<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Anti spam and general email security in a business environment &#187; twitter</title>
	<atom:link href="http://www.allspammedup.com/tag/twitter/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.allspammedup.com</link>
	<description></description>
	<lastBuildDate>Tue, 07 Sep 2010 14:53:24 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>New Spam/Phishing Campaign Exploits Twitter</title>
		<link>http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/</link>
		<comments>http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/#comments</comments>
		<pubDate>Mon, 28 Jun 2010 13:31:18 +0000</pubDate>
		<dc:creator>Sue Walsh</dc:creator>
				<category><![CDATA[Spam news]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=2668</guid>
		<description><![CDATA[
			
				
			
		
A new spam campaign is exploiting Twitter in an effort to spread fake anti-virus software hawk shady prescription drugs and lead recipients to phishing sites. It began last week and appear to still be going strong.
The emails look like they were sent from Twitter complete with the site’s logo. One version informs the recipient that [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/">New Spam/Phishing Campaign Exploits Twitter</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2010%2F06%2Fnew-spamphishing-campaign-exploits-twitter%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2010%2F06%2Fnew-spamphishing-campaign-exploits-twitter%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p>A new spam campaign is exploiting Twitter in an effort to spread fake anti-virus software hawk shady prescription drugs <a href="http://www.allspammedup.com/wp-content/uploads/2010/06/twitter-bird-logo.jpg"><img class="alignright size-full wp-image-2696" src="http://www.allspammedup.com/wp-content/uploads/2010/06/twitter-bird-logo.jpg" alt="" width="169" height="169" /></a>and lead recipients to phishing sites. It began last week and appear to still be going strong.</p>
<p>The emails look like they were sent from Twitter complete with the site’s logo. One version informs the recipient that an account hijack attempt was detected and instructs them to click on a link to download a “security module”.  The link leads to a fake Twitter site that downloads a trojan that installs a rootkit and a fake anti-virus program called “Protection  Center”.</p>
<p>Another version of the spam tells the recipient the email address associated with their account has been changed and to follow a link to confirm or report a problem. The link leads to a fake Twitter login page designed to steal the user’s login credentials, presumably to send even more spam.</p>
<p>A third less common version of the spam looks like a message from Twitter but displays ads for internet pharmacies and drugs under the Twitter logo. Links in the message lead to the “Canadian Pharmacy” scam sites.</p>
<p>Phishing has become a thriving underground economy. Researchers say nearly 4 billion phishing emails have been sent over the past 12 months and that number is expected to continue to rise. Furthermore, scammers and spammers are continuing to increase their skills making it more crucial than ever for IT departments and end users to continue to increase theirs in order to fight back effectively.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/">New Spam/Phishing Campaign Exploits Twitter</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/&amp;title=New+Spam%2FPhishing+Campaign+Exploits+Twitter" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/&amp;title=New+Spam%2FPhishing+Campaign+Exploits+Twitter" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/&amp;title=New+Spam%2FPhishing+Campaign+Exploits+Twitter&amp;desc=A%20new%20spam%20campaign%20is%20exploiting%20Twitter%20in%20an%20effort%20to%20spread%20fake%20anti-virus%20software%20hawk%20shady%20prescription%20drugs%20and%20lead%20recipients%20to%20phishing%20sites.%20It%20began%20last%20week%20and%20appear%20to%20still%20be%20going%20strong.%0D%0A%0D%0AThe%20emails%20look%20like%20they%20were%20sent%20from%20Twitter%20complete%20with%20the%20site%E2%80%99s%20logo.%20" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/&amp;title=New+Spam%2FPhishing+Campaign+Exploits+Twitter" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=New+Spam%2FPhishing+Campaign+Exploits+Twitter+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/&amp;t=New+Spam%2FPhishing+Campaign+Exploits+Twitter" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2010/06/new-spamphishing-campaign-exploits-twitter/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twitter Grader Hack Highlights Social Network Spam Risks</title>
		<link>http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/</link>
		<comments>http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/#comments</comments>
		<pubDate>Wed, 17 Feb 2010 15:27:14 +0000</pubDate>
		<dc:creator>Paul Cunningham</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[social network]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=2173</guid>
		<description><![CDATA[
			
				
			
		
The security of social networks was thrust into the spotlight yet again this week with the successful hack of the Twitter Grader application run by Hubspot, a maker of social media and internet marketing tools.
The Twitter Grader application uses an algorithm to calculate, or grade, a Twitter user’s ranking among their peers.  This type of [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/">Twitter Grader Hack Highlights Social Network Spam Risks</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2010%2F02%2Ftwitter-grader-hack-highlights-social-network-spam-risks%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2010%2F02%2Ftwitter-grader-hack-highlights-social-network-spam-risks%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><img class="alignright size-full wp-image-2176" src="http://www.allspammedup.com/wp-content/uploads/2010/02/hacker.jpg" alt="hacker" width="250" height="111" />The security of social networks was thrust into the spotlight yet again this week with the successful hack of the Twitter Grader application run by Hubspot, a maker of social media and internet marketing tools.</p>
<p>The Twitter Grader application uses an algorithm to calculate, or grade, a Twitter user’s ranking among their peers.  This type of tool has been very popular with Twitter users who willingly grant access to their Twitter accounts for websites that offer this type of ego-feeding information.</p>
<p>The compromise resulted in thousands of unauthorized messages being sent from Grader users’ Twitter accounts containing a link to a web page that hosted an embedded video.  The content turned out to not be malicious and it has been speculated that this was an attempt to increase the search engine rankings of the website.</p>
<p>The hack was quickly acknowledged by Hubspot who proceeded to take down the Grader application while they investigated the issue.  Grader users are advised to revoke access for Grader to their Twitter accounts and also to consider changing their account password.<span id="more-2173"></span>In this particular incident the fallout is mainly embarrassment for Hubspot and some disgruntled users.  With no serious data breach of Hubspot’s paid customer base the matter will quickly fade into the background with no ongoing attention paid to it.</p>
<p>The potential impact of these sorts of breaches cannot be ignored.  Social networks carry a much higher degree of trust between relative strangers than other online communications.   One of the most popular users of these networks is sharing of interesting links, often masked by URL shortening services.</p>
<p>Simply put, the timing of the unauthorized message may have meant that it was sent by a particular user while they were conversing with an online friend and sharing a series of links with each other.  In that situation the recipient would not hesitate in clicking the spam link as well.</p>
<p>If the link was to a malicious web page that contained a web browser exploit then the number of compromised computers from this one hack would have been enormous.  The sad fact is that many computers connected to the web use outdated, unpatched operating systems, web browsers and other applications.  Even those that are completely up to date may have undisclosed vulnerabilities that hackers can exploit before security researchers can discover and patch them.  One of the most common exploits today is using PDF files.</p>
<p>For a home user a compromised computer can be a moderate inconvenience.  For a business network a compromised computer can be a major disaster.</p>
<p>So what can be done about these threats to businesses?</p>
<p><strong>Technical Solutions</strong> – filtering of social networks to only approved users, blocking of URL shortening sites, and real-time scanning of file downloads.</p>
<p><strong>Human Solutions</strong> – the cornerstone of any network’s security is the level of awareness of the end users to the potential threats that are out there.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/">Twitter Grader Hack Highlights Social Network Spam Risks</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/&amp;title=Twitter+Grader+Hack+Highlights+Social+Network+Spam+Risks" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/&amp;title=Twitter+Grader+Hack+Highlights+Social+Network+Spam+Risks" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/&amp;title=Twitter+Grader+Hack+Highlights+Social+Network+Spam+Risks&amp;desc=The%20security%20of%20social%20networks%20was%20thrust%20into%20the%20spotlight%20yet%20again%20this%20week%20with%20the%20successful%20hack%20of%20the%20Twitter%20Grader%20application%20run%20by%20Hubspot%2C%20a%20maker%20of%20social%20media%20and%20internet%20marketing%20tools.%0D%0A%0D%0AThe%20Twitter%20Grader%20application%20uses%20an%20algorithm%20to%20calculate%2C%20or%20grade%2C%20a%20Twitter%20use" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/&amp;title=Twitter+Grader+Hack+Highlights+Social+Network+Spam+Risks" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Twitter+Grader+Hack+Highlights+Social+Network+Spam+Risks+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/&amp;t=Twitter+Grader+Hack+Highlights+Social+Network+Spam+Risks" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2010/02/twitter-grader-hack-highlights-social-network-spam-risks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ISPs Don&#8217;t Want to be Spam Cops</title>
		<link>http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/</link>
		<comments>http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/#comments</comments>
		<pubDate>Wed, 20 Jan 2010 16:06:26 +0000</pubDate>
		<dc:creator>Paul Cunningham</dc:creator>
				<category><![CDATA[Fighting spam]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[anti spam]]></category>
		<category><![CDATA[anti spam law]]></category>
		<category><![CDATA[Content Filtering]]></category>
		<category><![CDATA[email spam]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[Social Networking]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=2075</guid>
		<description><![CDATA[
			
				
			
