<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; twitter spam</title>
	<atom:link href="http://www.darknet.org.uk/tag/twitter-spam/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Twitter DM Phishing Scam</title>
		<link>http://www.darknet.org.uk/2009/09/twitter-dm-phishing-scam/</link>
		<comments>http://www.darknet.org.uk/2009/09/twitter-dm-phishing-scam/#comments</comments>
		<pubDate>Thu, 24 Sep 2009 08:30:10 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Spammers & Scammers]]></category>
		<category><![CDATA[direct message]]></category>
		<category><![CDATA[dm]]></category>
		<category><![CDATA[dm spam]]></category>
		<category><![CDATA[scams]]></category>
		<category><![CDATA[spammers]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[twitter dm]]></category>
		<category><![CDATA[twitter dm phishing]]></category>
		<category><![CDATA[twitter dm spam]]></category>
		<category><![CDATA[twitter dms]]></category>
		<category><![CDATA[twitter phishing]]></category>
		<category><![CDATA[twitter scam]]></category>
		<category><![CDATA[twitter spam]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2139</guid>
		<description><![CDATA[As Twitter gains momentum there are more and more attacks on it, it&#8217;s users and the most recent is a phishing scam via DM (Direct Message). It was uncovered recently that it was being used as a Botnet Control Channel, shortly before that it was subjected to a DoS attack. This isn&#8217;t the first time [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>As <a href="http://www.darknet.org.uk/tag/twitter/">Twitter</a> gains momentum there are more and more attacks on it, it&#8217;s users and the most recent is a phishing scam via DM (Direct Message).</p>
<p>It was uncovered recently that it was being used as a <a href="http://www.darknet.org.uk/2009/08/twitter-being-used-as-botnet-command-channel/">Botnet Control Channel</a>, shortly before that it was <a href="http://www.darknet.org.uk/2009/08/twitter-facebook-taken-offline-by-ddos-attacks/">subjected to a DoS attack</a>.</p>
<p>This isn&#8217;t the first time <a href="http://www.darknet.org.uk/2009/01/phishing-attacks-hits-twitter-users-utilising-direct-messages/">DMs have been used in a Phishing attack </a>too.</p>
<blockquote><p>Phishers are targeting Twitter users in a new attack involving direct messages sent to Twitter users containing a link to a site requesting user log-ins.</p>
<p>There are reports of a new phishing scam making the rounds on Twitter. The attack seeks to steal user credentials by sending tweets out with links to a phishing site. The attack site requests the user&#8217;s log-in information; once the attackers have that, they can take over the account of the victim and use it to send out more messages.</p>
<p>According to messages from Twitter users, the tweets with the link to the phishing site have to do with the sender supposedly making a certain amount of money. Such periodic phishing attacks on users of the popular microblogging service have become a fact of life.</p></blockquote>
<p>I&#8217;m not exactly sure why anyone would want to steal a bunch of Twitter accounts? Perhaps to monetize them somehow with spam/affiliate schemes.</p>
<p>But the current threat on Twitter is a phishing scam executed via DM with a link to various things including ways to make money, a video of you or some other juicy gossip.</p>
<p>The cornerstones of social engineering in phishing attacks.</p>
<blockquote><p>In May, researchers at Sophos reported that a number of Twitter users were lured to a phishing site via a tweet with the message: &#8220;check this guy out [tinyurl address leading to the attack site].&#8221; As was the case in that instance, URL shortening services are increasingly being abused by attackers to mask the Websites they are sending their victims to.</p>
<p>Besides drawing attackers as it has grown, Twitter has also gotten the interest of security researchers, as shown by the &#8220;Month of the Twitter Bugs.&#8221;</p>
<p><a href="http://twitter.com/spam/status/4322713588">Twitter warned users about the attack</a>, stating in a message: &#8220;A bit o&#8217; phishing going on—if you get a weird direct message, don&#8217;t click on it and certainly don&#8217;t give your log-in creds!&#8221; </p></blockquote>
<p>If you are using Twitter you should follow <a href="http://twitter.com/spam">@spam</a> and keep up to date with what is happening on the network.</p>
<p></p>
<p>Source: <a href="http://www.eweek.com/c/a/Security/Twitter-Hit-by-New-Phishing-Attack-453387/?kc=rss">eWeek</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Twitter+DM+Phishing+Scam+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D2139+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/09/twitter-dm-phishing-scam/&amp;t=Twitter+DM+Phishing+Scam" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2009/09/twitter-dm-phishing-scam/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/09/twitter-dm-phishing-scam/&amp;title=Twitter+DM+Phishing+Scam" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/09/twitter-dm-phishing-scam/&amp;title=Twitter+DM+Phishing+Scam" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2009/09/twitter-dm-phishing-scam/&amp;title=Twitter+DM+Phishing+Scam" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/09/twitter-dm-phishing-scam/&amp;title=Twitter+DM+Phishing+Scam" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2009%2F09%2Ftwitter-dm-phishing-scam%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/09/twitter-dm-phishing-scam/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Twitter Squatting &#8211; The New Domain Jacking?</title>
		<link>http://www.darknet.org.uk/2008/11/twitter-squatting-the-new-domain-jacking/</link>
		<comments>http://www.darknet.org.uk/2008/11/twitter-squatting-the-new-domain-jacking/#comments</comments>
