Posts

Showing posts with the label spam

User Account Timeline Manipulation overlooked by Facebook!

Image
A Polish security researcher & analyst with the Twitter username ‘Lasq’ revealed that the Social Media Giant, Facebook is afflicted by  Clickjacking Bug , which automatically add  spam links  on the Facebook user’s wall. The security professional discovered a technique used by miscreant & used Bug bounty program to submit the report to the company. According to the resources, the ongoing Spam Campaign on Facebook seems to have a prolonged life as Facebook has denied dismissing Clickjacking Bug because it does not alters the state of the account. Behavior of Clickjacking Bug The Polish security expert began to analyze the Spam Campaign on Facebook after he observed many of his friends broadcasted a link to a website with amusing pictures. The Facebook users had to confirm that they were at least 16 years old before they could access humorous content. Once the user clicks on the button, he will be  redirected to a page  with amusing &  c...

Guide to remove WhiteClick toolbar from the computer system.

Image
What is WhiteClick Toolbar? WhiteClick Toolbar is malicious program categorized as a potentially unwanted program & classified as a  Browser Hijacker .  This unwanted program trespasses into the system and alters the web browser settings to install its own search engine, home page, new tab and a toolbar without user permission. WhiteClick toolbar uses the method of software bundling as its main mode of transmission. This program can be bundled with third party software like media-players, torrent downloads of popular software etc. The users often rush during the installation of software and fail to notice the additional software within the installer. It is important to always check the Custom/Advanced setting during setup and remove any additional software bundled with the program. Doing this keeps unwanted and intrusive software out of the system. Spam email attachments also contain the virus payload. Cyber crooks use spam emails to get unsuspecting us...

In-app currencies of Mobile games used for Money Laundering by Cyber Crooks!

Image
Mobile Games are now more popular then PC games. Mobile games generate billions of dollars in revenue. Cyber crooks have found a way to exploit the in-game currency to launder real money without the fear of being tracked by government agencies.     The cyber crooks have created a system where they use fake Apple accounts and fake gaming profiles to carry out transactions using stolen credit or debit cards. These game accounts are then sold online for real money and it is transacted using online E-wallet apps. The operation came to light when the researchers stumbled upon a MongoDB database that was left exposed on the internet without any login or password. The free access to this database revealed that it had details of more than 150,000 unique card details which recorded the card number, expiration date and the CVV. The MongoDB database revealed that the details on the sheet were not some ordinary company data but something else entirely. Upon closer inspection,...

13 iPhones Users targeted by attackers using MDM Malware!

Image
A Campaign active since August 2015 which had been using MDM Protocol to spy on 13 iPhone users in India was recently uncovered by security researchers. The attackers who were posing to be Russians were most probably operating from India. MDM or Mobile Device Management Protocol is security software which is utilized by large companies or enterprises to monitor and control policies on the devices used by the members of the workforce. The MDM protocol was being used to dispatch and regulate new applications via remote access. The MDM protocol is connected with the Apple Push notification service (APNS) to manage the connected device by sending a wake-up alert on the device. Once the device is linked, it connects to a pre determined web service that can be used for giving out commands or installing apps and services on the targeted device. The security researchers were unable to find out how the cyber attackers succeeded in installing the  MDM Malware  into the 13 iPho...

FIFA World Cup 2018 Coca-Cola Lottery scam

Image
These ads may sound tempting and many football fans would want to make easy money by betting on the game.  However, the host nation Russia has warned the football enthusiasts to beware of growing number of hoax emails and messages. The scams fraudulently claim to be associated with FIFA World Cup 2018 Russia. These scams invite recipients to submit a tender or inform recipients to have won a lottery prize. In order to receive the price money, recipients are persuaded to provide personal information or bank details to initiate the process. In some cases recipients are even asked to send the money as upfront payment to enter the tender process. FIFA World Cup 2018 Coca-Cola Lottery scam emails have following traits: 1. It appears to come from financial institution and looks official. 2. The email may contain Pin Code Number, Winning number, or some Bonus number and appears to be delivered by Coca Cola. 3. In order to gain user confidence the mail may also include a false cheque....