Avoiding the Onslaught of Email Spam Based on Images

Avoiding the Onslaught of Email Spam Based on Images

USA Today reports that because image-based spam tends to slip through the spam filtering cracks more than text based spam, "image-based spam accounts for 21% of all spam, compared with just 1% in late 2005." Generally when you click spam, it verifies that your address is "real" and the amount…

Author:
zonealarm
Category:
Continue Reading Avoiding the Onslaught of Email Spam Based on Images

PAYMENT REPRESENTATIVE NEEDED!

PAYMENT REPRESENTATIVE NEEDED!

You’ve seen the email subject lines: PAYMENT REPRESENTATIVE NEEDED! JOB ALERT! CONGRATULATION FROM: THE TREASURYLINE BOARD These are spammed emails claiming someone has discovered unclaimed money, found you a job, or needs someone in the US to receive a $10 Million dollar bank transfer. These are usually called 419 Scams…

Author:
jono2u
Category:
Continue Reading PAYMENT REPRESENTATIVE NEEDED!

Yet Another Vishing (phone phishing) Incident

Yet Another Vishing (phone phishing) Incident

Hello, you’ve reached _______ Bank: If you would like to check your balance, press 1. To be connected to an operator, press 2. To compromise your banking account, enter your 16 digit card number followed by the expiration date. No, I didn’t make up the name for this new type…

Author:
jono2u
Category:
Continue Reading Yet Another Vishing (phone phishing) Incident

Phishing by Phone

Phishing by Phone

Back in April, fellow blogger Matt was theorizing about a new type of phishing where the phish used a phone system to obtain your information rather than stealing it through a website. Well, it looks like that theory has become reality. Recently a phishing email was detected that didn’t ask…

Author:
jono2u
Category:
Continue Reading Phishing by Phone

Home users hosting phish

Home users hosting phish

Here is an example of some person’s home machine hosting a phish: Phishers often use automated scanners to find, exploit and load phishing kits onto compromised machines. As you can see, this phisher loaded five phishing kits on this one compromised system: two eBay phishes, one paypal phish, and two…

Author:
jono2u
Category:
Continue Reading Home users hosting phish

The self-defeating nature of phishing

The self-defeating nature of phishing

While spammers sell more the more they spam, the opposite is true for phishing. We know spam when we see it. Most of us don’t like it, but let’s face it, there are some people out there who buy what is advertised. If that were not the case, spammers would…

Author:
jcgrant
Category:
Continue Reading The self-defeating nature of phishing

Identity Theft Linked with Incontinence, “PayPal” says…

Identity Theft Linked with Incontinence, “PayPal” says…

Years back, spotting a phish was easy — simply look for typos. Today, not so easy — unless you get one like this, which will both prevent you from logging in and probably make you laugh:

Author:
jono2u
Category:
Continue Reading Identity Theft Linked with Incontinence, “PayPal” says…

Spamming the spammers?

Spamming the spammers?

Wired reports that Blue Security has escalated the fight against spam by sending mass quanities of email to the spammers themselves: Blue Security’s controversial method uses reverse spam, if you will, returning massive quantities of opt-out messages to companies it identifies as spammers. But the spammers seem to have found…

Author:
jono2u
Category:
Continue Reading Spamming the spammers?

Just when I thought I was smart a Chase Bank phish swims by

Just when I thought I was smart a Chase Bank phish swims by

Recently I started investigating checking account options at various banks. So when I just received an email from Chase Online Banking I thought nothing of clicking it. Immediately after, I realized I’d written to Citibank and that I never have even been to Chase’s website. Argggh. And, on my personal…

Author:
zonealarm
Category:
Continue Reading Just when I thought I was smart a Chase Bank phish swims by

Phish Stew

Phish Stew

Recently, I received an email from a favorite online store of mine, warning me that my order is on hold and that I need to call American Express to authenticate and validate the charge. In the email I was provided a phone number and a case number. It was presumably…

Author:
matthite
Category:
Continue Reading Phish Stew

Serious IE Address Bar Spoofing Vulnerability

Serious IE Address Bar Spoofing Vulnerability

Secunia is reporting about an IE address bar spoof that looks very serious. I’m sure phishing groups will include this in their phishing attack kits shortly. We’ll keep an eye out for phishers using this attack and post more information/update this blog as we see it. Details from the Secunia…

Author:
jono2u
Category:
Continue Reading Serious IE Address Bar Spoofing Vulnerability

Tips for Deciding if Email is Spam or Real: Yahoo mail examples

Tips for Deciding if Email is Spam or Real: Yahoo mail examples

Recently I’ve noticed a proliferation of spam messages coming to my Yahoo! mail that appear to come from a Yahoo! address – most often "info@yahoo.com." It’s easy to see why someone newish to the Internet might worry that these are official messages from Yahoo! In this posting, I’ve attached a…

Author:
zonealarm
Category:
Continue Reading Tips for Deciding if Email is Spam or Real: Yahoo mail examples

Tips for Deconstructing a Clever Phishing / Virus Email: Fake Yahoo! Greetings email

Tips for Deconstructing a Clever Phishing / Virus Email: Fake Yahoo! Greetings email

I’ve been the unlucky recipient of quite a lot of junk mail recently. Today I was nearly fooled into clicking a link in an alleged "Yahoo! Greetings" email, which likely would have launched a virus. In a quick glance, it occured to me the message must be from a friend…

Author:
zonealarm
Category:
Continue Reading Tips for Deconstructing a Clever Phishing / Virus Email: Fake Yahoo! Greetings email

58% of computer users receive one Phishing email per day

58% of computer users receive one Phishing email per day

IT Vibe reports that 58% of computer users receive one Phishing email per day. This information was gathered through a web poll of 600 business PC users. I get a lot of phishing emails myself, but I want to see them so I know who’s being phished and what the…

Author:
jono2u
Category:
Continue Reading 58% of computer users receive one Phishing email per day

Phishing site uses valid SSL cert; very legit looking spoof

Phishing site uses valid SSL cert; very legit looking spoof

Brian Krebs from the WP explains "one of the ‘best’ phishing attacks" he’s ever seen. This one is a very legit looking website, it claims to be related to the "Verified by Visa" program and uses a valid SSL certificate to appear even more realistic. Check out the screenshots as…

Author:
jono2u
Category:
Continue Reading Phishing site uses valid SSL cert; very legit looking spoof