		
British ISPs have reacted strongly to the suggestion of Trend Micro CTO David Rand that the ISPs should actively combat the problem of spam on the internet.
Rand’s suggestion is the blocking of TCP port 25 (the port used for SMTP, or email, communications between servers on the internet), making contact with customers who they suspect [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/">ISPs Don&#8217;t Want to be Spam Cops</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2010%2F01%2Fisps-dont-want-to-be-spam-cops%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2010%2F01%2Fisps-dont-want-to-be-spam-cops%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><img class="alignright size-full wp-image-2077" src="http://www.allspammedup.com/wp-content/uploads/2010/01/police.jpg" alt="police" width="250" height="187" />British ISPs have <a target="_blank" href="http://www.ispreview.co.uk/story/2010/01/19/uk-isps-react-angrily-to-trend-micros-block-port-25-spam-solution.html">reacted strongly</a> to the suggestion of Trend Micro CTO David Rand that the ISPs should actively combat the problem of spam on the internet.</p>
<p>Rand’s suggestion is the blocking of TCP port 25 (the port used for SMTP, or email, communications between servers on the internet), making contact with customers who they suspect may be the source of spam outbreaks, as well as stronger government legislation.</p>
<p>The legislation idea has merit, after all the lack of cooperation between government agencies is how many international spam operations manage to go unpunished.  The blocking of SMTP on the other hand is impractical and costly to implement, both from a technical and a service perspective.</p>
<p>The basis of the idea is this.  Customers send mail using SMTP, therefore by blocking SMTP and requiring that customers send mail via the ISP’s mail servers allows close monitoring of email traffic and detection of spam.</p>
<p>The solution is problematic though because many ISP customers, both home users as well as businesses, have perfectly good reasons to not send their email via their ISPs mail servers.  These customers would need to be unblocked from using SMTP, and hence cannot be closely monitored.</p>
<p>The monitoring itself also presents two problems – firstly customers object to having their email correspondence inspected by other parties including their ISP.  Secondly, any false positives could have disastrous consequences if important emails were blocked.  ISPs do not want the exposure to liability if they block an email that results in monetary loss for the sender or recipient.<span id="more-2075"></span>A serious issue is also that of costs.  A higher email load combined with more thorough monitoring means more costs to the ISP for servers and software to do those jobs.  The human resource costs also increase, both in the management of the systems as well as the teams who need to contact and support customers who are suspected of sending spam.</p>
<p>Although email is currently the largest source of spam on the internet there are other forms of spam that are quickly becoming very common that would not be addressed by this solution.  Social networks such as Facebook and Twitter have become rich hunting grounds for spammers and phishers who are able to target victims with highly personalized attacks thanks to the open nature of these networks.</p>
<p>In a world where ISPs block spam email from customers the focus of botnets would simply shift to exploiting social networks and identity theft for the same outcomes.  Because these networks run simply as interactive websites they become impossible to block at the protocol level, and blocking them on a site by site basis would immediately outrage customers.</p>
<p>The British ISP heads who commented are correct in their view that businesses and email administrators need to take the responsibility of blocking spam that is sent to them, rather than expect ISPs to do all the work for them.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/">ISPs Don&#8217;t Want to be Spam Cops</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/&amp;title=ISPs+Don%27t+Want+to+be+Spam+Cops" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/&amp;title=ISPs+Don%27t+Want+to+be+Spam+Cops" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/&amp;title=ISPs+Don%27t+Want+to+be+Spam+Cops&amp;desc=British%20ISPs%20have%20reacted%20strongly%20to%20the%20suggestion%20of%20Trend%20Micro%20CTO%20David%20Rand%20that%20the%20ISPs%20should%20actively%20combat%20the%20problem%20of%20spam%20on%20the%20internet.%0D%0A%0D%0ARand%E2%80%99s%20suggestion%20is%20the%20blocking%20of%20TCP%20port%2025%20%28the%20port%20used%20for%20SMTP%2C%20or%20email%2C%20communications%20between%20servers%20on%20the%20internet%29%2C%20makin" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/&amp;title=ISPs+Don%27t+Want+to+be+Spam+Cops" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=ISPs+Don%27t+Want+to+be+Spam+Cops+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/&amp;t=ISPs+Don%27t+Want+to+be+Spam+Cops" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2010/01/isps-dont-want-to-be-spam-cops/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Weight Loss Scams Reveal Why Spam Works</title>
		<link>http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/</link>
		<comments>http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/#comments</comments>
		<pubDate>Wed, 06 Jan 2010 08:32:39 +0000</pubDate>
		<dc:creator>Paul Cunningham</dc:creator>
				<category><![CDATA[Fighting spam]]></category>
		<category><![CDATA[Spam news]]></category>
		<category><![CDATA[antispam]]></category>
		<category><![CDATA[email spam]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[scams]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=2026</guid>
		<description><![CDATA[
			
				
			
		
Business Week reports that a study by researchers in New York reveals that as many as one in five young, overweight people have been a victim of email spam.
The study revealed some interesting statistics:

88% of overweight individuals reported receiving spam pitching weight loss products, compared to 73% of other respondents
42% of overweight individuals said they [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/">Weight Loss Scams Reveal Why Spam Works</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2010%2F01%2Fweight-loss-scams-reveal-why-spam-works%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2010%2F01%2Fweight-loss-scams-reveal-why-spam-works%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><a target="_blank" href="http://www.businessweek.com/lifestyle/content/healthday/634643.html"><img class="alignright size-full wp-image-2029" src="http://www.allspammedup.com/wp-content/uploads/2010/01/pills.jpg" alt="pills" width="250" height="166" />Business Week</a> reports that a study by researchers in New York reveals that as many as one in five young, overweight people have been a victim of email spam.</p>
<p>The study revealed some interesting statistics:</p>
<ul>
<li>88% of overweight individuals reported receiving spam pitching weight loss products, compared to 73% of other respondents</li>
<li>42% of overweight individuals said they opened the spam, compared to 18% of other respondents</li>
<li>18% of overweight individuals said they bought products promoted in the emails, compared to just 5% of other respondents</li>
</ul>
<p>Firstly why do overweight people receive more weight loss spam?  One theory is that these people are visiting more web sites on that topic than other people, and therefore end up in marketing databases.  This means that the spam is either coming from the website owner, or another party that is given access to the database of email addresses.  This access may be either from selling the list or by using co-registration, which is a legitimate lead-sharing strategy that is often abused by spammers.</p>
<p>For any email marketer a 42% open rate is outstanding.  It means that the subject line for the email was very effective at enticing the recipient to open the email and read more.</p>
<p>For a spammer sending 1,000,000 emails 42% open rates do not mean 420,000 people opened them.  Most of those recipients will never receive the spam due to anti-spam protection on their email server or their computer.  But even a 1% penetration could mean several thousand people open the email.</p>
<p>Finally the conversion rate for overweight people is very good at 18%.  Several hundred conversions of a weight loss product likely to cost $50-$200 is a good day’s pay for the spammer.<span id="more-2026"></span></p>
<p>So what does this tell us about why spam works?  Well like any form of marketing with more accurate targeting comes higher conversions.  Valentines Day spam converts better in January/February, and Christmas spam converts better in November/December.</p>
<p>Interestingly the statistics above are only for email spam.  This type of spam is the most common and is still quite easy to accomplish (for example by requiring an email address submission before revealing the “25 Amazing Weight Loss Tips for 2010”).  Spam is perceived as a big problem and yet email addresses are perceived as low value and are quickly given up.</p>
<p>But the last few years have seen a strong emergence in other types of spam such as in social networks, where the targeting is much easier for spammers because of how much information we make public about ourselves.</p>
<p>Consider how easily a spammer can send messages to people who post “I want to lose weight” on Twitter as a new year’s resolution, sending them a link to those “25 Amazing Weight Loss Tips for 2010” so as to capture their email address.  Or how easily single women aged 35-45 can be targeting with a Facebook ad for weight loss, leading to a female-focused website, and then female-focused follow up email messages.</p>
<p>More accurate targeting means higher conversions.  So why does spam work?  Because we give spammers everything they need to know to make it work.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/">Weight Loss Scams Reveal Why Spam Works</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/&amp;title=Weight+Loss+Scams+Reveal+Why+Spam+Works" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/&amp;title=Weight+Loss+Scams+Reveal+Why+Spam+Works" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/&amp;title=Weight+Loss+Scams+Reveal+Why+Spam+Works&amp;desc=Business%20Week%20reports%20that%20a%20study%20by%20researchers%20in%20New%20York%20reveals%20that%20as%20many%20as%20one%20in%20five%20young%2C%20overweight%20people%20have%20been%20a%20victim%20of%20email%20spam.%0D%0A%0D%0AThe%20study%20revealed%20some%20interesting%20statistics%3A%0D%0A%0D%0A%0988%25%20of%20overweight%20individuals%20reported%20receiving%20spam%20pitching%20weight%20loss%20products%2C%20com" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/&amp;title=Weight+Loss+Scams+Reveal+Why+Spam+Works" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Weight+Loss+Scams+Reveal+Why+Spam+Works+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/&amp;t=Weight+Loss+Scams+Reveal+Why+Spam+Works" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2010/01/weight-loss-scams-reveal-why-spam-works/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>2009, The Year in Spam</title>
		<link>http://www.allspammedup.com/2009/12/2009-the-year-in-spam/</link>
		<comments>http://www.allspammedup.com/2009/12/2009-the-year-in-spam/#comments</comments>
		<pubDate>Thu, 31 Dec 2009 14:24:48 +0000</pubDate>
		<dc:creator>Paul Cunningham</dc:creator>
				<category><![CDATA[Spam news]]></category>
		<category><![CDATA[anti spam law]]></category>
		<category><![CDATA[botnets]]></category>
		<category><![CDATA[cybercrime]]></category>
		<category><![CDATA[email spam]]></category>
		<category><![CDATA[Social Networking]]></category>
		<category><![CDATA[spammers]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=1977</guid>
		<description><![CDATA[
			
				
			
		
It has been a big year for the internet with social networks continuing to grow at an amazing pace, search engines scrambling to keep pace with user demand for fresh news, and as always spam and malware causing havoc around the world.
A look at the year’s major spam event shows some consistent trends.

