Wilders Security Forums  

Go Back   Wilders Security Forums > Other Security Topics > malware problems & news
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old August 26th, 2011, 05:00 PM
ronjor's Avatar
ronjor ronjor is offline
Global Moderator
 
Join Date: Jul 2003
Location: Texas
Posts: 46,210
Default Irene – is that you (or a fake)?

Quote:
So you get a Twitter tweet or Facebook notification from what “seems to be” a friend saying they have the latest information in the development of Hurricane Irene, if you just “click here.” When you do, you find that your “friend” might really be computer script from a distant land directing you to a fake website with malware. And oh, by the way, your computer is now infected.

The practice, a variant of BlackHat Seach Engine Optimization (BHSEO), picking major world events for scams to target unsuspecting victims through fake high-ranking search engine results, is nothing new. When a major world event occurs, people feel like there’s an urgent “need” to know what’s going on, a bit of a frenzy. The new twist is when BHSEO tactics join social engineering to provide malicious links that “seem” to be coming from people you really know and trust.
http://blog.eset.com/2011/08/26/iren...-you-or-a-fake
  #2  
Old August 26th, 2011, 05:09 PM
dw426 dw426 is offline
Massive Poster
 
Join Date: Jan 2007
Posts: 5,543
Default Re: Irene – is that you (or a fake)?

Why on earth would anyone fall for something like this? Coming from a friend or not, the latest info on it is a TV channel away. And, if you're in the area affected..you probably don't need to be told the latest news, what with all the wind, rain and things being blown about outside your door.
  #3  
Old August 26th, 2011, 05:33 PM
Hungry Man's Avatar
Hungry Man Hungry Man is offline
Incredibly Massive Poster
 
Join Date: May 2011
Posts: 8,486
Default Re: Irene – is that you (or a fake)?

Uhhh, if it's from a friend I can imagine many people falling for it.
__________________
  #4  
Old August 26th, 2011, 05:40 PM
dw426 dw426 is offline
Massive Poster
 
Join Date: Jan 2007
Posts: 5,543
Default Re: Irene – is that you (or a fake)?

Quote:
Originally Posted by Hungry Man
Uhhh, if it's from a friend I can imagine many people falling for it.

Seriously? After everything people have gone through with malicious things on FB and Twitter, you'd still click some out of the blue link from a friend about the weather? (not saying you personally, just a general question) I'd find it extremely strange to receive such a thing even in my email. I might be able to see it if the person was right in the thick of things. But, that goes back to what I said about not really needing a link to know the current situation. If the local news isn't saying it, all the goings on outside your door would certainly.

You don't open links sent to you even by your grandma without asking her first if she sent it. That isn't being computer smart now, that's simply a must.
  #5  
Old August 26th, 2011, 05:49 PM
The Hammer's Avatar
The Hammer The Hammer is offline
Massive Poster
 
Join Date: May 2005
Location: Toronto Canada
Posts: 5,091
Default Re: Irene – is that you (or a fake)?

I don't do Facebook or twitter, never felt the need when they came out. Since then, I've read too many bad things from privacy concerns/breaches to malware problems. They sound like good places to test your security/privacy setups though.
__________________
Desktop -Win 7 Home Premium 64 bit, NAT Router Firewall, Windows Firewall, Avira Antivirus Premium V13, MBAM PRO 1.75 , WOT, Win 7's System imaging. Netbook-Avira Antivirus Premium V13 , MBAM PRO 1.75, WOT.
  #6  
Old August 26th, 2011, 05:54 PM
ronjor's Avatar
ronjor ronjor is offline
Global Moderator
 
Join Date: Jul 2003
Location: Texas
Posts: 46,210
Default Re: Irene – is that you (or a fake)?

You can't hide an elephant under a rug. Many people use the social networks and they aren't going away.

Facebook offers a security manual. http://www.wilderssecurity.com/showthread.php?t=306176
  #7  
Old August 26th, 2011, 06:05 PM
Rmus Rmus is offline
Exploit Analyst
 
Join Date: Mar 2005
Posts: 3,624
Default Re: Irene – is that you (or a fake)?

Quote:
Originally Posted by dw426
... I'd find it extremely strange to receive such a thing even in my email.
Hi dw246,

Unfortunately, I find it from time to time: a well-meaning friend wants to pass along the latest information on some event that is in the news.

I just don't bother-- not because I'm afraid of a redirect to a malware site, but I just don't have time!

In a discussion about this some years ago, I asked someone if, pre-email, she would mail with a stamp some notice like this to everyone in her address book! You can imagine her answer.

From the article:

Quote:
So you get a Twitter tweet or Facebook notification from what “seems to be” a friend
Well, it's either a friend, or it's not. Surely one knows one's friends!

Quote:
...When you do, you find that your “friend” might really be computer script from a distant land directing you to a fake website with malware. And oh, by the way, your computer is now infected.
That's a bit of a leap to conclusion!

If you work with home users, you set up firm procedures and policies -- the article has good suggestions.

And, have security protection in place to take care of accidents and cases where they let their guard down.

regards,

-rich
  #8  
Old August 26th, 2011, 06:16 PM
The Hammer's Avatar
The Hammer The Hammer is offline
Massive Poster
 
Join Date: May 2005
Location: Toronto Canada
Posts: 5,091
Default Re: Irene – is that you (or a fake)?