		<pubDate>Tue, 04 Nov 2008 18:50:11 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Spammers & Scammers]]></category>
		<category><![CDATA[cybersquatting]]></category>
		<category><![CDATA[domain jacking]]></category>
		<category><![CDATA[domain squatting]]></category>
		<category><![CDATA[scammers]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[spammers]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[twitter jacking]]></category>
		<category><![CDATA[twitter spam]]></category>
		<category><![CDATA[twitter squatting]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1200</guid>
		<description><![CDATA[It seems the latest target for spammers, opportunists and those into Domain Squatting is the registration of interesting or possibly valuable Twitter usernames. Twitter has exploded recently as a new &#8216;micro-blogging&#8217; platform and it works really well, especially when combined with more traditional blogging and the host of tools that have been build around Twitter [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>It seems the latest target for spammers, opportunists and those into <a href="http://en.wikipedia.org/wiki/Cybersquatting">Domain Squatting</a> is the registration of interesting or possibly valuable <a href="http://twitter.com/">Twitter</a> usernames.</p>
<p>Twitter has exploded recently as a new &#8216;micro-blogging&#8217; platform and it works really well, especially when combined with more traditional blogging and the host of tools that have been build around Twitter to enable you to find tweets about specific topics or events easily.</p>
<blockquote><p>Now Twitter has created a new supply of valuable &#8220;names&#8221;:  Twitter IDs.  They take the form of twitter.com/stiennon for instance.  Have you signed up for your free Twitter ID?  Do you own your surname? Company name? Brand identity? </p>
<p>Is there evidence of Twitter squatting (squitting?) Let&#8217;s check.  Yup, every single-letter TwitID is taken. Some are legitimate (Check out &#8220;S&#8221; for instance, that is a cool personal email assistant service) but X, Y, and Z are place holders.   How about common words? Garage, wow, war, warcraft, Crisco, Coke, Pepsi, Nike, and Chevrolet are all taken. My guess is that Twitter squatters have grabbed all of these in the hopes that they will be worth selling in the not too distant future.  Of course the legitimate holders of brands can sue for them and Twitter can just turn them over if asked.  But, because the investment and risk for the squatter is zero, you are going to see the rapid evaporation of available Twitter IDs. </p></blockquote>
<p>I wonder if this will be the next lucrative business, people registered thousands of Twitter usernames and speculating with them.</p>
<p>Imagine if your name or company name is taken, it&#8217;s gonna be cheaper than litigation to get it back to just pay the guy a few hundred or a few thousand dollars. If you haven&#8217;t gotten a Twitter ID yet I suggest you bag your name now before someone else does.</p>
<blockquote><p>How to protect your own brand?  Immediately go to Twitter.com and determine if your name is available. Get it while you can. While you are at it, reserve all of the names associated with your brand.  You may decide that any domain you have invested in should have its Twitter ID.  It is the domain name squatters who will jump on this new land grab first after all.   Reserving multiple Twitter IDs is easy. Twitter attempts to limit reservations by requiring a unique email address for each sign-up.  That is circumvented by using the Google &#8220;plus sign&#8221; email trick.  Simply append something (your new Twitter ID for instance) to your Google email address like stiennon+itharvest@gmail.com.  Gmail  treats that as stiennon@gmail.com but Twitter thinks it is unique.    I expect Twitter to fix this flaw shortly. They may even require email confirmation. </p></blockquote>
<p>So go and get registering, especially if you have anything to do with the online presence of a real business &#8211; go and register the business name and derivatives now. You could save yourself some money when later the CTO or CEO thinks blogging and Twittering may really boost your brand equity.</p>
<p>Who knows? Better safe than sorry right.</p>
<p></p>
<p>Source: <a href="http://www.networkworld.com/community/node/34635?t51hb">Network World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Twitter+Squatting+%E2%80%93+The+New+Domain+Jacking%3F+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D1200+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2008/11/twitter-squatting-the-new-domain-jacking/&amp;t=Twitter+Squatting+%E2%80%93+The+New+Domain+Jacking%3F" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2008/11/twitter-squatting-the-new-domain-jacking/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2008/11/twitter-squatting-the-new-domain-jacking/&amp;title=Twitter+Squatting+%E2%80%93+The+New+Domain+Jacking%3F" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2008/11/twitter-squatting-the-new-domain-jacking/&amp;title=Twitter+Squatting+%E2%80%93+The+New+Domain+Jacking%3F" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2008/11/twitter-squatting-the-new-domain-jacking/&amp;title=Twitter+Squatting+%E2%80%93+The+New+Domain+Jacking%3F" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2008/11/twitter-squatting-the-new-domain-jacking/&amp;title=Twitter+Squatting+%E2%80%93+The+New+Domain+Jacking%3F" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2008%2F11%2Ftwitter-squatting-the-new-domain-jacking%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2008/11/twitter-squatting-the-new-domain-jacking/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
	</channel>
</rss>

