Log in

View Full Version : New type of phishing attack



Zmulan
05-26-2010, 09:45
Just read about this, and thought it was kinda scary.. I usually don't fall for such tricks but this one is harder to notice.

http://www.azarask.in/blog/post/a-new-type-of-phishing-attack/

How it works:
Someone give you a link (in this case, up /\ - it's just a demo, dont worry! xD).
U click the link, then you switch to another tab in your browser...
after a while, the site u entered at first has changed to something that looks like Gmail.

And u know why its so scary?
1. When u login at what u think is gmail. U will be redirected to the real page (because you were probably already logged in in the first place) and u won't notice a thing. Your passwords has already been sent to some n00b d00d who wants to steal ur mails! (this works for banks etc to, so be careful)
2. It works on all browsers, and on Windows/Mac~
3. It can check what site u visits often and then make a fake page of it,
so if your online bank site shows up in a tab in your browser, but you cant remember entering the site urself, close it to be safe!

What do u think, would u fall for it?

raoul
05-26-2010, 10:40
im glad i got hotkeys, and windows live mail program:p!

Friday
05-26-2010, 13:58
I have it like this:

http://i49.tinypic.com/9pnbrq.png

always using it so im safe i think :D

ps: i got ABP its blocking sites like that you said and if a different site just open then it hasnt the option like i have on original

Olzone
05-26-2010, 18:18
I have super chrome add0n (yEZ it'S WIN!)
and i always use gmail.com for mail


p.s
This attacks is common known for all sites where u can get info from:

noobwabpayu.com
(login on paypal)
blablabla@noobdontunderstandshit.net
myeasypassword
(sends same information from the site to a mail or doc, then forwards same information in same field to paypal.com official site and you just wont notice a thing (if ur not smart to avoid this shit)

seen it alot of times on "fake" seller sites

wall
05-26-2010, 18:26
kinda old,

they used some hacklink in tibia, and was like tIbia.com but the i looks like the original in tibia client, and u get redirected like that, and u get hacked.

this explains also that there came a patch after this in like 2days :p