On The Insider: Britney's Bikini-Clad Top 10
BNET Business Network:
BNET
TechRepublic
ZDNet

By Dawn Kawamoto
Posted on ZDNet News: Aug 11, 2005 2:48:00 PM

Phishers have added a new lure to their tackle boxes: e-mails that ask people to fax sensitive information to bogus security investigators.

In a new scam, attackers are sending e-mail warnings that appear to come from PayPal, security specialist Sophos said Wednesday. These e-mails say that someone tried to reset the recipient's password and asks him or her to participate in an investigation.

The e-mails direct people to a Microsoft Word document hosted on a Web site and urges them to download the form, fill it out, and fax it to a toll-free number, Sophos said. The form asks for credit card information.

The new tactic comes as people are becoming more suspicious of e-mails asking them to fill out sensitive information online, said Graham Cluley, a senior technology consultant for Sophos.

"We've seen a few attempts of this in the last few days, where phishers are trying out a new technique with people who have learned their lesson about filling out forms on a Web site," Cluley said. "They're hoping people will feel it's safer to fax back a form."

"It seems like a dumb way for the phishers to operate," Cluley added. "The authorities can easily track the phone number. But what isn't clear is whether they will get a (toll-free) number and then quickly dump it, or (whether they've) acquired the number using a false ID, or can have the calls transferred to a satellite phone somewhere outside of America."

E-mail-based phishing attempts may be getting less effective, though. As with other types of unsolicited mail, people are increasingly glossing over these messages as they troll through their inboxes, Cluley said. Phishers, as a result, are likely finding their mail-based efforts less fruitful.

"Trojans and worms are becoming more popular, because the information can be gleaned surreptitiously," Cluley said. "It's the way the trend is going."

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 25 Talkback(s)
Phishers and dumb
People aren't dumb - people are overwhelmed with data and change.

Scammers/phishers are working overtime to collect your sensitive data; some people just don't recognize that they're getting p... (Read the rest)
Posted by: mt-si-guy Posted on: 08/20/05 You are currently: a Guest | | Terms of Use
I'm safe  NonZealot | 08/11/05
Microsoft doesn't make fax machines. (n/t)  Grayson Peddie | 08/11/05
Funny  Patrick Jones | 08/11/05
LLOOLL, thank goodness my linux based fax is secure(nt)  Valis Keogh | 08/11/05
But what if...  Loverock Davidson | 08/11/05
Holy FaxMan ... Quickly to the FaxMobile (nt)  toomuchgreeatea@... | 08/11/05
ok, so if you dont blame the end user here...  linuxoverwindows | 08/12/05
Hmm...a phishing scheme...  doctormoriarty | 08/11/05
I've Sent 200 Faxes To Nigeria  itanalyst | 08/11/05
The Solution to this Issue  coffeenite | 08/11/05
Why waste your own paper.  Patrick Jones | 08/11/05
Because ...  coffeenite | 08/11/05
You can trace fax machine too  voska | 08/12/05
Yes, and thus the reason for ...  coffeenite | 08/12/05
digital storage  linuxoverwindows | 08/12/05
This is an I.Q. test, right? (NT)  Update victim | 08/11/05
I've seen the paypal scam  CobraA1 | 08/11/05
One of the more believable scams  rholley13 | 08/17/05
dumb phisers, dumber victims. ...  michael_t | 08/11/05
Phishers and dumb  mt-si-guy | 08/20/05
A sucker every minute!  Reverend MacFellow | 08/12/05
It's not the blade, it's the razor  OldPgmr | 08/12/05
And the Faxmobile is not real either?  Gonna_Snap | 08/12/05
FAX Scam  iom88@... | 08/14/05
Toll free is fun  Neil Parks | 08/18/05

What do you think?

advertisement
Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
advertisement

White Papers, Webcasts, and Downloads

SmartPlanet

Click Here