21 Feb 2010
Security experts are warning Twitter users of yet another phishing attack aimed at stealing usernames and passwords.
The malicious tweets in question take the form of a message such as 'LOL. this is me??' or 'LOL, this is funny?', followed by a link including the term 'bzpharma.net' which leads to a fake user log-in page.
Users entering their credentials on this fake site are shown a fake Twitter 'fail whale' before being taken back to the real Twitter main page.
This means that they may not realise that their credentials have been compromised, warned Sophos senior technology consultant Graham Cluley in a blog post.
Twitter staff have said that the phishing messages are being sent by direct message only, but Cluley warned that they are also being posted in public fields.
"It appears that the messages are being shared more widely because of third-party services like GroupTweet which extend the standard Twitter direct message functionality and allow private messages to be sent to multiple users, and optionally made public," he wrote.
"As a result we have found Twitter accounts that have warned their followers about the phishing attack, only to subsequently fall victim to it themselves."
Cluley advised any users tricked into handing over their credentials to change their username and password immediately.
Sophos' latest annual threat report found a whopping 70 per cent rise in the number of spam and malware attacks taking place on social networking sites over the past year.
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
IT Security Specialist Move in2 Solutions /Pre-Sales...
SOFTWARE ENGINEER - BERKS - to £34k plus package WAREHOUSE...
We currently have a position for a Senior Project Manager...
JAVA DEVELOPER TRANSPORT MANAGEMENT SYSTEMS / TMS...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?