<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Social Threat &#124; Who said social meant secure? &#187; Phishing</title>
	<atom:link href="http://socialthreat.com/tag/phishing/feed/" rel="self" type="application/rss+xml" />
	<link>http://socialthreat.com</link>
	<description>Who said social meant secure?</description>
	<lastBuildDate>Sat, 18 Jun 2011 03:07:30 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=abc</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>More Phishing Attacks…</title>
		<link>http://socialthreat.com/2011/04/27/more-phishing-attacks/</link>
		<comments>http://socialthreat.com/2011/04/27/more-phishing-attacks/#comments</comments>
		<pubDate>Wed, 27 Apr 2011 19:57:02 +0000</pubDate>
		<dc:creator>Davezilla</dc:creator>
				<category><![CDATA[Scam Spotting]]></category>
		<category><![CDATA[Phishing]]></category>

		<guid isPermaLink="false">http://socialthreat.com/?p=702</guid>
		<description><![CDATA[
			
				
			
		
There&#8217;s a great writeup on the Bobijou phishing scam over at Purple Car.


No related posts


No related posts.]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fsocialthreat.com%2F2011%2F04%2F27%2Fmore-phishing-attacks%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fsocialthreat.com%2F2011%2F04%2F27%2Fmore-phishing-attacks%2F&amp;style=normal&amp;service=bit.ly&amp;hashtags=Phishing" height="61" width="50" /><br />
			</a>
		</div>
<p>There&#8217;s a great writeup on the <a href="http://www.purplecar.net/2011/04/another-clever-phish-attempt-bobijou-inc/">Bobijou phishing scam</a> over at <a href="http://www.purplecar.net/">Purple Car</a>.</p>


<p>No related posts.</p>]]></content:encoded>
			<wfw:commentRss>http://socialthreat.com/2011/04/27/more-phishing-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Scam Spotting, No. 5: Who Always Look Into My Profile??</title>
		<link>http://socialthreat.com/2010/03/22/scam-spotting-no-5-who-always-look-into-my-profile/</link>
		<comments>http://socialthreat.com/2010/03/22/scam-spotting-no-5-who-always-look-into-my-profile/#comments</comments>
		<pubDate>Mon, 22 Mar 2010 11:00:56 +0000</pubDate>
		<dc:creator>Davezilla</dc:creator>
				<category><![CDATA[Scam Spotting]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[Phishing]]></category>

		<guid isPermaLink="false">http://socialthreat.com/?p=393</guid>
		<description><![CDATA[
			
				
			
		
Who Always Look Into My Profile??
This is a poorly written version of the common, &#8220;Who is checking my profile?&#8221; scam. In fact, except for the poor English in the headline, it&#8217;s identical.
Here are the attributes to look out for:

The image is set up like the &#8220;Who is checking my profile?&#8221; scam.
The app name does not 


No related posts.]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fsocialthreat.com%2F2010%2F03%2F22%2Fscam-spotting-no-5-who-always-look-into-my-profile%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fsocialthreat.com%2F2010%2F03%2F22%2Fscam-spotting-no-5-who-always-look-into-my-profile%2F&amp;style=normal&amp;service=bit.ly&amp;hashtags=Facebook,Phishing" height="61" width="50" /><br />
			</a>
		</div>
<h2>Who Always Look Into My Profile??</h2>
<p><div id="attachment_394" class="wp-caption alignleft" style="width: 310px"><a href="http://socialthreat.com/wp-content/uploads/2010/03/scam-5.jpg"><img src="http://socialthreat.com/wp-content/uploads/2010/03/scam-5-300x215.jpg" alt="" title="Facebook Scam: Who Always Look Into My Profile??" width="300" height="215" class="size-medium wp-image-394" /></a><p class="wp-caption-text">Facebook scam: <br />Who Always Look Into My Profile??<br />Click image for full size version</p></div>This is a poorly written version of the common, <a href="http://socialthreat.com/2010/03/16/scam-spotting-no-1/">&#8220;Who is checking my profile?&#8221; scam</a>. In fact, except for the poor English in the headline, it&#8217;s identical.</p>
<p>Here are the attributes to look out for:</p>
<ol>
<li>The image is set up like the <a href="http://socialthreat.com/2010/03/16/scam-spotting-no-1/">&#8220;Who is checking my profile?&#8221; scam</a>.</li>
<li>The app name does not match the headline and multiple friends have been tagged at random.</li>
<li>The &#8220;Try it, really works!&#8221; comment is present. Again.</li>
<li>The album poster is not the person who owns the profile it appears on.</li>
</ol>
<blockquote class="tip"><p><strong>TIP:</strong> If you see that you’ve been tagged in a photo, before clicking, see if it’s a friend of yours. If not, do not click. Ignore. If it is a friend, click through only to see the image. If it’s not a photo of you, leave the page or report it. It’s likely this scam, or one similar.</p></blockquote>