Quote:
Originally Posted by ronjor
You can't hide an elephant under a rug. Many people use the social networks and they aren't going away.

Facebook offers a security manual. http://www.wilderssecurity.com/showthread.php?t=306176
I never said you could (hide an elephant ) and one of the big problems with privacy on Facebook are the people who run it. As it is there have been a number of articles detailing how usage has been falling off.
__________________
Desktop -Win 7 Home Premium 64 bit, NAT Router Firewall, Windows Firewall, Avira Antivirus Premium V13, MBAM PRO 1.75 , WOT, Win 7's System imaging. Netbook-Avira Antivirus Premium V13 , MBAM PRO 1.75, WOT.
  #9  
Old August 26th, 2011, 06:33 PM
Hungry Man's Avatar
Hungry Man Hungry Man is offline
Incredibly Massive Poster
 
Join Date: May 2011
Posts: 8,486
Default Re: Irene – is that you (or a fake)?

Quote:
Originally Posted by dw426
Seriously? After everything people have gone through with malicious things on FB and Twitter, you'd still click some out of the blue link from a friend about the weather? (not saying you personally, just a general question) I'd find it extremely strange to receive such a thing even in my email. I might be able to see it if the person was right in the thick of things. But, that goes back to what I said about not really needing a link to know the current situation. If the local news isn't saying it, all the goings on outside your door would certainly.

You don't open links sent to you even by your grandma without asking her first if she sent it. That isn't being computer smart now, that's simply a must.
I live in Manhattan and have had multiple emails saying "Here's the latest info, here's what zone we're in, blah blah blah" and I haven't hesitated to open a single one.
__________________
  #10  
Old August 26th, 2011, 10:04 PM
dw426 dw426 is offline
Massive Poster
 
Join Date: Jan 2007
Posts: 5,543
Default Re: Irene – is that you (or a fake)?

Quote:
Originally Posted by Hungry Man
I live in Manhattan and have had multiple emails saying "Here's the latest info, here's what zone we're in, blah blah blah" and I haven't hesitated to open a single one.

Tsk tsk You're kind of in the thick of it though, so you at least have a reason to look. A guy like me, in the middle of the country has no such reason, and therefore wouldn't glance twice. I'm also one of the evidently few people who shoot off a message or call to someone who sends me a link, to verify they actually sent it. Anyhow, stay safe, Hungry.

Last edited by dw426 : August 26th, 2011 at 10:23 PM.
  #11  
Old August 26th, 2011, 11:27 PM
vasa1's Avatar
vasa1 vasa1 is offline
Massive Poster
 
Join Date: May 2010
Posts: 3,988
Default Re: Irene – is that you (or a fake)?

Quote:
Originally Posted by dw426
Tsk tsk You're kind of in the thick of it though, so you at least have a reason to look. A guy like me, in the middle of the country has no such reason, and therefore wouldn't glance twice. I'm also one of the evidently few people who shoot off a message or call to someone who sends me a link, to verify they actually sent it. Anyhow, stay safe, Hungry.

Quote:
I haven't hesitated to open a single one.

The context to keep in mind is that HM is actively looking for "zero-day" exploits as per a post elsewhere and, presumably, is capable of dealing with them.

A casual reader of this thread may read HM's post and feel that someone with so many posts to their credit can't be wrong in opening each and every e-mail they receive
  #12  
Old August 26th, 2011, 11:49 PM
dw426 dw426 is offline
Massive Poster
 
Join Date: Jan 2007
Posts: 5,543
Default Re: Irene – is that you (or a fake)?

Quote:
Originally Posted by vasa1
The context to keep in mind is that HM is actively looking for "zero-day" exploits as per a post elsewhere and, presumably, is capable of dealing with them.

A casual reader of this thread may read HM's post and feel that someone with so many posts to their credit can't be wrong in opening each and every e-mail they receive

Since when did post count mean someone knew what they were talking about? I'm just teasing Hungry, I know he's a tester.
  #13  
Old August 26th, 2011, 11:57 PM
Dark Shadow's Avatar
Dark Shadow Dark Shadow is offline
Massive Poster
 
Join Date: Oct 2007
Location: USA
Posts: 4,550
Default Re: Irene – is that you (or a fake)?

Quote:
Originally Posted by ronjor
You can't hide an elephant under a rug. Many people use the social networks and they aren't going away.

Facebook offers a security manual. http://www.wilderssecurity.com/showthread.php?t=306176
unless its a very very super size rug.
__________________
OS X 10.8.3 - 2.9 GHz Intel core i7 - 8 GB 1600 MHz DDR3 - 750 SATA HD - Intel HD 4000 Graphics 512 MB.
  #14  
Old August 27th, 2011, 01:06 PM
Hungry Man's Avatar
Hungry Man Hungry Man is offline
Incredibly Massive Poster
 
Join Date: May 2011
Posts: 8,486
Default Re: Irene – is that you (or a fake)?

Frankly, even if I were running nothing but MSE I'd be opening all of my emails. If I know who the email is from I don't even question it. If I don't know where the email is from... and the subject is blatantly spam ("Bai v1agruh 4dolla") I don't open it... if it seems to be a legit email I open it.

The fact that I know I'm secure with my setup just means that I get to look at viagra ads too haha
__________________
 

Wilders Security Forums > Other Security Topics > malware problems & news « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 12:37 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums