Skip to main content

Beware of new Facebook spam


Have you been hit like millions of Facebook users by a new phishing scam that can result in crashing your computers or mobile phones and steal your passwords? If not, beware, do not open the files ending with “.at” or “.be”.

The phishing scam is being run through the spam messages which steals the sensitive information of the Facebook users.

In the attack, the messages are circulated with a subject line of “Hello” and a prompt to check out “areps.at” or other URLs ending in “.at”.

The mails with the subject line “Look at This” and links like -- goldbase.be, greenbuddy.be, silvertag.be, picoband.be -- leads to some malicious Web sites, which if visited, could secretly download malware onto computers through a “drive-by download” application.

The URL connectivity, before being blocked directs the visitor to a fake Facebook page and the mail ID and password are stolen as soon as it is logged-in again.

According to the All Facebook blog.Facebook, the password in such cases should be changed immediately and the same message should be sent across to one’s Facebook acquaintance.

“Whoever is behind the scam has been steadily amassing a large number of e-mail addresses and passwords over the past few weeks,” the blog says.

Though, Facebook spokesman Barry Schnitt said: “The impact of this attack or the previous ones are not widespread and only impacted a tiny fraction of a per cent of users.

“We’ve been updating our monitoring systems with information gleaned from the previous attacks so that each new attack is detected more quickly,” he said.

The site has blocked links to the new phishing sites from being shared on Facebook and has added them to the block lists of the major browsers.

The social networking site is working with partners to have the sites taken down completely, he said adding Facebook is also cleaning up phony messages and wall posts and resetting the passwords of affected users.

“We believe the bad guys here are phishing an account and then trying those credentials on webmail providers,” Schnitt said.

So, for example, if a user is compromised on Facebook and has the same login and ID password for their Gmail, the attacker may be able to intercept the Facebook password reset and compromise the account again in the future, he added. – (Press Trust of India)

Comments

Popular posts from this blog

Ukrainians injured as police dismantle Kiev 'tent city'

At least 10 demonstrators have been injured in clashes with Ukrainian police and another 100 detained in the capital Kiev after authorities began dismantling a makeshift "tent city" protesting against corruption. The tent city was set up in October by supporters of Mikheil Saakashvili, a former president of Georgia who has become an opposition politician in Ukraine. Saakashvili, a critic of corruption in Ukraine, was deported to Poland in February. He said he was "kidnapped" by Ukrainian authorities and removed from the country against his will. Andriy Kryshchneko, police chief of police, said at the camp on Saturday that "two court decisions" allowed authorities to search and dismantle the camp. Police said that explosives and other weapons were found at the scene

PayPal wants report from Sri Lanka: Sampath, three other banks to introduce service

Though the Central Bank of Sri Lanka (CBSL) was first to introduce PayPal to Sri Lanka through the Sampath Bank, it is revealed that three other banks too have been now earmarked by the CBSL. A senior official from the CBSL told AdaderanaBiz, “We were to first introduce PayPal through the Sampath Bank. However, we now plan to introduce this service to the country through four banks. We also plan to gradually involve the rest of the banks in the country.” While the CBSL is discussing with the PayPal branch in India to introduce the service to Sri Lanka, PayPal’s Indian arm has reportedly requested a report on Sri Lanka’s exports. The senior CBSL official told AdaderanaBiz that they would be submitting such a report and hence the introduction of PayPal to Sri Lanka would face a slight delay. Though cash cannot be remitted to Sri Lanka through the world renowned PayPal money transfer service sending money from Sri Lanka is possible even now.

ASSIGNING OF PREFERENTIAL NUMBERS FOR LG POLLS COMPLETED

The Election Secretariat announced that assigning preferential numbers for candidates of the Local Government election to be held for 67 bodies has been completed. Preparations are currently underway to hold the polls under the 2010 electoral register, Additional Elections Commissioner W.P. Sumanasiri said. The electoral register of the year 2010 is scheduled to be certified on June 31.