• Yet Another Facebook Phishing Attack

    Yet Another Facebook Phishing Attack

    Techtree News Staff, May 22, 2009 1731 hrs IST

    Greets users and points them to URLs ending with .at

    mail share

Recently, Facebook was victim of a phishing attack having enough potential to attack 200 million Facebook accounts. It's barely been a week since then and  yet another phishing attack bothers Facebook.

The new attack sends sends an email message with subject "Hello" to the victim with body text asking to visit an obscure URL with .at domain name - areps.at , kirgo.at and so on. Do not visit those links. We repeat, DO NOT visit those links.

These phishing links ask the users to put in their Facebook Login credentials. Once the mistake of entering Facebook credentials is done, the attack changes the password and sends same phishing link to victim's contacts. This attack doesn't install malware and is presumed to be in stage of collecting user credentials for a larger damage in the future.

According to CNET, Facebook spokesman Barry Schnitt said, "The impact of this attack or the previous ones is not widespread and only impacted a tiny fraction of a percent of users. We've been updating our monitoring systems with information gleaned from the previous attacks so that each new attack is detected more quickly."

Users surfing on Firefox browsers won't be affected since those URLs have been blocked and tagged as 'Web Forgery' links. To stay secure, visit Facebook Security page and follow the solutions offered.

Follow Techtree on Twitter

Discuss this article
( All fields are mandatory )
Please Note: Comments that include links (URLs) will be caught by the spam filter and will not show up on the website until manually approved by the moderator.
Comment here
Name
City
E-mail
Word Verification
Type the characters you see in the picture below.
Enter the characters appearing in this image
           Refresh Captcha



Discussion Board
(4) Comments
Michelle
,New York, on May 23, 2009 01:16 AM
I've been unable to get to Facebook for the last couple of hours! It seems like the site is down.
Lennie Martin
,Silverton, Oregon, on May 26, 2009 12:03 AM
I had the same experience May 25, could not get into my Facebook account. I also got the .ad phishing attack but think Foxfire blocked it as forgery. Did you get back on Facebook?
Elmar Jansen
,Amsterdam, on May 25, 2009 01:28 PM
Last paragraph reads as an unahsamed Firefox ad. Should have been "Users on browsers with a fishing-filter, like Internet Explorer 7.0, Firefox 3.0, Opera 9.1 (and any later versions), won't be affected ..."
reza
,Tehran, on May 22, 2009 09:17 PM
I'm using firefox and while "web forgery prevention" option was on, it hijacked my password!!!!

Opinion Poll