现在坏人是我花时间去目标,直接,希望撤销我的品牌,我的博客为了达到我想要保护的人。而且不只是我的网络犯罪打击目标。周五,多个电子邮件我收到了一个骗子的Praveen Tapase抄送到NetSafe.org, Crime-Research.org, scam.org, 419甚至在伦敦金融城的一名军官。他们的意图?让我们打开附件(这是一个真正的工作吗?)和泄露商业秘密在我们追踪他们的欺诈和诈骗网站。我报告传回第一个电子邮件说我不主动打开附件,我可以告诉的蹩脚的写作和事实他雇佣了看不见的不接受电话采访时”(由独立的部分组成的,这些我可以读),这是一般提示这是一个欺诈。我的另一个同事发回更多信息匹配区号的电话号码电子邮件到一个不同的原产地,运行该邮件的正文scamomatic.com/(验证它是已知的欺诈),等等——所有有用的骗子想要磨练他们的欺骗。他们也针对我们的品牌。对我来说,6月份开始,当蒂姆•们的董事总经理卡尔卢旺达,“公司”在卢旺达的邮件问他是否可以用我的e-Security意识课程火车8 - 10的员工或客户的员工(很难说,从他的写作)。“不幸的是,”他写道,“我们的网络连接/带宽不是伟大的允许在线课程。我们可以找出一些东西,像下载的课程?”Right, Tim, I wrote back. Like as in I give you Power Points with my brand on them so that you can do whatever you want with them? No way. How about a PDF, I asked. (PDF file locking makes it harder to hack and inject malware into the PDF files.) And, I added, how do you propose to pay for them? Never heard from him again. What chilled me about this was the possible use of my brand to harm others. Imagine if this Tim guy took my courses and injected a keystroke logger installer into said courses, then started passing them around the Internet as Deb Radcliff's and the Security Consortium's online safety courses, free for use, blah blah and everyone who took them got their passwords to their online banking and other accounts hijacked. Averted, yes, because I could smell the rat. But what if one slips past me? Today, the bad guys tried just that and went directly to my OnlineCrimeBytes blog by posting a similar-sounding message as a comment in one of my博客在线工作部分诈骗。它说:“我收到一份工作的来信Crownjewel酒店马来西亚槟城。请让我知道这是一个诈骗邮件。把帕拉”——评论者名称:crownjewelhotel@……为你的保护)malaysia.com(字符删除。在雅虎联系——一个不相联系的电子邮件帐户。幸运的是,我对阅读评论神经质的提前通知所有其他电子邮件和删除它今天早上第一件事没有进一步检查附件。这给暂停是什么已成为罪犯个人足够专门花时间去了解他们的受害者——在这种情况下公众足够数据在互联网上轻松地找到信息。它也需要时间去跟踪正确的联系方式,直接联系他们,组成字母/帖子,声音就像这些公众人物都试图保护受害者。黑暗,我肯定他们开始自动化,出售列表的研究目标,只知道写激励这些目标点击一个链接,打开附件,或者发布一些坏在他们的网站上。 It's evident, given that these things are coming in duplicates now, same criminals, same targeted mailing list, different titled scam letter inside. The trend that security researchers have been talking about for a while now, targeted attacks, are just another way peddlers are gathering virtual information on very real people and using it against us.
获得个人
版权©2007 IDG通信公司。Raybet2