Monday, July 14, 2008

fake youtube


there rise of fake you tube targeting Miss Universe 2008

here is one ,beware

Thursday, June 26, 2008

AXIS Bank Phished

Got this Phish link

http://www.esb-news.org/ktmlpro100/includes/ktedit/help/india/index.php?bank=www.axisbank.com


its reported @ phish tank

http://www.phishtank.com/phish_detail.php?phish_id=468187

Tuesday, May 6, 2008

Pay Pal Phishing

The most prominent Phishing attack is on paypal most of the time.I am sure most of them who get spam message would get this once.

here is a classic one


Information Regarding Your account:
Dear PayPal Member:

Attention! Your PayPal account has been limited!

As part of our security measures, we regularly screen activity in the PayPal system.We recently contacted you after noticing an issue on your account.We requested information from you for the following reason:

Our system detected unusual charges to a credit card linked to your PayPal account.

Activate your account
PayPal Email ID: 5138-8872





Sincerely,

PayPal Accounts Review Department.

Copyright 1999-2008 PayPal. All rights reserved




it actually links to


ichrak.biz


the above link redirects to phishing site

it gets all information , even the pin number for your credit card. here is the reason they give.


By adding VeriSign Payment Services industry-leading tools such as Payflow Link and Payflow Pro to PayPal's suite of payment solutions, we're now able to offer online merchants even more choices for their businesses.

Requiring PIN Signatures is the latest security measure against: identity theft, credit card fraud and unauthorized account access. PayPal will verify it with your bank records for your own protection.


If you provide a wrong PIN your account will be suspended for unauthorized account access.


Saturday, April 26, 2008

HSBC Phishing

This the subject

HSBC Online Banking - Your online Account Required Update

here the content of the fake mail


Dear HSBC Customer, 2008 Security
We need to inform you that during our recent security review we are now asking every HSBC online banking user to become more secured. this security measure will protect our customers from account thefts and any other fraudulent activities. To secure your HSBC account please visit the HSBC link below:

https://www.hsbc.co.uk
We apologize for any inconvenience this may cause, and appreciate your assistance in helping us maintain the integrity of the entire HSBC community.

Please do not reply to this e-mail. Mail sent to this address cannot be answered.
For assistance, log in to your HSBC Online Bank account and choose the "Help" link on any page.
Yours Sincerely,
Accounts Management As outlined in our User Agreement, HSBC local bank will
periodically send you information about site changes and enhancements.
Visit our Privacy Policy and User Agreement if you have any questions.


Thank you.
Online Security Team
HSBC Bank Plc.


link in the email directs to
hxxp://updatedservices.getmyip.com/img/common/www.hsbc.co.uk/1/2/personel/IBlogin.html

i check and confirmed that this link has submitted to phishtank and link is dead now.

Friday, February 1, 2008

Spreading Love

This with BITS DLPD site which has funny Title "Love " not just that , chose view source reveals more info

http://discovery.bits-pilani.ac.in/dlpd/courses/handouts/iszc462.htm


o:Subject>Birthday
o:Author>OPEY A.
o:Keywords>Birthday
o:Description>The Daredevil's Birthday falls on 15th of September. Don't Forget to wish him.
o:LastAuthor>Admin
o:Revision>2
o:TotalTime>16
<:LastPrinted>2007-12-01T05:32:00Z
o:Created>2007-12-01T05:32:00Z
o:LastSaved>2007-12-01T05:32:00Z




Thursday, January 31, 2008

Bad Security Policy

There was posting regarding diclosure of Bank giving out its customers mail address, fueling the Targeted Phisihing attack of its customer. Its a bad security Policy from a leading bank .

http://annysoft.wordpress.com/2008/01/31/want-to-phish-hdfc-bank-how/

APK spam on Whatsapp Targeting Bank users

  Initial vector:   Whatsapp spam user posing as union bank with logo in user profile shared apk file named as “Union Bank Aadhaar Update....