Contact Me By Email

Showing posts with label Credit card. Show all posts
Showing posts with label Credit card. Show all posts

Tuesday, August 24, 2010

PayPal/iTunes attacks based on existing bots, phishing? | iPodNN

PayPal/iTunes attacks based on existing bots, phishing? | iPodNN
A recent series of fraudulent iTunes downloads, tied to PayPal accounts, is not based on any new exploit, sources claim. Described as "close to Apple," the sources suggest that iTunes has not been compromised and that Apple isn't aware of any sudden jump in fraud. In reality, people are probably falling prey to variants of bot and phishing attacks that have been around for years, All Thing Digital writes.
PayPal is promising to reimburse any illicit charges. Apple's position has remained consistent. "iTunes is always working to prevent fraud and enhance password security for all of our users," a new statement reads. "But if your credit card or iTunes password is stolen and used on iTunes we recommend that you contact your financial institution and inquire about canceling the card and/or issuing a chargeback for any unauthorized transactions. We also recommend that you change your iTunes account password immediately."

Phishers continue to target iTunes users | Security | Playlist | Macworld

Phishers continue to target iTunes users | Security | Playlist | Macworld
Users of Apple’s iTunes services should keep a close eye on PayPal and credit card statements for fraudulent iTunes charges.
For more than a year now, scammers have been racking up unauthorized charges on iTunes accounts, leaving Apple’s customers to clean up the mess.
Tech Crunch and the San Jose Mercury News report that the scam is ongoing—often draining hundreds of dollars or more from accounts—but consumers have been complaining about the problem since at least early 2009.
The number of people being hit by the fraudsters now seems to be growing, however.

Monday, August 02, 2010

Microsoft Rushes Out Emergency Fix For Critical LNK Bug | CyberInsecure.com

Microsoft Rushes Out Emergency Fix For Critical LNK Bug | CyberInsecure.com


Microsoft on Monday rushed out an emergency patch for a critical vulnerability that criminals are exploiting to install malware on all supported versions of the Windows operating system.

As promised Friday, Microsoft released the update outside of its normal patching schedule because the vulnerability is being actively targeted. When the flaw first came to public attention three weeks ago, it was being used to attack SCADA — supervisory control and data acquisition — systems that control sensitive equipment at power plants, gas refineries, and other other critical infrastructure.

Since then, it’s been used to install general-purpose malware from Zeus and other do-it-yourself crimeware kits used to siphon credit card numbers and other sensitive data from compromised computers. The Windows flaw resides in a shortcut feature that makes it easy to store commonly accessed files and folders on the operating-system desktop.

Users who employed a stopgap FixIt published two weeks ago should roll back their machines using the “disable workaround” feature here. Those who don’t follow this advice will find that icons fail to display properly, causing folders and files to appear white without any of the customary graphics.

Users will most likely have to reboot their machines twice — once after uninstalling the workaround, and again after installing the update.

Tuesday, July 27, 2010

Report: Hacker In Massive Computer Attack Held : NPR

Report: Hacker In Massive Computer Attack Held : NPR

International authorities have arrested a computer hacker believed responsible for creating the malicious computer code that infected as many as 12 million computers, invading major banks and corporations around the world, FBI officials told The Associated Press on Tuesday.

A 23-year-old Slovenian known as Iserdo was snagged in Maribor, Slovenia, after a lengthy investigation by Slovenian Criminal Police there along with FBI and Spanish authorities.

His arrest comes about five months after Spanish police broke up the massive cyber scam, arresting three of the alleged ringleaders who operated the so-called Mariposa botnet, stealing credit cards and online banking credentials.

The botnet — a network of infected computers — appeared in December 2008 and infected more than half of the Fortune 1,000 companies and at least 40 major banks.

Botnets are networks of infected PCs that have been hijacked from their owners, often without their knowledge, and put into the control of criminals.
Enhanced by Zemanta