Season spam such [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/12/2009-the-year-in-spam/">2009, The Year in Spam</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F12%2F2009-the-year-in-spam%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F12%2F2009-the-year-in-spam%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><img class="alignright size-full wp-image-1978" src="http://www.allspammedup.com/wp-content/uploads/2009/12/fireworks.jpg" alt="fireworks" width="250" height="187" />It has been a big year for the internet with social networks continuing to grow at an amazing pace, search engines scrambling to keep pace with user demand for fresh news, and as always spam and malware causing havoc around the world.</p>
<p>A look at the year’s major spam event shows some consistent trends.</p>
<ul>
<li>Season spam such as Valentine’s Day and Christmas remains predictable</li>
<li>Spammers quickly move to exploit any major global news events such as celebrity deaths and wars</li>
<li>Spam networks are becoming more distributed and resistant to shutdown attempts</li>
<li>Social networking spam is on the rise as spammers attempt to exploit the perceived trust between people and their online “friends”</li>
<li>Human error continues to be a big part of the spam landscape, both through inadvertent data exposure and through people falling victim to social engineering</li>
</ul>
<p>Here is a look at some of these major events throughout the year.</p>
<h2>January</h2>
<p>Scams promising <a href="http://www.allspammedup.com/2009/01/government-money-scams-the-newest-spam-in-town/">free money</a> from US government grants attempts to exploit the news of corporate bailouts and the increase in unemployment.</p>
<p><a href="http://www.allspammedup.com/2009/01/cnn-spam-exploits-israel-and-hamas-conflict/">Fake CCN news alerts</a> take advantage of a clash between Israel and Hamas.</p>
<p>Global spam volume begin <a href="http://www.allspammedup.com/2009/01/spam-up-159-since-november-2008/">returning to normal levels</a> after the McColo shutdown of November 2008.</p>
<p>The inauguration of US <a href="http://www.allspammedup.com/2009/01/new-malicious-spam-attack-claims-obama-resigned/">President Barack Obama</a> leads to a wave of spam spreading rumours that his inauguration is invalid or that he resigned and attempts to trick users in downloading malware.</p>
<p>Spammers also get a head start on Valentine’s Day with <a href="http://www.allspammedup.com/2009/01/new-valentines-day-spam-attack-underway/">malware-carrying love letters</a>.</p>
<h2>February</h2>
<p>Human error at Google marked the <a href="http://www.allspammedup.com/2009/02/google-mistakenly-labels-the-entire-internet-as-malicious/">entire internet unsafe</a> (is it really that far from the truth?).</p>
<p>The poor economy continues to cause unemployment to increase, leading to a new wave of <a href="http://www.allspammedup.com/2009/02/spam-targeting-job-seekers/">fake job spam</a>.</p>
<p>Microsoft offeres a <a href="http://www.allspammedup.com/2009/02/microsoft-offers-250000-botnet-bounty/">$250,000 reward</a> for information leading to the arrest and conviction of the Conficker worm creators.</p>
<h2>March</h2>
<p>Citibank falls for a <a href="http://www.allspammedup.com/2009/03/citibank-falls-for-nigerian-scam/">Nigerian 419 scam</a> to the tune of $27 million, but is saved when the transfers fail due to invalid account numbers provided by the scammers.<span id="more-1977"></span></p>
<p>The BBC gets itself into hot water when it <a href="http://www.allspammedup.com/2009/03/bbc-buys-botnet/">buys a botnet</a> to research a story and then uses it to send messages to potential victims.</p>
<h2>April</h2>
<p>Security vendor <a href="http://www.allspammedup.com/2009/04/bcc-blues/">PGP exposes hundreds of customer email addresses</a> by not using the BCC field for a broadcast email.</p>
<p><a href="http://www.allspammedup.com/2009/04/spam-levels-now-at-pre-mccolo-levels/">Global spam volume</a> makes a complete return to the level it was at prior to the McColo shutdown.</p>
<p>Researchers discover the <a href="http://www.allspammedup.com/2009/04/first-ever-sms-virus-discovered/">first ever SMS virus</a> in the wild, capable of spreading between mobile phones via text messages.</p>
<p>Twitter suffers its first major malware outbreak due to a <a href="http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/">cross-site scripting attack</a> by a bored teenager.</p>
<h2>May</h2>
<p>The <a href="http://www.allspammedup.com/2009/05/flu-outbreak-set-to-be-newest-target-for-spammers/">Swine Flu outbreak</a> gives spammers a new hot topic to exploit in their latest scams, with fake drugs and “survival guides” offers flooding mailboxes.</p>
<p>The Cutwail botnet, previously seen during the Valentine’s Day spam season, makes a fresh start pushing <a href="http://www.allspammedup.com/2009/05/cutwail-botnet-flooding-net-with-weight-loss-spam/">fake weight loss products</a>, and Acai Berry scams appear all over the internet.</p>
<h2>June</h2>
<p><a href="http://www.allspammedup.com/2009/06/air-france-crash-sparks-malware-and-spam-outbreak/">Air France flight 446</a> crashed in the Atlantic ocean, giving spammer a new tragedy to exploit.</p>
<p>A UK furniture company makes a <a href="http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/">major PR blunder</a> by using Twitter hashtags for the Iranian conflict to promote their products.</p>
<p><a href="http://www.allspammedup.com/2009/06/spammers-already-exploiting-michael-jacksons-tragic-death/">Michael Jackson dies</a>, nearly causing an internet meltdown as search engines, social networks and news websites struggled to copy with the unprecedented burst in traffic.  Spammers quickly jumped on the public thirst for details about Jackson’s death with new spam messages.</p>
<h2>July</h2>
<p>The ZBot Trojan appears in a new attack that uses a <a href="http://www.allspammedup.com/2009/07/new-malware-attack-pretends-to-be-a-microsoft-update/">fake Microsoft update</a> notice to trick users.</p>
<p>A botnet launches a major <a href="http://www.allspammedup.com/2009/07/botnet-launches-attack-against-us-government-websites/">DDoS attack against US government websites</a> to coincide with the July 4<sup>th</sup> holiday.</p>
<p>Spammers begin using free URL shortening services to <a href="http://www.allspammedup.com/2009/07/url-shortening-services-exploited-by-spammers/">bypass spam filters</a>.</p>
<h2>August</h2>
<p>Another <a href="http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/">Twitter phishing/spam</a> combo attack appears causing disruption for users.</p>
<p>Twitter, Facebook and other sites were all knocked offline for several hours due to a targeted <a href="http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/">DDoS attack against a pro-Georgian blogger</a>.  The event was so prominent in the news that spammers began exploiting it with email and search engine keyword spam to cause further denial of service and compromise more computers.</p>
<p>Another <a href="http://www.allspammedup.com/2009/08/isp-shutdown-does-little-damage-to-the-cutwail-botnet/">spammer ISP is shutdown</a> but this time the effect is nowhere near as successful as when McColo was taken offline, suggesting spammers are building more resilience into their networks.</p>
<h2>September</h2>
<p>A South Australian woman shares her experience of being the victim of identity theft when her <a href="http://www.allspammedup.com/2009/09/facebook-friends-lead-to-big-money-scams/">Facebook account is hacked</a> and used to scam money from her friends.</p>
<p>Popular blogging software <a href="http://www.allspammedup.com/2009/09/new-worm-taking-aim-at-wordpress/">WordPress becomes the target of a new worm</a> that attempts to insert spam links in thousands of blogs.</p>
<p>A new <a href="http://www.allspammedup.com/2009/09/new-koobface-varient-in-the-wild/">Koobface worm</a> variant appears targeting Facebook users.</p>
<h2>October</h2>
<p>A court order leads to an innocent Gmail user losing their email account when Google is forced to close it down.  The court order was granted after a <a href="http://www.allspammedup.com/2009/10/bank-forces-google-to-shut-down-a-gmail-account-after-data-breach/">bank employee accidentally emails customer information</a> to the Gmail account.</p>
<p>A list of over<a href="http://www.allspammedup.com/2009/10/secumassive-data-breach-affecting-hotmail-yahoo-and-gmail-users-revealed/"> 50,000 email addresses and passwords</a> for major online web and email services appears on the internet.</p>
<p>A thriving marketplace of <a href="http://www.allspammedup.com/2009/10/open-source-ethos-infects-malware-community/">open source malware</a> is uncovered by security researchers.</p>
<p><a href="http://www.allspammedup.com/2009/10/geocities-shutdown-closes-door-on-spammers/">Geocities shuts down</a>, taking with it thousands of spammer’s websites.</p>
<p>Facebook wins a massive $711 million judgement again one of the <a href="http://www.allspammedup.com/2009/10/facebook-wins-suit-against-spammer/">world’s biggest spammers</a>.</p>
<h2>November</h2>
<p>The first <a href="http://www.allspammedup.com/2009/11/tis-the-season-for-christmas-spam/">Christmas season spam</a> starts to appear to exploit the rising trend in online shopping.</p>
<p>Researchers successfully kill the <a href="http://www.allspammedup.com/2009/11/researchers-knock-mega-d-botnet-offline/">Mega-D botnet</a>.</p>
<p><a href="http://www.allspammedup.com/2009/11/new-spam-campaign-targets-unemployedexploits-twitter/">Twitter job spam</a> starts appearing promoting “get rich quick” schemes to exploit high unemployment rates.</p>
<p>An Australian amateur programmer writes an <a href="http://www.allspammedup.com/2009/11/virus-variant-turns-iphone-into-zombie/">iPhone virus</a> that causes relatively harmless infection on jailbroken iPhones.  His code is quickly repurposed by people with more malicious intent, and a security vendor is criticized by the wider community for rewarding him by offering him a job.</p>
<h2>December</h2>
<p>A New Zealand man is fined $15 million by the US FTC for <a href="http://www.allspammedup.com/2009/12/u-s-fines-spammer-15-million/">operating a worldwide spam gang</a>.  The same man faces charges in Australia soon after.</p>
<p>The Koobface worm adds a Christmas theme to its <a href="http://www.allspammedup.com/2009/12/new-koobface-worm-duping-facebook-users/">Facebook phishing</a> attempts.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/12/2009-the-year-in-spam/">2009, The Year in Spam</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/12/2009-the-year-in-spam/&amp;title=2009%2C+The+Year+in+Spam" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/12/2009-the-year-in-spam/&amp;title=2009%2C+The+Year+in+Spam" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/12/2009-the-year-in-spam/&amp;title=2009%2C+The+Year+in+Spam&amp;desc=It%20has%20been%20a%20big%20year%20for%20the%20internet%20with%20social%20networks%20continuing%20to%20grow%20at%20an%20amazing%20pace%2C%20search%20engines%20scrambling%20to%20keep%20pace%20with%20user%20demand%20for%20fresh%20news%2C%20and%20as%20always%20spam%20and%20malware%20causing%20havoc%20around%20the%20world.%0D%0A%0D%0AA%20look%20at%20the%20year%E2%80%99s%20major%20spam%20event%20shows%20some%20consistent%20" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/12/2009-the-year-in-spam/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/12/2009-the-year-in-spam/&amp;title=2009%2C+The+Year+in+Spam" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/12/2009-the-year-in-spam/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=2009%2C+The+Year+in+Spam+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/12/2009-the-year-in-spam/&amp;t=2009%2C+The+Year+in+Spam" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/12/2009-the-year-in-spam/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Botnets Now On Twitter</title>
		<link>http://www.allspammedup.com/2009/08/botnets-now-on-twitter/</link>
		<comments>http://www.allspammedup.com/2009/08/botnets-now-on-twitter/#comments</comments>
		<pubDate>Wed, 19 Aug 2009 12:19:18 +0000</pubDate>
		<dc:creator>Paul Cunningham</dc:creator>
				<category><![CDATA[Fighting spam]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[botnets]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=1382</guid>
		<description><![CDATA[
			
