Facebook and Twitter Phishing going on today!

According to Techcrunch we have one phishing site ground around peoples inboxes on facebook with it say “Check areps.at”.  You go to the site and you will think your at the facebook login but your not.  I wouldn’t suggest going to any of these sites, it has been reported by Phishtank.

[ad]Some of the sites to avoid today are : “nutpic.at, bests.at, areps.at, kirgo.at” each site will make you think your at facebook but this is what most will call a [intlink id=”3419″ type=”post”]Phishing scam[/intlink].  Some other things to avoid are some Twitter phshing going on today as well.

According to Trend Micro there is one where the url looks like it is a twitter url but isn’t (tvviter[dot]com).  The site is what people would call a typosquatting site.   This makes people think they are on twitter but aren’t.   If you go to these to sites and have given out your passowrd, it is strongly recommended that your reset them:

Facebook password reset page

Twitter password Reset Page

If you would like to know more about what phsihing is please check out my blog for more information.  Don’t forget to check out the forums for more information on this or just to talk about anything on your mind.

*Some reports I am seeing is some of these sites might be trying to get you to install the [intlink id=”2249″ type=”post”]Koobface virus [/intlink]so please be careful, will update when I find out more.*

You’ve got hacked thanks to Twitter : Don’t “email me at”

I was reading a blog post about Spammers Harvesting Sorrow From Twitter.

Something came to my mind, so I did a little research and a lot of thinking and it finally came to me. It is easy for someone to find your email and use it for there own means. There are several different scenarios I can come up with:

    [ad]

  • Impersonating someone you know —  It is quite simple to find out who we know and who we follow.  You can always find someone who you don’t know the email address of and make it seem like your them to get even more information from the person.
  • Receiving Viruses, Trojans, or worms —   Although if you have a good Anti-virus this one won’t be getting to you but  according to ESET : 10 percent of computer users didn’t know if they had anti-virusware installed. This means that there are going to be some success for malware authors to send out a virus to every who twitters there email address and still have success.
  • Try to guess your password —  If they have your email address, which is almost like your SSN in some respects, they could go to Facebook and try to get into your account by doing a Dictionary attack or a Brute Force Attack.  They may even try to hack into your email address just to get access to all the other accounts.

I am sure I am going to miss others that could possibly happen but this isn’t about what could happen this is about ways to prevent this type of stuff.   Chris Pirillo seems to think that if we use the “AT” and “dot” in place of the real things that no Bot would be able to figure that.   I say no because this is the easiest thing for a bot to do is to copy everything after the “Email me at”  and put it in a text file.   Then the person harvesting the email address would just have to go through and find all them that have the “dot” and “at” and change them to what they should be.  I have been watching the search terms for the last few hours and it seems there is a new person posting there email address every 5 minutes or so.  Have you don’t it in the past?

In short, if you want someone to email you it is always best just to send a Direct message to them so no other eyes can see it.  I’d also suggest installing some [intlink id=”2205″ type=”page”]Free Anti-virus and Firewalls[/intlink] if you haven’t already to better help your protect your personal information.  Remember only you can prevent from getting your personal information stolen.

When not to post #twitterpornnames

twitterpornname-security1

I’ve heard others call this a scam:

twitterpornname-security2

[ad]Now Although I know PCworld has made everyone paranoid that this is a scam.  I want to remind people that it was probably just a for fun.   According to Graham Cluely’s blog, He points out why you shouldn’t tell people the important information.

I see no evidence this was done to gather your information but Pcworld has sent out the warnings and made people think this was a scam, or a Phishing attack.  Although this could be used to get the information needed for your Gmail or other accounts.

I do recommend deleting those tweets and reminding people that you are the only ones that can prevent identity theft.  Trend Micro talks about this very detail about the subject but again they don’t think this was conceived as a phishing attempt.   I’ll let you decide but remember tweeting that it is a scam will only keep it on the trends, your best advice is just go on with your life and tell everyone to delete that sensitive information.

Identi.ca here I come!!

identicabegin

[ad]

With Twitter being really Challenging I have switched from Twitter to my new Micro-blogging home.  Identi.ca, and Have also changed my updates to go to my Ident.ca profile and no more Twitter.  Thanks to some searching around for a WordPress plugin to go to the Identi.ca Server, It will post automatically.

I encourage all my users to switch from Twitter to Identi.ca but if you can fully switch you can still use your Twitter account with Identi.ca and have SMS with Identi.ca also.  So you can use it like you did with Twitter and still have what you like.

On a Side note, all the [intlink id=”3222″ type=”post”]Cricket Phone[/intlink] users who want to use twitter with your phone, it looks like you can have both with Identi.ca by using Ident.ca twitter integration you can use it to send messages back and fourth on twitter.  I have interrogated Identi.ca with my Cricket phone and it works now I don’t know about Twitter because of [intlink id=”3509″ type=”post”]what happened[/intlink], but the identi.ca updates are coming my way.

There is also Friendfeed that I have been using more and more for people who want to subscribe to that instead.  If you want to talk to me these are a way to keep in contact with me!!    With Identi.ca you can keep updated with my updates by RSS.  If you don’t want to create an account, this is one way to keep up to date on what I am blogging or saying but I would like to continue my Conversations on identi.ca.