<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Wizzard&#039;s Blog &#187; Phishing</title>
	<atom:link href="http://www.wizzardsblog.com/tag/phishing/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.wizzardsblog.com</link>
	<description>My take on the world</description>
	<lastBuildDate>Mon, 06 Feb 2012 14:29:44 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Spam from my gmail account last night</title>
		<link>http://www.wizzardsblog.com/spam-from-my-gmail-account-last-night/</link>
		<comments>http://www.wizzardsblog.com/spam-from-my-gmail-account-last-night/#comments</comments>
		<pubDate>Wed, 07 Oct 2009 10:37:33 +0000</pubDate>
		<dc:creator>wizzardsblog</dc:creator>
				<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Spam]]></category>

		<guid isPermaLink="false">http://www.wizzardsblog.com/?p=748</guid>
		<description><![CDATA[Apologies to everyone that received a spam message from my richard.arblaster gmail account, it seems that my account had been infiltrated by a spam/phishing bot. The password was changed last night. Do not under any circumstances click the link contained within that email, just delete it. As a precaution change your gmail password. Rest assured <a href='http://www.wizzardsblog.com/spam-from-my-gmail-account-last-night/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.wizzardsblog.com%2Fspam-from-my-gmail-account-last-night%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.wizzardsblog.com%2Fspam-from-my-gmail-account-last-night%2F&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>Apologies to everyone that received a spam message from my richard.arblaster gmail account, it seems that my account had been infiltrated by a spam/phishing bot.</p>
<p>The password was changed last night.</p>
<p>Do not under any circumstances click the link contained within that email, just delete it.</p>
<p>As a precaution change your gmail password.</p>
<p>Rest assured that email was definitely <strong>NOT </strong>sent by me, I hate both types of spam the email/snail mail/leaflet and the real life meat variety.</p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Reblog this post [with Zemanta]" href="http://reblog.zemanta.com/zemified/e0b1236f-2af9-4b11-b8be-4864cdb3eb7d/"><img class="zemanta-pixie-img" style="border: medium none; float: right;" src="http://img.zemanta.com/reblog_e.png?x-id=e0b1236f-2af9-4b11-b8be-4864cdb3eb7d" alt="Reblog this post [with Zemanta]" /></a><span class="zem-script more-related pretty-attribution"><script src="http://static.zemanta.com/readside/loader.js" type="text/javascript"></script></span></div>
]]></content:encoded>
			<wfw:commentRss>http://www.wizzardsblog.com/spam-from-my-gmail-account-last-night/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>URL shorteners</title>
		<link>http://www.wizzardsblog.com/url-shorteners/</link>
		<comments>http://www.wizzardsblog.com/url-shorteners/#comments</comments>
		<pubDate>Wed, 24 Jun 2009 07:41:21 +0000</pubDate>
		<dc:creator>wizzardsblog</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[bit.ly]]></category>
		<category><![CDATA[OpenDNS]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[URL redirection]]></category>

		<guid isPermaLink="false">http://www.wizzardsblog.com/?p=484</guid>
		<description><![CDATA[Yes these sites that let you shorten a large cumbersome URL to a set of 4-6 characters, popularly used by twitter. One such URL shortening service bit.ly was blocked by open dns (a very popular free DNS service). So everyone who was using open dns as their DNS servers were greeted by a warning page <a href='http://www.wizzardsblog.com/url-shorteners/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.wizzardsblog.com%2Furl-shorteners%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.wizzardsblog.com%2Furl-shorteners%2F&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>Yes these sites that let you shorten a large cumbersome URL to a set of 4-6 characters, popularly used by twitter.</p>
<p>One such URL shortening service <a class="zem_slink" title="bit.ly" rel="homepage" href="http://www.bit.ly">bit.ly</a> was blocked by open dns (a very popular free DNS service). So everyone who was using open dns as their DNS servers were greeted by a warning page telling them it had been blocked as it was a phishing site.</p>
<p>It was fixed within half an hour of being reported. It would appear that the person(s) who reported the link, failed to realise it is a url shortening service and just reporting the bit.ly url would block every single site using this service.</p>
<p>So my suggestion is, don&#8217;t report the bit.ly link, report the link it re-directs to.</p>
<p>I have also suggested in a tweet to @opendns they educated those that report these bit.ly links to actually click through and note the link it re-directs to.</p>
<p>Before you jump up and down and say I&#8217;m crazy. You can install a firefox plugin that enables you to preview the site that bit.ly re-directs to, including the URL and the site contents.</p>
<p>Yes report such things, but please learn how to report them in a proper manner.</p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Reblog this post [with Zemanta]" href="http://reblog.zemanta.com/zemified/a384749b-a631-43ca-95fa-eeaff61fc922/"><img class="zemanta-pixie-img" style="border: medium none; float: right;" src="http://img.zemanta.com/reblog_e.png?x-id=a384749b-a631-43ca-95fa-eeaff61fc922" alt="Reblog this post [with Zemanta]" /></a><span class="zem-script more-related pretty-attribution"><script src="http://static.zemanta.com/readside/loader.js" type="text/javascript"></script></span></div>
]]></content:encoded>
			<wfw:commentRss>http://www.wizzardsblog.com/url-shorteners/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twitter iPhone DMs</title>
		<link>http://www.wizzardsblog.com/twitter-iphone-dms/</link>
		<comments>http://www.wizzardsblog.com/twitter-iphone-dms/#comments</comments>
		<pubDate>Mon, 05 Jan 2009 08:35:08 +0000</pubDate>
		<dc:creator>wizard1974uk</dc:creator>
				<category><![CDATA[Twitter]]></category>
		<category><![CDATA[IPhone]]></category>
		<category><![CDATA[Password]]></category>
		<category><![CDATA[Phishing]]></category>

