Social engineering
Social engineering
R E L A T E D   C O N T E N T

Free email newsletters




ADVERTISEMENT

Spammers take aim at Christmas

Study reveals junk mail tactics becoming ever more sophisticated

Robert Jaques, vnunet.com 10 Nov 2004
ADVERTISEMENT

Spammers are becoming increasingly clever and sophisticated in developing tactics to spread viruses, gain control of computers and encourage recipients to part with cash.

According to recently published research from content security firm Clearswift, phishing scams remain the spammers' most blatant use of social engineering.

As internet banking becomes more popular, phishing is becoming increasingly realistic in an attempt to exploit the lack of experience of many novice online bank users, Clearswift reported.

Although the study found that eBay cons are widespread, Citibank is still by far the biggest victim. Almost 50 per cent of mails in the 'scam' category are masquerading as communication from the US banking giant.

With Christmas around the corner, social engineering will come into its own, Clearswift warned. The firm predicts a rise in mails which specifically suggest the purchase of products as gifts for loved ones.

On a more sinister note, the report noted that the past two years have seen cyber-criminals use e-cards as a means of infiltrating Trojans onto desktops.

Employees are traditionally in a more relaxed mood as the festive season approaches, and organisations are advised to warn employees not to let their guard down.

The November Spam Index report noted that subject lines of 'Account number ###' or 'Your mortgage number ###' are also frequent, but rather less convincing, tricks.

Although these are far less likely to elicit money initially, confused email users might reply, thus confirming their email address and opening the door for a deluge of spam and viruses.

The Spam Index also shows that spammers have even turned to faith to instil credibility in their mails, offering finance from Christian organisations and using religious imagery.

An interesting new entrant onto the virtual market stall this month was identified as the Rolex watch, which now accounts for over five per cent of spam.

Yet the research found that software piracy is apparently not quite as acceptable. Spammers brazenly head up their mails with disclaimers such as 'Never use illegal office software' or 'It's illegal to use hacked Microsoft Office' to promote manifestly counterfeit products.

One group of particularly professional-looking mails draws on our inability to turn down freebies. These appear to offer expensive gifts such as a TV or laptop in return for sitting on a product review panel, quoting a plausible sounding name such as 'The Consumer Research Corp'.

Looking at the small print, these always come from an 'affiliate' of the company, making it harder to track down the sender's origin and reducing any legal link.

"It makes sense for spammers to target our weak spots," said Alyn Hockey, Clearswift's technical director.

"Although their success rate remains minimal, these constantly evolving tricks mean that organisations have to increasingly rely on robust email security software to filter out the rubbish."

See also:

Sexually explicit spam emailEmails in violation of the 'brown paper wrapper' rule  02 Dec 2004
As the volume of unsolicited email grows, filtering solutions must become more sophisticated to sort the wheat from the chaff  22 Nov 2004
Crackdown on piracySurprise in store for illegal downloaders, promises UK Film Council  22 Nov 2004
Beware pirated software this ChristmasYou'd better watch out, you'd better beware  17 Nov 2004
Email masquerades as official software updateBank suspend elements of its online service to protect customers  17 Nov 2004
Hackers quick to exploit bugsWriters of malicious software are becoming ever more attuned to the discovery of software flaws  11 Nov 2004
Norton AntiSpam 2004A useful tool for ridding your inbox of unwanted mail  10 Nov 2004
Internet content spoofing scamISA Server 2000 and Proxy Server 2.0 affected by internet spoofing scam  10 Nov 2004
419 scammer stole £2mDo not pass go, do not collect £2m  08 Nov 2004
New phishing techniqueJust open an email and you could be the next victim, warns security firm  04 Nov 2004
Fraudsters are trying to recruit UK computer users as money launderers  03 Nov 2004
Bogus Yahoo accountsJunk mail fraudsters dupe users into setting up bogus Yahoo accounts  01 Nov 2004
Can-Spam lawsuitsSoftware giant joins AOL, EarthLink and Yahoo!  29 Oct 2004
Cyber security mythsCommonly held misconceptions highlight problems  27 Oct 2004
Rolex watch spamSecurity firm reports 300 per cent rise in designer watch spam  26 Oct 2004

All Hacking

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
London, United Kingdom | BP
Project Manager - £ Competitive - London About BP Our business is the exploration, production, refining, trading and distribution of energy. This is what we do, and we do it on a truly global scale. ... more >
Solihull, United Kingdom | Enzen Global Limited
Business Consultant - £35,000 - £40,000 - Solihull We are in need of a Business Consultant with strong analytical skills and a penchant for learning the domain knowledge of the Utilities sector (Gas industry in ... more >
London, United Kingdom | BP
 IT Leader -£ Competitive - London About BP Our business is the exploration, production, refining, trading and distribution of energy. This is what we do, and we do it on a truly global scale. With ... more >
Hertfordshire, United Kingdom | Tesco.com
Solution Architect Lead Hertfordshire Who's behind the world's most successful online retailer?Just over 10 years ago we started Tesco.com (aka Dotcom). Today, we've an incredible 750,000 active customers and sales at just under £1 billion. We ... more >
More job opportunities