				
			
		
The Sydney Morning Herald reports that security researchers investigating the recent Twitter spam and denial of service attacks found at least one account that was using Twitter to control a botnet.
          &#8220;Jose Nazario with Arbor Networks said he found a Twitter account that was used to send out what looked like garbled messages. But they [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/08/botnets-now-on-twitter/">Botnets Now On Twitter</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F08%2Fbotnets-now-on-twitter%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F08%2Fbotnets-now-on-twitter%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><img class="alignright size-full wp-image-1385" style="margin: 10px;" title="Botnets on Twitter" src="http://www.allspammedup.com/wp-content/uploads/2009/08/1064377_37850131.jpg" alt="1064377_37850131" width="250" height="178" />The <a target="_blank" href="http://www.smh.com.au/technology/security/hackers-using-twitter-to-control-infected-pcs-20090817-en5r.html">Sydney Morning Herald</a> reports that security researchers investigating the recent Twitter spam and denial of service attacks found at least one account that was using Twitter to control a botnet.</p>
<blockquote><p><em>          &#8220;Jose Nazario with Arbor Networks said he found a Twitter account that was used to send out what looked like garbled messages. But they were actually commands for computers in a botnet to visit malicious websites, where they download programs that steal banking passwords.&#8221;</em></p></blockquote>
<p>Social networking services such as Twitter have recently become associated with <a href="http://www.allspammedup.com/2009/04/social-networking-as-a-spam-vector/">spam and phishing attacks</a> due to the lack of inbuilt protection from malicious users.  This new development of using Twitter messages to control botnets takes the issue another step forward.<span id="more-1382"></span>Typically a botnet is made up of computers connected to broadband connections that have been compromised in some way, usually by either tricking the owner into installing malicious software (a browser toolbar, fake antivirus software, or a porn dialer) or by exploiting a vulnerability in the operating system or web browser that they are using.  A lot of these attacks occurred over email, which lead to the need for the email anti-spam protection software most of us are using today (either on our own computers or on the email servers of our businesses and ISPs).</p>
<p>Botnets were often controlled using IRC channels, which were quick and easy for spammers to set up <a href="http://www.allspammedup.com/2009/07/international-spam-fighting/">anywhere in the world</a> and control remotely.  Over time IRC traffic became almost synonymous with botnets, and despite its legitimate intended uses it is really only used by tech enthusiasts so most businesses simply block IRC traffic at their firewall.  Many consumer broadband modems and routers also block IRC traffic by default.</p>
<p>Twitter on the other hand simply works over the HTTP protocol, which is almost always open on business and consumer firewalls.  Most Twitter clients will even work seamlessly through web proxies.  This makes the use of Twitter for controlling botnets a very serious problem.</p>
<p>There is no doubt that social networking such as Twitter can be a valuable tool for businesses to use to communicate with their customers.  However the lack of content filtering exposes the end user to attacks such as messages with URLs that lead to web pages designed to trick the user or exploit a software vulnerability.  The URLs are often masked with <a href="http://www.allspammedup.com/2009/07/url-shortening-services-exploited-by-spammers/">URL shortening services</a> making malicious URLs more difficult to detect at a glance.  Even a message from a known, trusted friend may be an attack because of the tendency for people to willingly give away their Twitter password to third party services.</p>
<p>The security challenge here is complex.  Businesses would like to trust their users to engage in social networking for work and for pleasure, but even the best online security training for staff will still leave gaps as people&#8217;s awareness and attentiveness wanes over time.  Blocking the services entirely is undesirable, which just leaves <a href="http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/">blocking of URL shortening services in email</a> and at the web proxy as a counter-measure.  This of course cripples one of Twitter&#8217;s more useful benefits, the ability to quickly share interesting and useful links.</p>
<p>Ultimately the best on-premises solution a business can implement will still be vulnerable without better inbuilt security measures for social networks.  But as long as these networks remain free and open for anyone to use they will often lack the resources to invest in security even as they continue to attract malicious users.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/08/botnets-now-on-twitter/">Botnets Now On Twitter</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/08/botnets-now-on-twitter/&amp;title=Botnets+Now+On+Twitter" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/08/botnets-now-on-twitter/&amp;title=Botnets+Now+On+Twitter" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/08/botnets-now-on-twitter/&amp;title=Botnets+Now+On+Twitter&amp;desc=The%20Sydney%20Morning%20Herald%20reports%20that%20security%20researchers%20investigating%20the%20recent%20Twitter%20spam%20and%20denial%20of%20service%20attacks%20found%20at%20least%20one%20account%20that%20was%20using%20Twitter%20to%20control%20a%20botnet.%0D%0A%C2%A0%C2%A0%C2%A0%C2%A0%C2%A0%C2%A0%C2%A0%C2%A0%C2%A0%20%22Jose%20Nazario%20with%20Arbor%20Networks%20said%20he%20found%20a%20Twitter%20account%20that%20was%20used%20t" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/08/botnets-now-on-twitter/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/08/botnets-now-on-twitter/&amp;title=Botnets+Now+On+Twitter" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/08/botnets-now-on-twitter/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Botnets+Now+On+Twitter+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/08/botnets-now-on-twitter/&amp;t=Botnets+Now+On+Twitter" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/08/botnets-now-on-twitter/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>DDoS Attack Against Georgian Blogger Inspires Spam, Malware Attacks</title>
		<link>http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/</link>
		<comments>http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/#comments</comments>
		<pubDate>Wed, 12 Aug 2009 12:43:11 +0000</pubDate>
		<dc:creator>Sue Walsh</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Spam news]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=1359</guid>
		<description><![CDATA[
			
				
			
		
Hackers and spammers are taking advantage of the DDoS attack that hit Twitter and Facebook last week. The attack was apparently targeted at a single user of the sites, a Georgian blogger named Cyxymu. Cyxymu has used the sites to speak out against the 2008 war between Russia and his country.
Hackers are using the high [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/">DDoS Attack Against Georgian Blogger Inspires Spam, Malware Attacks</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F08%2Fddos-attack-against-georgian-blogger-inspires-spam-malware-attacks%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F08%2Fddos-attack-against-georgian-blogger-inspires-spam-malware-attacks%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><img class="alignright size-full wp-image-1363" title="word-sell-spammer" src="http://www.allspammedup.com/wp-content/uploads/2009/08/word-sell-spammer.jpg" alt="word-sell-spammer" width="190" height="145" />Hackers and spammers are taking advantage of the DDoS attack that hit Twitter and Facebook last week. The attack was apparently targeted at a single user of the sites, a Georgian blogger named Cyxymu. Cyxymu has used the sites to speak out against the 2008 war between Russia and his country.</p>
<p>Hackers are using the high profile nature of the attack to spread scareware. They are poisoning search engine results so that people searching using the keyword Cyxymu will be given results that redirect to malicious sites that push rogue anti-virus programs.</p>
<p><span id="more-1359"></span>Spammers are also exploiting the attack. A new flood of spam has been detected that claims to be a grammatically garbled apology from Cyzymu and links to his blog. Experts say it is likely an attempt by those behind the DDoS attack to further alienate him and get him in trouble. His actual email address was spoofed, and as a result his email box was probably flooded with bounce messages, out of office auto responders, and similar noise. This, experts say, was the attacker’s way of sending a message to Cyzymu, and the link to the blog is an attempt to send a flood of traffic to the site in hopes of crashing it.</p>
<p>While it’s not yet known exactly who is responsible for the initial DDoS attack or the spam and malware attacks spawned from it, Cyzymu has told news outlets that he believes the Kremlin is behind it all.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/">DDoS Attack Against Georgian Blogger Inspires Spam, Malware Attacks</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/&amp;title=DDoS+Attack+Against+Georgian+Blogger+Inspires+Spam%2C+Malware+Attacks" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/&amp;title=DDoS+Attack+Against+Georgian+Blogger+Inspires+Spam%2C+Malware+Attacks" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/&amp;title=DDoS+Attack+Against+Georgian+Blogger+Inspires+Spam%2C+Malware+Attacks&amp;desc=Hackers%20and%20spammers%20are%20taking%20advantage%20of%20the%20DDoS%20attack%20that%20hit%20Twitter%20and%20Facebook%20last%20week.%20The%20attack%20was%20apparently%20targeted%20at%20a%20single%20user%20of%20the%20sites%2C%20a%20Georgian%20blogger%20named%20Cyxymu.%20Cyxymu%20has%20used%20the%20sites%20to%20speak%20out%20against%20the%202008%20war%20between%20Russia%20and%20his%20country.%0D%0A%0D%0AHack" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/&amp;title=DDoS+Attack+Against+Georgian+Blogger+Inspires+Spam%2C+Malware+Attacks" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=DDoS+Attack+Against+Georgian+Blogger+Inspires+Spam%2C+Malware+Attacks+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/&amp;t=DDoS+Attack+Against+Georgian+Blogger+Inspires+Spam%2C+Malware+Attacks" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/08/ddos-attack-against-georgian-blogger-inspires-spam-malware-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twitter hit by spam wave</title>
		<link>http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/</link>
		<comments>http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/#comments</comments>
		<pubDate>Mon, 10 Aug 2009 13:06:12 +0000</pubDate>
		<dc:creator>Dan Blacharski</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Spam news]]></category>
		<category><![CDATA[scam]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=1345</guid>
		<description><![CDATA[
			
				
			
