Simple clear advice in plain English

Fraudsters phish for Facebook user details

Malicious link directs Facebook users to spoof site so passwords can be stolen

facebook-homepage

Facebook users are being targeted by a new wave of phishing attacks.

According to the security firm, Symantec, the attacks use a person's Facebook account to send an email containing a malicious link to that person's friends. The link directs users to a site that looks identical to the Facebook login page.

The victim is prompted to provide their login information, which the fraudsters use to hijack their account and spread the link.

However, Symantec warned that the fraudsters are probably after more than people’s Facebook details. In the Symantec Security Response blog, Marian Merritt writes that the company “believe the focus on Facebook isn’t simply to dupe a handful of people in a drawn-out financial scam.

“Some suspect it is part of a larger effort to target those who are highly-connected adopters of online environments and likely to be users of many related online services. Get one password for the right person and it’s like having their wallet handed over," she says.

The company said it was working to remove messages with the malicious links and help secure compromised accounts. But it said Facebook users must also observe best practice, for example, by not having the same password for multiple accounts and maintaining a high level of caution.

More advice is given on the blog.

Reader Comments

No escape!

I too have been receiving dozens of these emails every week, I have no interest in Facebook so I have no idea how they got my email address, I simply mark as "junk" and delete.

Posted by Lenny Toshack, 19 May 2009

   

Add your comment

All fields must be completed. Your email address will not be displayed or used to send marketing messages.

All messages will be checked by moderators before appearing on the site.

See our Privacy Policy for more information.

Related articles

Results of searching online

What does the internet know about your friends and private life?

It's easy for other people to find out more about you than want them to know but we explain how you can lessen the chances of revealing too much online

phishing-credit-card

Ticketweb users are being sent phishing emails following an attack on company's email server

Ticket-reselling company advises users not to click on links in emails from the company, allegedly offering an Adobe PDF, that is sent by cyber criminals

dwp-email

Twitter users at risk from targeted phishing attacks says Websense

Security company warns Twitter users the information, including email addresses, they post in conversations can make them vulnerable to cyber crime

Question & Answer

Q.Can I switch boot drives so that I can work on older...

> Read the answer

Q.Can I open my old genealogy files or have they gone...

> Read the answer

Q.Why are odd patterns appearing on my monitors shortly...

> Read the answer

Best deals on the web

img

Samsung RV520-A07

£356.50- Buy it now

img

Acer Aspire 5750G (LX.RXP02.019)

£399.99- Buy it now

img

Apple MacBook Pro (MD313B/A)

£904.37- Buy it now

Latest issue & subscription deals

Poll

Are you concerned about viruses that target mobile phones?

Jargon Buster

Computing terms explained in plain English

Router

A device used to connect more than one computer or other device to the internet.

Great shopping deals from Computeractive