PDA

View Full Version : New scam adds live chat to phishing attack



_asylum_
September 16th, 2009, 06:26 PM
everything you need to know willl be in the link be careful i know there has been things in the past like this but thisone looks real.


Online scammers have created a phishing site masquerading as a U.S.-based bank that launches a live chat window where victims are tricked into revealing more information, researchers at the RSA FraudAction Research Team said on Wednesday.
After a user accesses the phishing site, the chat window messages come through the browser and not via a typical instant messenger application, RSA said in a blog post.
The chat window is displayed if the log-in credentials are typed in or if any other link on the page is clicked, said Sean Brady, an online fraud expert at RSA.
The scammer claims to be from the bank's fraud department and says that the bank is requiring members to validate their accounts, asking for additional information such as name, phone number, and e-mail address, according to screenshots. That information could be used to get access to accounts and money online or over the phone.
The scammers are using the open-source Jabber IM protocol to manage the one-on-one chat, RSA said, declining to identify the bank involved in the scam.
Meanwhile, the "chat-in-the-middle" phishing attack, as RSA has dubbed it, is being hosted on a fast flux network that criminals pay to use that hosts malicious Web sites and other tools for online scams. Such networks are comprised of numerous computers that can be used to serve up the phishing page if one site gets shut down, which makes stopping such attacks difficult, Brady said.
So far, RSA said it has only witnessed one instance of the attack and has seen no evidence that stolen credentials are being used to log in to compromised accounts in real time.
"If this proves to be successful I would expect the fraudsters who launched this attack and copycats to use it elsewhere," Brady said. He said he also expects that the criminals will sell tool kits to people who are less technically savvy to use to launch similar attacks.
http://i.i.com.com/cnwk.1d/i/bto/20090916/RSAPhishingChat.png


heres a link to more info




http://news.cnet.com/8301-27080_3-10355069-245.html?part=rss&subj=news&tag=2547-1_3-0-20

Bodzilla
September 18th, 2009, 05:50 AM
i wouldnt trust this link if i was you. ~locked~

SnaFuBAR
September 18th, 2009, 06:38 AM
Unlocked. Zilla, it's just cnet, not some shady site.

Heathen
September 18th, 2009, 04:18 PM
Could have added more information.
For you lazies...
Online scammers have created a phishing site masquerading as a U.S.-based bank that launches a live chat window where victims are tricked into revealing more information, researchers at the RSA FraudAction Research Team said on Wednesday.
After a user accesses the phishing site, the chat window messages come through the browser and not via a typical instant messenger application, RSA said in a blog post.
The chat window is displayed if the log-in credentials are typed in or if any other link on the page is clicked, said Sean Brady, an online fraud expert at RSA.
The scammer claims to be from the bank's fraud department and says that the bank is requiring members to validate their accounts, asking for additional information such as name, phone number, and e-mail address, according to screenshots. That information could be used to get access to accounts and money online or over the phone.
The scammers are using the open-source Jabber IM protocol to manage the one-on-one chat, RSA said, declining to identify the bank involved in the scam.
Meanwhile, the "chat-in-the-middle" phishing attack, as RSA has dubbed it, is being hosted on a fast flux network that criminals pay to use that hosts malicious Web sites and other tools for online scams. Such networks are comprised of numerous computers that can be used to serve up the phishing page if one site gets shut down, which makes stopping such attacks difficult, Brady said.
So far, RSA said it has only witnessed one instance of the attack and has seen no evidence that stolen credentials are being used to log in to compromised accounts in real time.
"If this proves to be successful I would expect the fraudsters who launched this attack and copycats to use it elsewhere," Brady said. He said he also expects that the criminals will sell tool kits to people who are less technically savvy to use to launch similar attacks.
http://i.i.com.com/cnwk.1d/i/bto/20090916/RSAPhishingChat.png

_asylum_
September 18th, 2009, 04:29 PM
my bad yall i needed to put more info i forgot that i was talking about this new thing that has a virus in it then i give everyone a link to go look lol well next time ill put as much info on it as i can and this really is ok the link that is posted here


i wouldnt trust this link if i was you. ~locked~


no its fine

Heathen
September 18th, 2009, 04:41 PM
My bad, y'all. I needed to put more info. I forgot that I was talking about this new thing that has a virus in it, then I give everyone a link to go look. lol. Well next time I'll put as much info on it as I can, and this really is ok. The link that is posted here.

You need to clean up your posts, but otherwise, welcome to the forum.

_asylum_
September 18th, 2009, 08:12 PM
You need to clean up your posts, but otherwise, welcome to the forum.



thanks man


my bad yall i needed to put more info i forgot that i was talking about this new thing that has a virus in it then i give everyone a link to go look lol well next time ill put as much info on it as i can and this really is ok the link that is posted here




no its fine


im just new to all this

Cortexian
September 18th, 2009, 08:28 PM
im just new to all this
Use the "http://www.modacity.net/forums/styles/source/buttons/edit.gif" button if you have the last post in a thread and want to add addition information.

Welcome to the forums!

_asylum_
September 18th, 2009, 08:49 PM
Use the "http://www.modacity.net/forums/styles/source/buttons/edit.gif" button if you have the last post in a thread and want to add addition information.

Welcome to the forums!


thanks ill fix it up when i get the chance