		
Twitter has been in the news the past few days, and it&#8217;s not been pretty. On Wednesday, the Mashable blog reported that scads of Twitter accounts were seen sending out Twitter spam with URL links all at once. The spam was not being generated by run-of-the-mill spam accounts that were created just for the purpose [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/">Twitter hit by spam wave</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F08%2Ftwitter-hit-by-spam-wave%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F08%2Ftwitter-hit-by-spam-wave%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><img class="alignright size-full wp-image-1350" style="margin: 10px;" title="Twitter hit by DOS attack" src="http://www.allspammedup.com/wp-content/uploads/2009/08/twitter_icon2.png" alt="Twitter hit by DOS attack" width="205" height="205" />Twitter has been in the news the past few days, and it&#8217;s not been pretty. On Wednesday, the Mashable blog reported that scads of Twitter accounts were seen sending out Twitter spam with URL links all at once. The spam was not being generated by run-of-the-mill spam accounts that were created just for the purpose of disseminating spam, but rather, they were regular accounts that had obviously been hijacked. Spammy tweets had been going out by the hundreds, making it appear to many people that their friends were recommending a get-rich-quick scheme, which of course, they were not.</p>
<p><span id="more-1345"></span>There has been very little news about the Twitter spam attack other than the one notice on Mashable, which has been circulated far and wide. Twitter&#8217;s own blog hasn&#8217;t said anything about it&#8211;but then again, the past day, Twitter has been hard to find, since it got hit by a denial-of-service attack yesterday and the site went down. There may be no connection between the denial-of-service attack and the wave of spam&#8211;Twitter is after all, what you might call an &#8220;attractive nuisance&#8221; that attracts all kinds of evil-doers.</p>
<p>Given these recent attacks, one asks should Twitter be allowed in the workplace? There&#8217;s no clear answer, except for &#8220;it depends.&#8221; Marketing people use it to good advantage to keep partners and customers informed. But one thing&#8217;s clear, workers need to be informed of the potential risks. Already, there have been many cases of malicious Twitter spam that contains links to nasty web sites that contain malware that could infect the computer or the entire network. Follow Twitter links at your own risk. This is especially dangerous as Twitter uses the abbreviated URLs, making it difficult to tell whether you&#8217;re being sent to a legitimate site.</p>
<p>This isn&#8217;t the first time compromised Twitter accounts have been used to send out spam. Just a few months ago in March, 750 accounts were hijacked to send links to porn sites.  And the spammers are on top of Twitter, and they&#8217;re apparently promoting its use at &#8220;Spam University,&#8221; or wherever it is they go to learn their trade. There are already commercial Twitter spamming tools out that can generate bogus Twitter accounts automatically for sending out ads.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/">Twitter hit by spam wave</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/&amp;title=Twitter+hit+by+spam+wave" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/&amp;title=Twitter+hit+by+spam+wave" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/&amp;title=Twitter+hit+by+spam+wave&amp;desc=Twitter%20has%20been%20in%20the%20news%20the%20past%20few%20days%2C%20and%20it%27s%20not%20been%20pretty.%20On%20Wednesday%2C%20the%20Mashable%20blog%20reported%20that%20scads%20of%20Twitter%20accounts%20were%20seen%20sending%20out%20Twitter%20spam%20with%20URL%20links%20all%20at%20once.%20The%20spam%20was%20not%20being%20generated%20by%20run-of-the-mill%20spam%20accounts%20that%20were%20created%20just%20fo" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/&amp;title=Twitter+hit+by+spam+wave" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Twitter+hit+by+spam+wave+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/&amp;t=Twitter+hit+by+spam+wave" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/08/twitter-hit-by-spam-wave/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Study Finds Phishing Scams Fool Over 55,000 a Month</title>
		<link>http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/</link>
		<comments>http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/#comments</comments>
		<pubDate>Thu, 06 Aug 2009 12:43:55 +0000</pubDate>
		<dc:creator>Sue Walsh</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Spam news]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[blogs]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=1340</guid>
		<description><![CDATA[
			
				
			
		
A new study says phishing scams make up 7% of all spam sent and that on average, 55,000 people a month fall for them and give up their personal info. Social networks such as Twitter and Facebook are an increasingly popular target for phishers. Twitter has been hit by two phishing attacks lately. One, the [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/">Study Finds Phishing Scams Fool Over 55,000 a Month</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F08%2Fstudy-finds-phishing-scams-fool-over-55000-a-month%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F08%2Fstudy-finds-phishing-scams-fool-over-55000-a-month%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><img class="alignright size-full wp-image-1341" title="phishing-2" src="http://www.allspammedup.com/wp-content/uploads/2009/08/phishing-2.jpg" alt="phishing-2" width="120" height="166" />A new study says phishing scams make up 7% of all spam sent and that on average, 55,000 people a month fall for them and give up their personal info. Social networks such as Twitter and Facebook are an increasingly popular target for phishers. Twitter has been hit by two phishing attacks lately. One, the Twitter Porn Name scam, claimed to be a seemingly harmless game where Twitter users were told to put the name of their first pet with their mother’s maiden name and/or first street they lived on to get their “porn name” and then tweet it. Those particular pieces of information are gold to a phisher because they are the answers to the questions most websites ask when a user needs to retrieve or change their password. The second scam was the TwitViewer scam. Users got a tweet inviting them to check out the TwitViewer site to find out the last 200 people who visited their Twitter profile. The site asked for their Twitter name and password. Once entered the visitor was shown a screen full of thumbnails that claimed to be those of the last 200 people that had visited their profile. They weren’t, they were just random people, and the visitor found their account spammed everyone they were following and Twitter at large with the same invite they had responded to, and if they clicked on any of the thumbnails their account automatically followed them. Twitter claims to be working on tightening security but their recent roll out of their new URL blocking system shows they have a long way to go.</p>
<p><span id="more-1340"></span>Phishing attempts in email are still rising as well. Most of these attacks target banks and other financial institutions; in fact the top 2 targets of phishing attempts between January and June of this year were Bank of America and Paypal. While in the past phishing emails and the fake sites they lead to could be easily spotted due to their extremely poor grammar and sloppy formatting, experts are finding that more recent phishing attacks have shown a sharp rise in attention to detail with nearly perfect layouts and error-free grammar. Of course they still can’t hide the true destination of their fake URLS though. Hover your cursor over the link (don’t click) and the real URL will be revealed in the information bar.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/">Study Finds Phishing Scams Fool Over 55,000 a Month</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/&amp;title=Study+Finds+Phishing+Scams+Fool+Over+55%2C000+a+Month" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/&amp;title=Study+Finds+Phishing+Scams+Fool+Over+55%2C000+a+Month" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/&amp;title=Study+Finds+Phishing+Scams+Fool+Over+55%2C000+a+Month&amp;desc=A%20new%20study%20says%20phishing%20scams%20make%20up%207%25%20of%20all%20spam%20sent%20and%20that%20on%20average%2C%2055%2C000%20people%20a%20month%20fall%20for%20them%20and%20give%20up%20their%20personal%20info.%20Social%20networks%20such%20as%20Twitter%20and%20Facebook%20are%20an%20increasingly%20popular%20target%20for%20phishers.%20Twitter%20has%20been%20hit%20by%20two%20phishing%20attacks%20lately.%20One" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/&amp;title=Study+Finds+Phishing+Scams+Fool+Over+55%2C000+a+Month" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Study+Finds+Phishing+Scams+Fool+Over+55%2C000+a+Month+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/&amp;t=Study+Finds+Phishing+Scams+Fool+Over+55%2C000+a+Month" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/08/study-finds-phishing-scams-fool-over-55000-a-month/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twitter Users Hit By Malicious TwitViewer Spam</title>
		<link>http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/</link>
		<comments>http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/#comments</comments>
		<pubDate>Tue, 04 Aug 2009 14:45:45 +0000</pubDate>
		<dc:creator>Sue Walsh</dc:creator>
				<category><![CDATA[Spam news]]></category>
		<category><![CDATA[anti spam]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[phishing scam]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=1323</guid>
		<description><![CDATA[
			
				
			
		
Twitter users were hit with a spam attack over the weekend. It started with a simple question: &#8220;Want to know who’s stalking you on twitter!?” and a link to TwitViewer, a site that claimed it would show them the last 200 people that visited their Twitter profile. The problem was that TwitViewer demanded their Twitter [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/">Twitter Users Hit By Malicious TwitViewer Spam</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F08%2Ftwitter-users-hit-by-malicious-twitviewer-spam%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F08%2Ftwitter-users-hit-by-malicious-twitviewer-spam%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p>Twitter users were hit with a spam attack over the weekend. It started with a simple question: &#8220;Want to know who’s <img class="alignright size-full wp-image-1324" title="twitter1" src="http://www.allspammedup.com/wp-content/uploads/2009/08/twitter1.jpg" alt="twitter1" width="256" height="80" />stalking you on twitter!?” and a link to TwitViewer, a site that claimed it would show them the last 200 people that visited their Twitter profile. The problem was that TwitViewer demanded their Twitter username and password in order to do so.</p>
<p>Those that did so had their Twitter account promptly spam everyone they are following with the same question and link, and if they happened to click on any of the people in the gallery of thumbnails the site claims are people that visited their profile (but they didn’t-there is no way for a site to be able to collect that kind of information), their account automatically followed them-and of course spammed them with the TwitViewer link. All in all a very slick phishing scheme.<span id="more-1323"></span></p>
<p>How do your users protect themselves? Simple-tell them to never ever give their usernames, passwords or any other personal info out to sites like TwitViewer and better yet, to be very careful what links they click on in their Twitter feeds. This is admittedly hard to do thanks to the URL shortening services that are a must because of Twitter’s strict 140 character limit. A good rule of thumb is to never click on links offered from anyone you don’t know very well.</p>
<p>The good news is that the TwitViewer site is now down, but the bad news is the site owners say they will return with a new domain.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/">Twitter Users Hit By Malicious TwitViewer Spam</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/&amp;title=Twitter+Users+Hit+By+Malicious+TwitViewer+Spam" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/&amp;title=Twitter+Users+Hit+By+Malicious+TwitViewer+Spam" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/&amp;title=Twitter+Users+Hit+By+Malicious+TwitViewer+Spam&amp;desc=Twitter%20users%20were%20hit%20with%20a%20spam%20attack%20over%20the%20weekend.%20It%20started%20with%20a%20simple%20question%3A%20%22Want%20to%20know%20who%E2%80%99s%20stalking%20you%20on%20twitter%21%3F%E2%80%9D%20and%20a%20link%20to%20TwitViewer%2C%20a%20site%20that%20claimed%20it%20would%20show%20them%20the%20last%20200%20people%20that%20visited%20their%20Twitter%20profile.%20The%20problem%20was%20that%20TwitViewer%20d" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/&amp;title=Twitter+Users+Hit+By+Malicious+TwitViewer+Spam" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Twitter+Users+Hit+By+Malicious+TwitViewer+Spam+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/&amp;t=Twitter+Users+Hit+By+Malicious+TwitViewer+Spam" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/08/twitter-users-hit-by-malicious-twitviewer-spam/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Prevent Phishing by Blocking URL Shortening Services</title>
		<link>http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/</link>
		<comments>http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/#comments</comments>
		<pubDate>Wed, 15 Jul 2009 13:08:59 +0000</pubDate>
		<dc:creator>Paul Cunningham</dc:creator>
				<category><![CDATA[Exchange Server]]></category>
		<category><![CDATA[Fighting spam]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[URL Shortening]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=1233</guid>
		<description><![CDATA[
			
