You are here:

Posts Tagged ‘social engineering’

Text Hoax Becomes Viral

A text has been circulating nationwide warning people to stay away from Walmart. So far this hoax has reached every state including Hawaii.

“Do not go to any wal-mart tonight. Gang initiation to shoot three women tonight. not sure which walmart, but please pass it on.”

http://kgmb9.com/main/content/view/15247/40/

http://urbanlegends.about.com/b/2009/03/19/walmart-gang-initiation-upd ate.htm

This type of hoax feeds off of people’s fears. The purpose of a hoax like this is to cause widespread panic to as many people as possible. Similar to a virus, the message reaches millions of people. In this case, the message itself is the infection. This is considered social engineering, where a person or group manipulates individuals on a large scale.

There has been examples in the past of emails being sent to the public warning of a really bad virus that is out. The email tells the recipient to shut down their computer and unplug it from the internet. The email contains no virus but individuals will voluntarily forward the email to people they know which will further spread fear of a threat that does not exist. Disruptions ensues when people or businesses take their systems or networks offline scared of a problem that does not exist.

Whether it is a text or email, it is not recommended to forward the message on to others as this helps spread the fear.

- By Todd Kingman the Ring Leader at SuperGeeks

This is a scam

Rotarians Beware: The Sympathy Scam

In the hacking world, it’s called social engineering. The hacker uses behavioral tactics to trick you into divulging confidential info and manipulating you into doing something you wouldn’t ordinarily do.

For example, if I called your company and said, “Hi, this is Joe in IT. We’re finally getting around to solving that printer issue. Sorry it took so long! You know how it is around here…We just need to test your login and then we’re done. What’s the password again? Oh, and be sure to change it when we’re done testing…”

More than 50% of your employees will fall into this kind of trap.

Well, Rotarians are the latest target of such scams. Please take a look at this email circulating last week:

Am in a great sorrow writing you this note,Just wanted to inform you about  something very  important,i could  bearly think straight at this point,i hope you come to my aid. Because something very terrible is happening to  me now,i need a favor from you now,I had a trip here in London.

Unfortunately for me all my money got stolen on my way to the hotel where i lodged along with my bag were my  passport was ,And since then i have been without any money i am even owing the hotel here.

So i have limited access to emails for now, please i need you to lend me about 1400 Pound so i can make  arrangements and return back I am full of panic now,the police only asked me to write a statement about the  incident and directed me to the embassy,i have spoken to the embassy here but they are not responding to the  matter effectively.

I will return the money back to you as soon as i get home, I am so confused right now.i wasn’t injured because  complied immediately.I will be waiting to hear from you since i can’t access the internet always.

I await to hear from you.

Kind Regards.

Granted, the above email has a few red flags. For example, it’s full of errors. Also, it wasn’t well-customized for the recipient. However, you can imagine how effective it could be with a bit of fine-tuning.

Bottom: Never trust anything arriving via email. Always bring an abundance of caution to anything relating to the internet. When in doubt, pick up the phone and call (but don’t call the phone number in the suspicious email. The bad guys will anticipate that, too!)

Worthy reading:

http://en.wikipedia.org/wiki/Social_engineering_(security)

http://www.pcworld.com/article/159708/scammers_dirty_tricks.html?tk=rs s_news

http://www.microsoft.com/protect/yourself/phishing/engineering.mspx

James Kerr is Chief Geek at SuperGeeks. He can be reached at 531-GEEK and www.supergeeks.net

You can now follow James on Twitter. Receive helpful tips, virus alerts, and market trends: http://twitter.com/supergeeks