Going after the Big Phish

6 replies
Phishers have become more ingenious recently. They've launched some fairly sophisticated and precisely targeted attacks aimed directly at ESPs (autoresponder and list hosting companies, usually). The emails appear to be hand-crafted, and would fool a lot more people than most bulk phishing efforts.

You can read a bit about them at Return Path's blog: In the Know

The payload for this particular bit of nasty includes a keylogger and a "back door," allowing the controller to steal passwords and download additional programs to the compromised machine or run anything on it arbitrarily.

It also contains a file that disables most anti-virus software.

Nasty stuff.


Paul
#big #phish
  • Profile picture of the author SeoNumber9
    will this cause problem if i'm using aweber?
    {{ DiscussionBoard.errors[2934791].message }}
    • Profile picture of the author Paul Myers
      will this cause problem if i'm using aweber?
      I'm not sure. Aweber suffered a large data leak recently, but I don't know if this phish was the attack vector or not.


      Paul
      Signature
      .
      Stop by Paul's Pub - my little hangout on Facebook.

      {{ DiscussionBoard.errors[2934802].message }}
  • Profile picture of the author Brad Gosse
    Makes me happy to be on a Mac which is less likely to be targeted
    Signature
    {{ DiscussionBoard.errors[2935092].message }}
  • Profile picture of the author Paul Myers
    Brad,

    Maybe. That doesn't help in a large production environment if the majority of the company uses a Windows OS. Not to mention that, with things this sophisticated, it's not beyond reason to expect them to start targeting the Mac users with OSX-specific malware.

    At some point, the overconfidence of Mac users in this regard is going to bite them.


    Paul
    Signature
    .
    Stop by Paul's Pub - my little hangout on Facebook.

    {{ DiscussionBoard.errors[2935104].message }}
    • Profile picture of the author Brad Gosse
      Originally Posted by Paul Myers View Post

      Brad,

      Maybe. That doesn't help in a large production environment if the majority of the company uses a Windows OS. Not to mention that, with things this sophisticated, it's not beyond reason to expect them to start targeting the Mac users with OSX-specific malware.

      At some point, the overconfidence of Mac users in this regard is going to bite them.


      Paul
      I agree about the overconfidence but for now, we dance LOL
      Signature
      {{ DiscussionBoard.errors[2935114].message }}
    • Profile picture of the author Jill Carpenter
      We Mac users pay more because we have a big secret.

      Secretly hidden in the cost of our computers is the purchase of 2 windows models. This is to keep the appearance up that more people are on windows.



      I've received the old "your facebook password needs updating" and other fun mails lately. They are convincing - even to someone who has seen a lot of this.

      I now believe virtually nothing I get in the email and don't like anything with a click in it.
      Signature

      "May I have ten thousand marbles, please?"

      {{ DiscussionBoard.errors[2935132].message }}

Trending Topics