Facebook trumps email for spam success

Written by John P Mello Jr on September 3, 2010

Facebook spam is more successful than email spam and more lucrative, too. Those were some of the findings in a study performed by an Internet collective of security professionals, according to the Winnipeg Sun.

The findings shouldn’t be too surprising to anyone familiar with Facebook. A problem with email spam is that much of it is anonymous. If a junk message is lucky enough to evade a network’s spam defenses and end up in a recipient’s inbox, it lacks credibility because the recipient has no idea who sent it. A message appearing in a Facebook news stream, on the other hand, has at least a veneer of credibility because it originates from a network of “friends” created by the recipient. Add that to the size of the target pool–500 million active users and counting–and their high activity rate–50 percent of them log on to the network on an given day–and you’ve got an irresistible attraction for spammers.

Unlike their email counterparts, social network spammers don’t need large volumes of dupes to make substantial sums, according to the study. However, it added, Facebook scams have been known to produce hundreds of thousands of clicks once they go viral on the network.

A common scam perpetrated by Facebook spammers involves SMS subscriptions. It works like this. Spam news feeds are used to lure Facebook members to pages where they’re asked to complete surveys or questionnaires. For example, testing one’s IQ in something is a favorite on the service. What’s your baseball IQ, for example, or your World Cup IQ? Once the questionnaire is filled out, the spammer will ask for a cell phone number as a condition of revealing the results of the IQ test to the victim. The number is then used to subscribe the target to an SMS service. Those services send unsolicited messages to a phone on a periodic basis. The target is charged for the message and the spammer gets a cut of that charge.

The problem with surveys and questionnaires, though, is that people flitting the Internet don’t have the patience to fill them out. Clicking a button to indicate one “likes,” or gives a thumbs up to something, barely puts a crimp in a cybernaut’s surfing session. Filling out a survey or questionnaire–not a cherished activity either inside or outside cyberspace–is another matter entirely. When the bloom was first on the questionnaire approach, merely offering results may have been an effective way for spammers to induce guppies to take the hook of a scam in their mouths, but it rapidly lost its efficiency.

Spammers found they had to raise the ante if they wanted meaningful participation numbers in their shenanigans. They began to disguise their intent better by creating fan and group pages. Some of those pages, stripped of their injurious content, have been gathered by a website called bypassfanpages.com. Many of the pages try to attract a target with a tantalizing headline. “10 Secret Tips To Get Any Guy to Ask You Out!” shouts one headline. “OMG! You WON’T believe what this SICK old man put in a 9 year old GIRLS halloween candy!!” screams another containing grammatical errors, a trademark of spammers the world over.

Once they attract potential victims to one of those pages, they offer them various perks, always bogus, to snare them. They may offer free products, some kind of bonus or an enhanced feature set for joining the group, getting others to join the group and finally, for filling out the nefarious questionnaire.

Even those methods, though, are beginning to wear thin with social networkers, the study reported. Its authors discovered that in many cases, while clicks indicating visitors favored a page might be zooming, click-throughs to the content being teased by the page were pallid, as low as a few dozen.

          “That’s good news,” the study said. “Examination of the data demonstrates that fewer and fewer people actually continue on to ‘step 3,’ which is filling out the survey.”

“The vast majority of people bail out of the process after simply liking the page, or after sharing the link,” it added.

While the word about Facebook scams spreads quickly, it doesn’t seem to be deterring the scammers, the study noted. That’s because the junko artists still appear to be able to turn a buck with their schemes.

About John P Mello Jr

John Mello is a freelance writer who has written about business and technical subjects for more than 25 years. He is frequent contributor to the ECT News Network and his work has appeared in a number of periodicals, including Byte magazine, PC World, Computerworld, CIO magazine and the Boston Globe

Comments

Phil September 6, 2010

I think the move of spam to Facebook was inevitable. With a user base as large and as active as this, spam had to crop up sometime. If I’m not mistaken, Facebook is the longest running active social network at its peak. Of course MySpace and Friendster are still around, but I’m still surprised at how long Facebook has been active in the public eye.

I always figured SNSs to be faddish, but it looks like Facebook’s going to be around for quite some time.

nikko d September 7, 2010

Facebook hasn’t been a shining beacon of internet security as of late. But even with widespread public uproar against Facebook’s security flaws, it’s not like we’re seeing any loss of activity on the site.

Now, Facebook is what e-mail used to be – an internet tool that the public just has to check every five minutes. Just like how we all used to click on every single piece of e-mail when it first came out, Facebook users are finding themselves in the same situation.

Victoria September 9, 2010

Facebook just has too many possible exploitable functions to keep track off, and it looks like devious marketers are always coming up with underhanded ways to use them to their advantage. The fact that Facebook’s management does not care very much about the security of their own site makes matters infinitely worse. I have to confess that I haven’t kicked the habit of checking my Facebook every thirty minutes or so, but I guess that’s what the spammers are counting on.

Roy Tarrance March 1, 2011

Facebook has upgraded the comments plugin for third-party websites today. According to Facebook people new commenting system will be a quick install for publishers, with a single line of code. Anyone tried it out already? Anyone can share with his opinion? I’m very curious what do you think about it.

  • (required)
  • (required)