MSMVPS.COM

The Ultimate Destination for Blogs by Current and Former Microsoft Most Valuable Professionals.
Welcome to MSMVPS.COM Sign in | Help
in Search

Harry Waldron - Corporate and Home Security

Latest Security Developments and Best Practices are shared to help keep users safe

Beware of False "Order Confirmations" in EMAIL

The Internet Storm Center warns of a new social engineering scheme to trick individuals into visiting hostile web sites that can exploit unpatched IE vulnerabilities 

Beware of False "Order Confirmations" in EMAIL
http://www.incidents.org/diary.php?date=2004-05-24

New Angle(r) On An Old Phish

First of all, my apologies for the headline... I couldn't help myself.  It seems that the phisher folk have found some new bait. The newest angle(r) involves sending out fake "order confirmation" messages bearing links that lead to web pages containing exploits for some older IE vulnerabilities.

The idea is that no one will be able to resist simply looking at where the link points, and that the phisher will then snag a few unpatched folk in the process. Let's keep those browsers patched, people. And be careful out there...

Only published comments... May 25 2004, 04:58 AM by Harry Waldron

Leave a Comment

(required) 
(optional)
(required) 
Submit
Powered by Community Server (Commercial Edition), by Telligent Systems