		<guid isPermaLink="false">http://www.wizzardsblog.com/?p=132</guid>
		<description><![CDATA[Came across a couple of DMs this morning about a free iPhone from helloiphones.com did some digging on google and came across this blog post http://www.twittertruth.com/?p=71 about it. I think this a hangover from the funny blog phishing DM earlier. According to the author these DMs are coming from the same compromised accounts. However this <a href='http://www.wizzardsblog.com/twitter-iphone-dms/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.wizzardsblog.com%2Ftwitter-iphone-dms%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.wizzardsblog.com%2Ftwitter-iphone-dms%2F&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>Came across a couple of DMs this morning about a free iPhone from helloiphones.com did some digging on google and came across this blog post <a href="http://www.twittertruth.com/?p=71" target="_blank">http://www.twittertruth.com/?p=71</a> about it.</p>
<p>I think this a hangover from the funny blog phishing DM earlier.</p>
<p>According to the author these DMs are coming from the same compromised accounts. However this doesn&#8217;t work for UK twitter accounts you get a message to say you are not in the correct region and you re-directed to a flash games site.</p>
<p>I still changed my password as a precaution.</p>
<p>Let me know if you clicked the link and tell me what happened and if you got the same images as posted in the above blog post.</p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Zemified by Zemanta" href="http://reblog.zemanta.com/zemified/1e328b8d-b2af-4aad-a821-662b4ecb3f0b/"><img class="zemanta-pixie-img" style="border: medium none; float: right;" src="http://img.zemanta.com/reblog_e.png?x-id=1e328b8d-b2af-4aad-a821-662b4ecb3f0b" alt="Reblog this post [with Zemanta]" /></a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.wizzardsblog.com/twitter-iphone-dms/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twitter scammers</title>
		<link>http://www.wizzardsblog.com/twitter-scammers/</link>
		<comments>http://www.wizzardsblog.com/twitter-scammers/#comments</comments>
		<pubDate>Sun, 04 Jan 2009 19:43:03 +0000</pubDate>
		<dc:creator>wizard1974uk</dc:creator>
				<category><![CDATA[Twitter]]></category>
		<category><![CDATA[Phishing]]></category>

		<guid isPermaLink="false">http://www.wizzardsblog.com/?p=127</guid>
		<description><![CDATA[Please get a grip on reality, your scam isn&#8217;t going to work, word gets round quickly on Twitter. Those that innocently gave away their login credentials have already been given advised on how to change their passwords. I do not know what you guys are trying to gain from doing this? Twitter is a place <a href='http://www.wizzardsblog.com/twitter-scammers/'>[...]</a>]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.wizzardsblog.com%2Ftwitter-scammers%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.wizzardsblog.com%2Ftwitter-scammers%2F&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>Please get a grip on reality, your scam isn&#8217;t going to work, word gets round quickly on Twitter. Those that innocently gave away their login credentials have already been given advised on how to change their passwords.</p>
<p>I do not know what you guys are trying to gain from doing this? Twitter is a place for getting to know each other, serious business is rarely discussed on here. It is done away from twitter once contact has been established.</p>
<p>For those of you not sure what the DMs contains:</p>
<p>&#8220;Hey look at this funny blog&#8230;&#8221;</p>
<p>I&#8217;m not going to post the link within, that&#8217;s what the DMs start with.</p>
<p>If you do click on the link, do not enter any details into the following page.</p>
<p><strong>UPDATE:</strong></p>
<p>The text of the DMs have been changed to read:</p>
<p>&#8220;fixed it.. hehe here is that blog i wanted to show you&#8221;</p>
<p><strong>UPDATE 2:</strong></p>
<p>There are a couple more variations on this DM circulating.</p>
<p>DM the compromised account and tell them to change their password if twitter hasn&#8217;t already reset it.</p>
<p>Make sure there is no sensitive information in your profile or tweets.</p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Zemified by Zemanta" href="http://reblog.zemanta.com/zemified/5cde5681-9e50-44ee-b0c3-8b531215b181/"><img class="zemanta-pixie-img" style="border: medium none; float: right;" src="http://img.zemanta.com/reblog_e.png?x-id=5cde5681-9e50-44ee-b0c3-8b531215b181" alt="Reblog this post [with Zemanta]" /></a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.wizzardsblog.com/twitter-scammers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