				
			
		
It was reported recently that popular URL shortening services are being exploited by spammers to circumvent common spam filters and trick users into following links to malicious web sites.  The explosion in popularity of these services is largely due to the growth in the number of people using Twitter, a micro-blogging service that limits users [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/">Prevent Phishing by Blocking URL Shortening Services</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F07%2Fprevent-phishing-by-blocking-url-shortening-services%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F07%2Fprevent-phishing-by-blocking-url-shortening-services%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p>It was reported recently that popular <a href="http://www.allspammedup.com/2009/07/url-shortening-services-exploited-by-spammers/">URL shortening services are being exploited by spammers</a> to circumvent common spam filters and trick users into following links to malicious web sites.  The explosion in popularity of these services is largely due to the growth in the number of people using Twitter, a micro-blogging service that limits users to messages of 140 characters or less.</p>
<p>URL shortening services allow Twitter users to share URLs with each other without concern for the length of the URL.  For example, <strong>http://www.veryinterestingwebsite.com/funny-video</strong> (49 characters long) can be shortened to <strong>http://tr.im/s74hs</strong> (a mere 18 characters long).  There is no doubting that this is convenient for services such as Twitter, but it really serves no useful purpose for normal email communication.</p>
<p><span id="more-1233"></span>As Microsoft&#8217;s <a target="_blank" href="http://blogs.msdn.com/tzink/archive/2009/07/10/it-turns-out-that-twitter-spam-is-possible.aspx">Terry Zink points out</a>:</p>
<p><em>&#8220;I checked out all of these sites&#8230; and I couldn&#8217;t believe the insecurity running on them! It was unreal! All I had to do was enter in a URL, click the button and bam &#8212; I had a compressed URL ready for me to use.</em></p>
<p><em>There was no CAPTCHA on the site either, so all that would need to be done is have a spammer write a script to plug tons of these things in there. A spam filter could not easily key on the URL in the message to block the message since the root domain is all the same; the filter would have to travel through to the site and then extract the URL to see if it was good or not.&#8221;</em></p>
<p>In other words, to safely check each shortened URL that is in an email message the anti-spam server would need to follow that URL to the URL shortening service and be redirected to the real URL that it leads to.  This is not a trivial amount of time and computational effort, especially for a server checking hundreds of thousands of email messages every day.</p>
<p>So why permit them at all?</p>
<p>Some email users may be using these services to share perfectly harmless URLs in messages but it is a fairly pointless exercise because:</p>
<p>a) It raises suspicion that the real URL is being hidden for malicious reasons; and</p>
<p>b) There is no character limit on email messages so no compelling reason to use shortened URLs to begin with.</p>
<p>Given these two points, and the risks that these services are presenting, some email administrators are simply blocking all messages containing shortened URLs.  Lists of popular URL shortening services such as <a target="_blank" href="http://mashable.com/2008/01/08/url-shortening-services/">this one at Mashable</a> can be found by a simple <a target="_blank" href="http://www.google.com.au/search?q=list+of+url+shortening+services">Google search</a>.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/">Prevent Phishing by Blocking URL Shortening Services</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/&amp;title=Prevent+Phishing+by+Blocking+URL+Shortening+Services" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/&amp;title=Prevent+Phishing+by+Blocking+URL+Shortening+Services" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/&amp;title=Prevent+Phishing+by+Blocking+URL+Shortening+Services&amp;desc=It%20was%20reported%20recently%20that%20popular%20URL%20shortening%20services%20are%20being%20exploited%20by%20spammers%20to%20circumvent%20common%20spam%20filters%20and%20trick%20users%20into%20following%20links%20to%20malicious%20web%20sites.%C2%A0%20The%20explosion%20in%20popularity%20of%20these%20services%20is%20largely%20due%20to%20the%20growth%20in%20the%20number%20of%20people%20using%20Twit" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/&amp;title=Prevent+Phishing+by+Blocking+URL+Shortening+Services" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Prevent+Phishing+by+Blocking+URL+Shortening+Services+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/&amp;t=Prevent+Phishing+by+Blocking+URL+Shortening+Services" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/07/prevent-phishing-by-blocking-url-shortening-services/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>UK Furniture Company Apologizes For Exploiting Iran Conflict in Twitter Spam</title>
		<link>http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/</link>
		<comments>http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/#comments</comments>
		<pubDate>Thu, 25 Jun 2009 12:25:52 +0000</pubDate>
		<dc:creator>Sue Walsh</dc:creator>
				<category><![CDATA[Fighting spam]]></category>
		<category><![CDATA[Spam news]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=1158</guid>
		<description><![CDATA[
			
				
			
		
British furniture retailer Habitat has apologized for exploiting the Iran conflict in an attempt to promote its Twitter feed. The company came under fire after it began using keywords related to the current conflict in its tweets, which otherwise had nothing to do with the subject. This is referred to as hashtag spam and is [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/">UK Furniture Company Apologizes For Exploiting Iran Conflict in Twitter Spam</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F06%2Fuk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F06%2Fuk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p>British furniture retailer Habitat has apologized for exploiting t<img class="alignright size-full wp-image-1159" title="UK Furniture Company Apologizes For Exploiting Iran Conflict in Twitter Spam" src="http://www.allspammedup.com/wp-content/uploads/2009/06/spammer3ir.png" alt="spammer3ir" width="185" height="124" />he Iran conflict in an attempt to promote its Twitter feed. The company came under fire after it began using keywords related to the current conflict in its tweets, which otherwise had nothing to do with the subject. This is referred to as hashtag spam and is widely frowned upon by Twitter users. The company also used other high trending keywords such as #Apple and #iPhone.</p>
<blockquote><p>          Sky News Online has reported a Habitat spokesman as saying: &#8220;This was a mistake and it is important to us that we always listen, take on board observations and welcome constructive criticism. We will do our utmost to ensure any mistakes are never repeated.&#8221;</p></blockquote>
<p>The company has not issued an apology on Twitter but did quietly delete all the spam tweets it posted. It’s not clear why they felt hashtag spamming was okay to do, although they told a blog that it was done without their knowledge. That sounds a little hard to believe but it wouldn’t be the first time a rouge employee was blamed for a blunder that became a PR nightmare.</p>
<p>The moral of the story? Twitter can be a valuable tool to help you reach out to customers and potential customers, but tread carefully and follow the rules. Spam is no more acceptable there than it is anywhere else.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/">UK Furniture Company Apologizes For Exploiting Iran Conflict in Twitter Spam</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/&amp;title=UK+Furniture+Company+Apologizes+For+Exploiting+Iran+Conflict+in+Twitter+Spam" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/&amp;title=UK+Furniture+Company+Apologizes+For+Exploiting+Iran+Conflict+in+Twitter+Spam" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/&amp;title=UK+Furniture+Company+Apologizes+For+Exploiting+Iran+Conflict+in+Twitter+Spam&amp;desc=British%20furniture%20retailer%20Habitat%20has%20apologized%20for%20exploiting%20the%20Iran%20conflict%20in%20an%20attempt%20to%20promote%20its%20Twitter%20feed.%20The%20company%20came%20under%20fire%20after%20it%20began%20using%20keywords%20related%20to%20the%20current%20conflict%20in%20its%20tweets%2C%20which%20otherwise%20had%20nothing%20to%20do%20with%20the%20subject.%20This%20is%20referred%20" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/&amp;title=UK+Furniture+Company+Apologizes+For+Exploiting+Iran+Conflict+in+Twitter+Spam" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=UK+Furniture+Company+Apologizes+For+Exploiting+Iran+Conflict+in+Twitter+Spam+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/&amp;t=UK+Furniture+Company+Apologizes+For+Exploiting+Iran+Conflict+in+Twitter+Spam" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/06/uk-furniture-company-apologizes-for-exploiting-iran-conflict-in-twitter-spam/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Dealing With New Spam Threats to Business</title>
		<link>http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/</link>
		<comments>http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/#comments</comments>
		<pubDate>Wed, 03 Jun 2009 14:09:28 +0000</pubDate>
		<dc:creator>Paul Cunningham</dc:creator>
				<category><![CDATA[Fighting spam]]></category>
		<category><![CDATA[anti spam]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[Social Networking]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[URL Shortening]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=1075</guid>
		<description><![CDATA[
			
				
			