<p>No related posts.</p>]]></content:encoded>
			<wfw:commentRss>http://socialthreat.com/2010/03/22/scam-spotting-no-5-who-always-look-into-my-profile/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twitter goes after phishing and malware</title>
		<link>http://socialthreat.com/2010/03/15/twitter-goes-after-phishing-and-malware/</link>
		<comments>http://socialthreat.com/2010/03/15/twitter-goes-after-phishing-and-malware/#comments</comments>
		<pubDate>Mon, 15 Mar 2010 12:00:09 +0000</pubDate>
		<dc:creator>Scott Vowels</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Twitter]]></category>

		<guid isPermaLink="false">http://socialthreat.com/?p=307</guid>
		<description><![CDATA[
			
				
			
		
Last week Twitter announced that they had installed a service that will inspect some of the URLs that are submitted through its systems.  The issue they&#8217;re trying to solve is primarily in shortened URLs which hide the destination address.  It&#8217;s been used by bad guys to hide malicious destinations.  Dave mentioned this technique a couple 


No related posts.]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fsocialthreat.com%2F2010%2F03%2F15%2Ftwitter-goes-after-phishing-and-malware%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fsocialthreat.com%2F2010%2F03%2F15%2Ftwitter-goes-after-phishing-and-malware%2F&amp;style=normal&amp;service=bit.ly&amp;hashtags=malware,Phishing,Twitter" height="61" width="50" /><br />
			</a>
		</div>
<p>Last week Twitter announced that they had installed a service that will inspect some of the URLs that are submitted through its systems.  The issue they&#8217;re trying to solve is primarily in shortened URLs which hide the destination address.  It&#8217;s been used by bad guys to hide malicious destinations.  <a href="http://socialthreat.com/2010/02/22/a-new-phishing-scam-on-twitter/">Dave mentioned</a> this technique a couple weeks ago and gave some great tips on how to avoid the being a victim.  Maybe the Twitter security crew was listening?</p>
<p>In the <a href="http://blog.twitter.com/2010/03/trust-and-safety.html">announcement</a>, Twitter mentions that they&#8217;ll focus on direct messages and email notifications about direct messages.  I applaud the effort and hope it&#8217;s effective.  I wanted to point this out and give Twitter props for working on the problem.  We&#8217;ll have to see how effective it is but it&#8217;s great to see an attempt toward progress.</p>
<p>Hopefully we&#8217;ll see more news like this from other social media providers.</p>


<p>No related posts.</p>]]></content:encoded>
			<wfw:commentRss>http://socialthreat.com/2010/03/15/twitter-goes-after-phishing-and-malware/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hundreds of Twitter accounts sending out spam</title>
		<link>http://socialthreat.com/2010/03/08/hundreds-of-twitter-accounts-sending-out-spam/</link>
		<comments>http://socialthreat.com/2010/03/08/hundreds-of-twitter-accounts-sending-out-spam/#comments</comments>
		<pubDate>Mon, 08 Mar 2010 14:15:55 +0000</pubDate>
		<dc:creator>Davezilla</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[API]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Twitter]]></category>

		<guid isPermaLink="false">http://socialthreat.com/?p=273</guid>
		<description><![CDATA[
			
				
			
		
Looks as though a third party app was hit for a phishing scam that has allowed the perps to appear to take over hundreds of Twitter accounts. According to Mashable, since all of the spammed tweets mention coming from the API, the accounts themselves are probably still OK. It&#8217;s the app they&#8217;ve allowed access to 


No related posts.]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fsocialthreat.com%2F2010%2F03%2F08%2Fhundreds-of-twitter-accounts-sending-out-spam%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fsocialthreat.com%2F2010%2F03%2F08%2Fhundreds-of-twitter-accounts-sending-out-spam%2F&amp;style=normal&amp;service=bit.ly&amp;hashtags=API,Phishing,Twitter" height="61" width="50" /><br />
			</a>
		</div>
<p>Looks as though a third party app was hit for a phishing scam that has allowed the perps to appear to take over hundreds of Twitter accounts. <a href="http://mashable.com/2010/03/06/twitter-accounts-hacked/">According to Mashable</a>, since all of the spammed tweets mention coming from the API, the accounts themselves are probably still OK. It&#8217;s the app they&#8217;ve allowed access to that&#8217;s been compromised.</p>
<blockquote class="tip"><p><strong>TIP:</strong> Always think twice before giving an app access to your account. Do your friends use it? Have they had problems? When in doubt, Google the app. See if it&#8217;s legitimate <em>before</em> you click allow.</p></blockquote>


<p>No related posts.</p>]]></content:encoded>
			<wfw:commentRss>http://socialthreat.com/2010/03/08/hundreds-of-twitter-accounts-sending-out-spam/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hints, Hacks and Helps</title>
		<link>http://socialthreat.com/2010/02/25/hints-hacks-and-helps/</link>
		<comments>http://socialthreat.com/2010/02/25/hints-hacks-and-helps/#comments</comments>
		<pubDate>Thu, 25 Feb 2010 12:57:08 +0000</pubDate>
		<dc:creator>Davezilla</dc:creator>
				<category><![CDATA[Tips and Tutorials]]></category>
		<category><![CDATA[DRM]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[PDF]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[video]]></category>
		<category><![CDATA[YouTube]]></category>

