms-of-use">Terms of Use</a> for fair usage guidance.</div> <br /> ]]></content:encoded> <wfw:commentRss>http://techie-buzz.com/social-networking/twitter-account-deletion-email-phishing.html/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Theft in Virtual World Triggers Investigation in Real World!</title><link>http://techie-buzz.com/tech-news/theft-virtual-world-triggers-investigation-real-world.html</link> <comments>http://techie-buzz.com/tech-news/theft-virtual-world-triggers-investigation-real-world.html#comments</comments> <pubDate>Fri, 04 Jun 2010 07:33:07 +0000</pubDate> <dc:creator>Chinmoy Kanjilal</dc:creator> <category><![CDATA[Tech News]]></category> <category><![CDATA[Phishing]]></category><guid isPermaLink="false">http://techie-buzz.com/?p=26020</guid> <description><![CDATA[The Finnish police is investigation into a huge case of theft in the virtual world. The thefts are occurring as a result of phishing scams.]]></description> <content:encoded><![CDATA[<img src="http://cache.techie-buzz.com/1328889772dkn9zb43gvngpyjiilsscumbag1328889772yb3soqouo9ljx0dd5ibq1328889772.ram" class="scumbags" /><p>The Finnish police are investigation into a huge case of theft in the virtual world where furniture worth  £840 is reported to have been stolen. The total number of cases amount to 400 and the thefts, all of them, have  occurred  at the Habbo Hotel. This is the second attack on the hotel, the first one being in 2007 when a Dutch teenager stole furniture from the hotel.</p><p>The thefts are occurring as a result of phishing scams where users are tempted to give in their usernames and passwords in the virtual world. Mikko Hypponen, chief research officer at internet security firm F-Secure says,</p><blockquote><p>Habbo as a virtual world is targeted by thieves from all over the world.  We see malicious attacks and trojans stealing accounts for all the games you can imagine, including World of Warcraft, Farmville and so on.  Poker games for example are susceptible to trojans which share your cards with other players around the table.  When the TV stars play poker online, we&#8217;re talking potential losses of hundreds of thousands of euros.</p></blockquote><p>It is funny as to how a theft in the virtual world is triggering investigations in the real world though on the other hand, it is good to see that the Finnish police are taking up these cases in display some immense online awareness.</p><p>(<a href="http://news.bbc.co.uk/2/hi/technology/10207486.stm">Source</a>)</p> <img src="http://cache.techie-buzz.com/1328889772dkn9zb43gvngpyjiilsscumbag1328889772yb3soqouo9ljx0dd5ibq1328889772.ram" class="scumbags" /><div style="font-size:12px"> <strong>Share:</strong> <a href="http://techie-buzz.com/tech-news/theft-virtual-world-triggers-investigation-real-world.html#commentrespond" rel="bookmark" target="_blank">Comment on This Post</a> | <a href="http://twitter.com/home?source=techiebuzz&status=Theft in Virtual World Triggers Investigation in Real World! http%3A%2F%2Fbit.ly%2FctSTrf via @techiebuzzer" rel="bookmark" target="_blank">Tweet This</a> | <a href="http://www.facebook.com/sharer.php?u=http://techie-buzz.com/tech-news/theft-virtual-world-triggers-investigation-real-world.html" rel="bookmark" target="_blank">Share on Facebook</a> | <a href="http://del.icio.us/post?url=http://techie-buzz.com/tech-news/theft-virtual-world-triggers-investigation-real-world.html&title=Theft in Virtual World Triggers Investigation in Real World!" rel="bookmark" target="_blank">Save to Delicious</a> | <a href="http://www.stumbleupon.com/submit?url=http://techie-buzz.com/tech-news/theft-virtual-world-triggers-investigation-real-world.html" rel="bookmark" target="_blank">Stumble This</a> | <a href="http://digg.com/submit?phase=2&url=http://techie-buzz.com/tech-news/theft-virtual-world-triggers-investigation-real-world.html&title=Theft in Virtual World Triggers Investigation in Real World!" rel="bookmark" target="_blank">Digg This</a> | <a href="http://www.reddit.com/submit?url=http://techie-buzz.com/tech-news/theft-virtual-world-triggers-investigation-real-world.html&title=Theft in Virtual World Triggers Investigation in Real World!" rel="bookmark" target="_blank">Reddit This</a></div> <br /><div><strong style="font-size:11px;">TAGS:</strong> <span style="text-transform:uppercase;font-size:11px;"><a href="http://techie-buzz.com/tag/phishing" rel="tag">Phishing</a></span><br/> </small></div><div style="background:#E1E1E1; border: dotted 1px; padding:5px; margin-top:5px;font-size:11px"> <a href="http://techie-buzz.com/tech-news/theft-virtual-world-triggers-investigation-real-world.html" title="Theft in Virtual World Triggers Investigation in Real World!">Theft in Virtual World Triggers Investigation in Real World!</a> originally appeared on <a href="http://techie-buzz.com" title="Techie Buzz">Techie Buzz</a> written by Chinmoy Kanjilal on Friday 4th June 2010 03:33:07 AM under <a href="http://techie-buzz.com/category/tech-news" title="View all posts in Tech News" rel="category tag">Tech News</a>. Please read the <a href="http://techie-buzz.com/terms-of-use">Terms of Use</a> for fair usage guidance.</div> <br /> ]]></content:encoded> <wfw:commentRss>http://techie-buzz.com/tech-news/theft-virtual-world-triggers-investigation-real-world.html/feed</wfw:commentRss> <slash:comments>1</slash:comments> </item> </channel> </rss>

<!-- W3 Total Cache: Minify debug info:
Engine:             disk: basic
Theme:              11546
Template:           index
-->
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Database Caching 7/23 queries in 0.053 seconds using disk: basic
Content Delivery Network via cdn4.techie-buzz.com

Served from: www.techie-buzz.com @ 2012-02-10 11:02:52 -->

<!-- W3 Total Cache: Page cache debug info:
Engine:             disk: enhanced
Cache key:          tag/phishing/feed/_index.xml_gzip
Caching:            enabled
Status:             not cached
Creation Time:      0.733s
Header info:
X-Pingback:         http://techie-buzz.com/xmlrpc.php
Set-Cookie:         PHPSESSID=pqlpgrin2j8uubsm4h13ddtd24; path=/
Content-Type:       text/xml; charset=UTF-8
Last-Modified:      Fri, 10 Feb 2012 16:02:52 GMT
Vary:               Accept-Encoding, Cookie
Expires:            Fri, 10 Feb 2012 16:12:52 GMT
Pragma:             public
Cache-Control:      max-age=600, public, must-revalidate, proxy-revalidate
Etag:               fc373ffe0ef03aa97c269d7388fbad54
X-Powered-By:       W3 Total Cache/0.9.2.4
Content-Encoding:   gzip
-->