		
The first electronic spam that many businesses ever encountered came via email.  Before that spam was only in the form of &#8220;junk mail&#8221; delivered by post or received by fax.  Although a minor annoyance most pre-electronic spam was fairly harmless.  Rarely was a piece of junk mail intended to be malicious or an outright scam [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/">Dealing With New Spam Threats to Business</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F06%2Fdealing-with-new-spam-threats-to-business%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F06%2Fdealing-with-new-spam-threats-to-business%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><img class="alignright size-full wp-image-1076" title="Dealing With New Spam Threats to Business" src="http://www.allspammedup.com/wp-content/uploads/2009/06/emerging.jpg" alt="emerging" width="250" height="167" />The first electronic spam that many businesses ever encountered came via email.  Before that spam was only in the form of &#8220;junk mail&#8221; delivered by post or received by fax.  Although a minor annoyance most pre-electronic spam was fairly harmless.  Rarely was a piece of junk mail intended to be malicious or an outright scam (beyond a normal degree of outlandish marketing hype anyway).</p>
<p>As email became a crucial business tool the spam problem rose rapidly to become the major problem it is today.  Regular research is released that puts spam at over 90% of global email traffic.  Despite this not every business takes it seriously enough to actually do something about preventing it.  Those that do will implement a quality anti-spam solution for their email and continue about their business hopeful that it will protect them from those on the internet with malicious intent.</p>
<p>However as the web evolves new spam threats have emerged that also need to be considered by businesses.</p>
<h2>Email Spam</h2>
<p>Email spam is a continually shifting landscape of new threats as spammers develop new techniques.  For example, spammers have gone from putting spam content in emails, to putting it in file attachments, to putting it in password-protected file attachments, to putting it in image files, to putting it on web pages that they link to, each technique intended to keep them a step ahead of anti-spam vendors and the protective measures built in to their products.</p>
<p><span id="more-1075"></span>Spammers have used, and continue to use, home PCs on broadband connections that have been compromised by viruses.  When these don&#8217;t work thanks to RBL providers such as Spamhaus, they turn to free webmail services and simply break through the CAPTCHAs that are in place by breaking their algorithm or simply paying people in developing countries to manually enter the CAPTCHAs for them.</p>
<p>This continually evolving threat highlights the need to deploy serious protection for email spam.  A &#8220;bits and bobs&#8221; solution <a href="http://www.allspammedup.com/2009/04/anti-spam-products-are-more-than-the-sum-of-their-parts/">cobbled together from separate free components</a> will not have the effectiveness of a comprehensive, integrated anti-spam product from a vendor committed to ongoing support and protection for new threats.</p>
<h2>Social Networking</h2>
<p>The emergence of social networking has changed business communication forever.  Although email remains critical to businesses more and more we see interaction occurring outside of email using social networking services such as Facebook and Twitter.  Staff may be using social networking only for personal use, but business use is also becoming common.</p>
<p>The threat posed by social networking is that messages will not be scanned or filtered by an email anti-spam solution. This leaves users open to phishing attempts and scams.  Although web filter technology can be used to simply block these services entirely, that makes them unavailable for genuine business use.</p>
<p>A better solution is one of user education.  Although social networking fosters close relationships with people around the world the same level of suspicion should be applied to social networking interactions as it is to email.</p>
<h2>URL Shortening Services</h2>
<p>The explosive popularity of Twitter has lead to an equal explosion in the use of URL shortening services.  These services convert a very long URL into a much shorter one, making them perfect for the limited space available in a Twitter post.  Because of this their use is spilling over to other social networking services, and also being used in emails.</p>
<p>The problem presented by these services is it disguises the true destination of the URL, which can thwart content filters that check for URLs for domains with a reputation for spam.  I was recently working at a customer site where all such URL shortening services were outright banned, which is a short sighted approach to the problem.  Given that the URL redirects the browser to the real destination, and that destination is still accessed via the same web proxy, the proxy could still apply URL filtering to the ultimate destination.</p>
<p>Rather than viewing URL shortening services as the problem, a better solution is to ensure that all web traffic is subject to URL filtering that will block known malicious websites.  This makes web filtering part of an overall anti-spam solution, by protecting users from malicious short URLs sent via email or over social networks.</p>
<h2>Free File Hosting</h2>
<p>Terry Zink of Microsoft recently considered <a target="_blank" href="http://blogs.msdn.com/tzink/archive/2009/05/13/file-scanning-whose-responsibility-is-it.aspx">the problem of free file hosting services</a> and who is responsible for scanning the content stored in them for viruses.  The spam problem here is an email saying &#8220;<em>Check out this important file&#8230;</em>&#8221; which links to a malicious file at a free hosting service run by an otherwise trusted and reputable web company.</p>
<p>He makes a good point but businesses don&#8217;t need to wait for the problem to be sorted out by the providers, nor do they need to be blocked entirely which deprives users from making genuine use of them.  Instead the same approach can be taken as for URL shortening services.  By utilising web filtering that scans file downloads the threat can be greatly reduced.</p>
<h2>Comprehensive Strategy</h2>
<p>As new threats emerge it demonstrates a need to consider spam prevention not just in respect to email, but for all online interactions that our end users might engage in.  With a combination of email protection, web filtering, and end user education a business can be protected from these threats as they evolve.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/">Dealing With New Spam Threats to Business</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/&amp;title=Dealing+With+New+Spam+Threats+to+Business" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/&amp;title=Dealing+With+New+Spam+Threats+to+Business" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/&amp;title=Dealing+With+New+Spam+Threats+to+Business&amp;desc=The%20first%20electronic%20spam%20that%20many%20businesses%20ever%20encountered%20came%20via%20email.%C2%A0%20Before%20that%20spam%20was%20only%20in%20the%20form%20of%20%22junk%20mail%22%20delivered%20by%20post%20or%20received%20by%20fax.%C2%A0%20Although%20a%20minor%20annoyance%20most%20pre-electronic%20spam%20was%20fairly%20harmless.%C2%A0%20Rarely%20was%20a%20piece%20of%20junk%20mail%20intended%20to%20be%20mal" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/&amp;title=Dealing+With+New+Spam+Threats+to+Business" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Dealing+With+New+Spam+Threats+to+Business+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/&amp;t=Dealing+With+New+Spam+Threats+to+Business" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/06/dealing-with-new-spam-threats-to-business/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Email Harvesting Latest Twitter Problem</title>
		<link>http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/</link>
		<comments>http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/#comments</comments>
		<pubDate>Thu, 14 May 2009 14:04:52 +0000</pubDate>
		<dc:creator>Sue Walsh</dc:creator>
				<category><![CDATA[Fighting spam]]></category>
		<category><![CDATA[email harvesting]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=993</guid>
		<description><![CDATA[
			
				
			
		
Twitter has become a valuable tool for businesses. Many now use it as a way to stay in touch with customers, enhance customer service, and as part of their marketing plan. However, as we’ve seen in the past few months, Twitter has also been a target of spammers and hackers. At first they used worms [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/">Email Harvesting Latest Twitter Problem</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F05%2Femail-harvesting-latest-twitter-problem%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F05%2Femail-harvesting-latest-twitter-problem%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p>Twitter has become a valuable tool for businesses. Many now use it as a way to stay in touch with customers, enhance<img class="alignright size-full wp-image-994" title="Email Harvesting Latest Twitter Problem" src="http://www.allspammedup.com/wp-content/uploads/2009/05/twitter.jpg" alt="twitter" width="206" height="77" /> customer service, and as part of their marketing plan. However, as we’ve seen in the past few months, Twitter has also been a target of spammers and hackers. At first they used worms to do their dirty work, but now they’ve gone back to basics and are using Twitter&#8217;s own search tool to harvest email addresses.</p>
<p>How they do it is disturbingly easy. They simply do a search on the phrase “email me at” and/or on a specific domain or domains. An example would be something like: aol.com OR yahoo.com OR “email me at”.  The result is a nice collection of email addresses ready for the spammer to add to his database.</p>
<blockquote><p>          &#8220;You can sit and just watch the email addresses steadily trickle in,&#8221; said Twellow’s lead developer Matthew Daines . &#8220;I wouldn&#8217;t doubt it if spammers are harvesting these. It would be trivial to write a script that gathers these addresses. They could have several hundred thousand over a few weeks at the rate they trickle in. The Twitter stream really weeds out all sorts of irrelevant data and cuts right to the email addresses within 140 characters, so it&#8217;s a lot less intense, and would require very little coding skill.”</p></blockquote>
<p>Since Twitter’s TOS clearly states they are not responsible for what people put in their tweets, don’t look to them to do anything about the problem anytime soon. Instead, have your employees refrain from putting their emails in their tweets (tell them to ask to be DM’d instead), and don’t ask your customers to provide theirs. Direct Messaging is much safer. Don’t make a spammer’s job easier!</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/">Email Harvesting Latest Twitter Problem</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/&amp;title=Email+Harvesting+Latest+Twitter+Problem" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/&amp;title=Email+Harvesting+Latest+Twitter+Problem" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/&amp;title=Email+Harvesting+Latest+Twitter+Problem&amp;desc=Twitter%20has%20become%20a%20valuable%20tool%20for%20businesses.%20Many%20now%20use%20it%20as%20a%20way%20to%20stay%20in%20touch%20with%20customers%2C%20enhance%20customer%20service%2C%20and%20as%20part%20of%20their%20marketing%20plan.%20However%2C%20as%20we%E2%80%99ve%20seen%20in%20the%20past%20few%20months%2C%20Twitter%20has%20also%20been%20a%20target%20of%20spammers%20and%20hackers.%20At%20first%20they%20used%20worm" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/&amp;title=Email+Harvesting+Latest+Twitter+Problem" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Email+Harvesting+Latest+Twitter+Problem+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/&amp;t=Email+Harvesting+Latest+Twitter+Problem" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/05/email-harvesting-latest-twitter-problem/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Legitimate Marketing Tool or Spammers&#8217; Delight?</title>
		<link>http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/</link>
		<comments>http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/#comments</comments>
		<pubDate>Wed, 15 Apr 2009 13:28:58 +0000</pubDate>
		<dc:creator>Carl E. Reid</dc:creator>
				<category><![CDATA[Fighting spam]]></category>
		<category><![CDATA[Spam news]]></category>
		<category><![CDATA[anti spam]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[marketing]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=810</guid>
		<description><![CDATA[
			
				
			
