With cyber Monday comes an FBI warning against spam containing malware and phishing attempts that appear to be greeting cards and ads for shopping bargains.
The goal is theft of money and personal information, according to Shawn Henry, the assistant director of the bureau's cyber division.
E-mails attempt to lure victims to dummy e-commerce sites in hopes of gleaning credit card numbers and passwords, the FBI says. By mimicking legitimate sites, they lull unsuspecting shoppers into giving up the information as they make what they think are legitimate purchases.
The e-mails look real, often containing legitimate company logos and live links.
In some cases criminals direct users to genuine Web sites, but trigger popups over them to capture personal information that they use to run up credit-card bills and drain bank accounts, according to the FBI.
The information entered will most likely be sold to other criminals who will exploit them for cash and merchandise, the bureau says.
Greeting card scams come in the form of e-mails urging recipients to click on a link to read a greeting card that has been sent to them. When they do, they are directed to a site where malicious software is automatically downloaded to their machines, the FBI says.
Other attacks come in the form of e-mails informing recipients that one of their accounts has a problem and to click on a link to clear it up. When they do, they are taken to a fraudulent site where they are asked for account numbers and PINs.
One scam is in the form of a survey, at the end of which participants are asked for account information so funds can be transferred to them in appreciation for their help.
FBI tips to avoid becoming a victim:
- Do not respond to spam.
- Do not click on links contained within unsolicited e-mail.
- Be cautious with e-mail containing attachments and open only those from known senders.
- Don't supply personal information via e-mail surveys.
- Compare the links in e-mails to the links they connect to in order to determine if they match. If they don't, leave the site.
- Log on to Web sites that are advertised in unsolicited e-mail rather than connecting via links in e-mails.
- Contact the business that purportedly sent the e-mail to verify if it is genuine.
The FBI urges victims of cyber crimes to report them to the Internet Crime Complaint Center at www.ic3.gov.
Latest on Social Engineering
- Online ad groups release new behavioral ad principles
- Michael Jackson's death spawns malware, more scams
- Fraudsters try to scam security expert on eBay
- Accused Facebook spammer could face jail time
- CommBank enlists feds to kill fraud ring
- Hacker: I broke into Twitter
- Phishers hit Facebook with scam messages
- Optus flags participation in Net filtering trial
- Researcher wants hacker groups hounded mercilessly
- Botnets: 4 Reasons It's Getting Harder to Find and Fight Them
Security Essentials
- Good security in recessionary times
- Security ROI: Fact or Fiction?
- NetWitness releases free version of security software
- Study: critical infrastructure often under cyberattack
- Crooks can make $5M a year shilling fake security software
- Sun exec: IT security should follow business needs
- Clumsy staff more dangerous than hackers: survey
- When the watchdog is the underdog
- Mafiaboy grows up; a hacker seeks redemption
- Ouch! Security pros' worst mistakes
TechWorld Jobs (beta)
Recent Jobs
TechWorld Blogs
-

TalkingTech
The view from the top of IT with TechWorld Editor Rodney Gedda
-

Entrenched
Cooking up better code, IDG's developers reveal some of their secrets
-

Broadband Voice
Darren Pauli digs in from the front line of Australia's broadband battleground
Recent blog posts
- Nokia remains 'open' to Android amid Symbian renaissance
- KDE's Seigo gives sneak peek at version 4.3
- Was the iPhone 3G S worth queuing up for?
- Has Oracle started its mammoth technology consolidation?
- iPhone 3.0: the detail is the process, not the features
- TechWorld.com.au goes mobile
- Should Dell buy Palm? Stranger things have happened
- A big week for Linux: is user friendliness finally in sight?
- Apple, Android rain on Palm's Pre parade
- The clone attack is becoming unstoppable
Recent comments
- State your Prediction and
11 hours 6 min ago - Yes I have seen them.Actually
11 hours 58 min ago - PSP Nintendo
1 day 3 hours ago - Interesting report. You were
1 day 23 hours ago - Are you sure it is in Sydney?
2 days 10 hours ago - The mobile market has
2 days 18 hours ago - Great news.
Sms spam should
3 days 15 hours ago - now what am I gonna do with
3 days 18 hours ago - ozlotteries.com not ozlotto.cm
3 days 19 hours ago - OLAT Release
4 days 5 hours ago - and i was sure i would win...
4 days 10 hours ago - Hi SolidRadicle,
I am looking
4 days 10 hours ago - Not if I can help it
4 days 10 hours ago - Ozlotto Tips Scam
4 days 14 hours ago - Great post.
It's very
4 days 14 hours ago - Excellent review! I'm glad
6 days 12 hours ago - iTunes Helper
1 week 1 day ago - Update the link to OrangeHRM web site
1 week 2 days ago - Very informative article
1 week 2 days ago - Google Chrome is still being directed to bing instead of google
1 week 2 days ago










Comments
Post new comment