		<guid isPermaLink="false">http://socialthreat.com/?p=123</guid>
		<description><![CDATA[
			
				
			
		

You can remove passwords from edit-restricted PDFs. This article shows you how to defeat the PDF DRM.
How to edit your video online for free or cheap
The Automation Labs Facebook security scare. Yet another chain message tripping out folks on Facebook.
How to avoid YouTube scams
Spear Phishers target military



No related posts


No related posts.]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fsocialthreat.com%2F2010%2F02%2F25%2Fhints-hacks-and-helps%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fsocialthreat.com%2F2010%2F02%2F25%2Fhints-hacks-and-helps%2F&amp;style=normal&amp;service=bit.ly&amp;hashtags=DRM,Facebook,PDF,Phishing,video,YouTube" height="61" width="50" /><br />
			</a>
		</div>
<ol>
<li>You can remove passwords from edit-restricted PDFs. <a href="http://www.macosxhints.com/article.php?story=20100220152525207">This article shows you how to defeat the PDF DRM</a>.</li>
<li><a href="http://www.10000words.net/2008/03/online-video-editing-made-simple-cheap.html">How to edit your video online for free or cheap</a></li>
<li><a href="http://www.sophos.com/blogs/gc/g/2010/02/03/automation-labs-facebook-security-scare/">The Automation Labs Facebook security scare</a>. Yet another chain message tripping out folks on Facebook.</li>
<li>How to <a href="http://youraccountseller.com/2009/11/26/avoiding-youtube-scams/">avoid YouTube scams</a></li>
<li><a href="http://www.af.mil/news/story.asp?id=123190411">Spear Phishers target military</a></li>
</ol>


<p>No related posts.</p>]]></content:encoded>
			<wfw:commentRss>http://socialthreat.com/2010/02/25/hints-hacks-and-helps/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>A new phishing scam on Twitter?</title>
		<link>http://socialthreat.com/2010/02/22/a-new-phishing-scam-on-twitter/</link>
		<comments>http://socialthreat.com/2010/02/22/a-new-phishing-scam-on-twitter/#comments</comments>
		<pubDate>Mon, 22 Feb 2010 18:56:30 +0000</pubDate>
		<dc:creator>Davezilla</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Scam]]></category>
		<category><![CDATA[Twitter]]></category>

		<guid isPermaLink="false">http://socialthreat.com/?p=35</guid>
		<description><![CDATA[
			
				
			
		
From Mashable today:
&#8220;A Twitter phishing attack is spreading rapidly today, attempting to obtain Twitter logins via Direct Messages. If you receive a message reading “lol, is this you”, and linking to a site called “bzpharma”, do not click the link.&#8221;
Phishing scams are on the rise and Twitter and Facebook will likely bear the brunt of 


No related posts.]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fsocialthreat.com%2F2010%2F02%2F22%2Fa-new-phishing-scam-on-twitter%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fsocialthreat.com%2F2010%2F02%2F22%2Fa-new-phishing-scam-on-twitter%2F&amp;style=normal&amp;service=bit.ly&amp;hashtags=Facebook,Phishing,Scam,Twitter" height="61" width="50" /><br />
			</a>
		</div>
<p>From <a href="http://mashable.com/2010/02/20/twitter-phishing-attack/">Mashable</a> today:</p>
<blockquote><p>&#8220;A Twitter phishing attack is spreading rapidly today, attempting to obtain Twitter logins via Direct Messages. If you receive a message reading “lol, is this you”, and linking to a site called “bzpharma”, do not click the link.&#8221;</p></blockquote>
<p>Phishing scams are on the rise and Twitter and Facebook will likely bear the brunt of them. Please, always check the links first. There are a few ways to do this:</p>
<ol>
<li>Always let your mouse hover over the link before clicking it. This way, you can see where the link is going before you click on it. If it&#8217;s a pharmaceutical site, and you&#8217;re not in the healthcare profession, it&#8217;s probably a scam.</li>
<li>On the Firefox and Chrome browsers, you can install a handy plugin called, <a href="https://addons.mozilla.org/en-US/firefox/addon/10297">Bit.ly Preview</a>. This plugin shows the full URL of shortened links on Twitter. While not all links are shortened using Bit.ly, most are, and Bit.ly is the default URL shortener of Twitter.</li>
</ol>
<p>Have you encountered any phishing scams on Twitter or Facebook? How did you resolve them?</p>


<p>No related posts.</p>]]></content:encoded>
			<wfw:commentRss>http://socialthreat.com/2010/02/22/a-new-phishing-scam-on-twitter/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