		
Here&#8217;s a puzzle that needs to be solved by our email administrators. Dancho Danchev reports on a new marketing software product called tweet tornado as a spamming tool.  Now Dancho comes with solid credentials as an independent security consultant and cyber threats analyst, with extensive experience in open source intelligence gathering, malware and E-crime incident [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/">Legitimate Marketing Tool or Spammers&#8217; Delight?</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F04%2Flegitimate-marketing-tool-or-spammers-delight%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F04%2Flegitimate-marketing-tool-or-spammers-delight%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><strong>Here&#8217;s a puzzle that needs to be solved by our email administrators. </strong><a target="_blank" href="http://blogs.zdnet.com/bio.php#danchev" target="_blank">Dancho Danchev</a> reports on a new marketing software product called tweet tornado as a spamming tool.  No<img class="alignright size-medium wp-image-811" title="Legitimate Marketing Tool or Spammers' Delight?" src="http://www.allspammedup.com/wp-content/uploads/2009/04/newspaper-puzzle-challenge_161761-400x299.jpg" alt="newspaper-puzzle-challenge_161761" width="320" height="239" />w Dancho comes with solid credentials as an independent security consultant and cyber threats analyst, with extensive experience in open source intelligence gathering, malware and E-crime incident response.  In Dancho&#8217;s article &#8220;<a target="_blank" href="http://blogs.zdnet.com/security/?p=2477" target="_blank">Commercial Twitter spamming tool hits the market</a>&#8221; he points out that the tweet tornado pitches itself as a “fully automated advertising software for Twitter&#8221;.  He goes on to say &#8220;this software potentially empowers phishers, spammers, malware authors and everyone in between with the ability to generate bogus Twitter accounts and spread their campaigns across the micro-blogging service.&#8221;</p>
<p><span id="more-810"></span>The blog &#8220;<a target="_blank" href="http://threatchaos.com/2009/01/more-on-mr-tweettornado/" target="_blank">Threat Chaos</a>&#8221; apparently agrees with Dancho in its article &#8220;<a target="_blank" href="http://threatchaos.com/2009/01/more-on-mr-tweettornado/" target="_blank">More on Mr. TweetTornado</a>&#8220;.  This blog article states &#8220;It is basically a spam tool in that those using TweetTornado generate multiple Twitter identities and put links in them back to their sites that generate revenue through affiliate networks or simply Google ads.&#8221; Commenting on this article, the developer of Tweet Tornado defended his marketing software with: &#8220;TweetTornado only adds followers. People have to click on the page and choose to follow someone so there is no spam involved, only opt in marketing. The only people who receive anything are the people who follow and give permission. Everyone needs to realize this is not like a typical spam tool. This is permission based opt in marketing! And if Twitter would quit shutting the accounts down for no good reason then the software wouldn’t have to create unlimited accounts anymore. I don’t see how this software is bad for Twitter, anyone can do the same thing without software the difference is this software saves you a lot of time following people.&#8221;</p>
<p>I viewed the video on Tweet Tornado, which provides an overview on its usage.  It appears to automate the process people perform on Twitter in creating an account, posting 140 character tweets of current status with a link back, following people and other people following the account holder.</p>
<p><strong>Where the puzzle question comes in is whether Tweet Tornado is a potential spam tool</strong>, because it automates continuous tweets on Twitter with website link backs. It automates acquiring more followers in a shorter period of time, thereby driving traffic to a linked back website. Although a slower process, isn&#8217;t that what people do on Twitter manually?  People post tweets on Twitter with link backs to their website. People search Twitter by category to find like minded people they can follow and potentially market their products or services. <strong>Could it be that</strong> <strong>Tweet Tornado just appears to accomplish this faster?</strong></p>
<p>Post a comment and let us know what you think?</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/">Legitimate Marketing Tool or Spammers&#8217; Delight?</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/&amp;title=Legitimate+Marketing+Tool+or+Spammers%27+Delight%3F" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/&amp;title=Legitimate+Marketing+Tool+or+Spammers%27+Delight%3F" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/&amp;title=Legitimate+Marketing+Tool+or+Spammers%27+Delight%3F&amp;desc=Here%27s%20a%20puzzle%20that%20needs%20to%20be%20solved%20by%20our%20email%20administrators.%20Dancho%20Danchev%20reports%20on%20a%20new%20marketing%20software%20product%20called%20tweet%20tornado%20as%20a%20spamming%20tool.%C2%A0%20Now%20Dancho%20comes%20with%20solid%20credentials%20as%20an%20independent%20security%20consultant%20and%20cyber%20threats%20analyst%2C%20with%20extensive%20experienc" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/&amp;title=Legitimate+Marketing+Tool+or+Spammers%27+Delight%3F" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Legitimate+Marketing+Tool+or+Spammers%27+Delight%3F+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/&amp;t=Legitimate+Marketing+Tool+or+Spammers%27+Delight%3F" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/04/legitimate-marketing-tool-or-spammers-delight/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twitter Spammed by Teenager Using Worm</title>
		<link>http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/</link>
		<comments>http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/#comments</comments>
		<pubDate>Tue, 14 Apr 2009 13:35:11 +0000</pubDate>
		<dc:creator>Sue Walsh</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Spam news]]></category>
		<category><![CDATA[anti spam]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=817</guid>
		<description><![CDATA[
			
				
			
		
The malware that hit Twitter, called the Mikeyy worm, appears to have been created by a 17-year-old New York boy who had nothing better to do and wanted to drive traffic to his website. The worm exploited a cross site scripting flaw to compromise nearly 200 accounts and send more than 10,000 tweets. Users were [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/">Twitter Spammed by Teenager Using Worm</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F04%2Ftwitter-spammed-by-teenager-using-worm%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F04%2Ftwitter-spammed-by-teenager-using-worm%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p>The malware that hit Twitter, called the Mikeyy worm, appears to have been created by a 17-year-old New York boy <img class="alignright size-full wp-image-818" title="Teenager Admits to Using Worm to Spam Twitter" src="http://www.allspammedup.com/wp-content/uploads/2009/04/twitter.jpg" alt="twitter" width="180" height="76" />who had nothing better to do and wanted to drive traffic to his website. The worm exploited a cross site scripting flaw to compromise nearly 200 accounts and send more than 10,000 tweets. Users were infected simply by visiting the compromised profiles. The worm hit Twitter 4 separate times this weekend, each time sending tweets aimed at directing users to the site StalkDaily.com, a Twitter copycat site owned by the teenager in question. A copycat worm also jumped on the bandwagon, sending out spam tweets of its own with a link that claimed to be directions on how to remove the worm.</p>
<blockquote><p>          &#8220;A message like this is particularly nasty, as there were plenty of re-tweets of this malicious message sent by genuine users,&#8221; said F-Secure Corp.&#8217;s chief research officer, Mikko Hypponenin in a blog post just minutes after Monday&#8217;s attack began. &#8220;The bit.ly link got redirected back to Twitter, to user reberbrerber&#8217;s profile which would infect Twitter users who viewed it.”</p></blockquote>
<p>Experts say attacks on social networking services will only increase as more and more cybercriminals seek out vulnerabilities and use them to carry out XSS/PHP/SQL attacks. These attacks they say, will likely be used to gather lists of personal information which will then be used in more traditional spam and phishing attacks. To protect your company, don’t use sloppy code! Check and double check for JavaScript vulnerabilities and other security holes and block any you find as soon as possible. Your company’s reputation could depend on it!</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/">Twitter Spammed by Teenager Using Worm</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/&amp;title=Twitter+Spammed+by+Teenager+Using+Worm" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/&amp;title=Twitter+Spammed+by+Teenager+Using+Worm" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/&amp;title=Twitter+Spammed+by+Teenager+Using+Worm&amp;desc=The%20malware%20that%20hit%20Twitter%2C%20called%20the%20Mikeyy%20worm%2C%20appears%20to%20have%20been%20created%20by%20a%2017-year-old%20New%20York%20boy%20who%20had%20nothing%20better%20to%20do%20and%20wanted%20to%20drive%20traffic%20to%20his%20website.%20The%20worm%20exploited%20a%20cross%20site%20scripting%20flaw%20to%20compromise%20nearly%20200%20accounts%20and%20send%20more%20than%2010%2C000%20tweets." rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/&amp;title=Twitter+Spammed+by+Teenager+Using+Worm" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Twitter+Spammed+by+Teenager+Using+Worm+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/&amp;t=Twitter+Spammed+by+Teenager+Using+Worm" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/04/twitter-spammed-by-teenager-using-worm/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Shortened URLs used in spam</title>
		<link>http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/</link>
		<comments>http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/#comments</comments>
		<pubDate>Tue, 07 Apr 2009 11:56:03 +0000</pubDate>
		<dc:creator>Dan Blacharski</dc:creator>
				<category><![CDATA[Fighting spam]]></category>
		<category><![CDATA[anti spam]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=751</guid>
		<description><![CDATA[
			
				
			
		
I use Twitter to keep people updated on my latest and most interesting articles and books, it shortens the URL when I include the link. I always thought it was convenient, especially since it saves space&#8211;which is of course at a premium when you&#8217;re Twittering. But who else is using those URL shortening services, and [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/">Shortened URLs used in spam</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F04%2Fshortened-urls-used-in-spam%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F04%2Fshortened-urls-used-in-spam%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p>I use <a target="_blank" href="http://twitter.com/Dan_Blacharski" target="_blank">Twitter</a> to keep people updated on my latest and most interesting articles and books, it shortens the URL when I include the link. I always thought it was convenient, especially since it saves space&#8211;which is of course at a premium when you&#8217;re Twittering. But who else is using those URL shortening services, and towards what end?</p>
<p>I saw a very informative post today on the <a target="_blank" href="http://unweary.com/2009/04/the-security-implications-of-url-shortening-services.html" target="_blank">Unweary blog </a>that points out some risks I had previously not considered when using a third party service to redirect you to a Web page. Normally, when I get an email that contains a link, I will always mouse over the URL so I can see if it&#8217;s really going to go where it says it will. If the email claims to be from my bank, but the URL is from some domain in Russia, then I know it&#8217;s obviously bogus. But with the shortened URLs, this becomes impossible. You have to just click to see where it goes. Apparently, spammers have discovered this as well, and are using these URL shorteners in their spam emails as another way to disguise a link&#8217;s true destination. The shortened URL may also bypass spam filters, which may recognize a spam domain but may let the shortened URL get through.</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/">Shortened URLs used in spam</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/&amp;title=Shortened+URLs+used+in+spam" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/&amp;title=Shortened+URLs+used+in+spam" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/&amp;title=Shortened+URLs+used+in+spam&amp;desc=I%20use%20Twitter%20to%20keep%20people%20updated%20on%20my%20latest%20and%20most%20interesting%20articles%20and%20books%2C%20it%20shortens%20the%20URL%20when%20I%20include%20the%20link.%20I%20always%20thought%20it%20was%20convenient%2C%20especially%20since%20it%20saves%20space--which%20is%20of%20course%20at%20a%20premium%20when%20you%27re%20Twittering.%20But%20who%20else%20is%20using%20those%20URL%20shorten" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/&amp;title=Shortened+URLs+used+in+spam" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Shortened+URLs+used+in+spam+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/&amp;t=Shortened+URLs+used+in+spam" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/04/shortened-urls-used-in-spam/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Social Network Spam Scare</title>
		<link>http://www.allspammedup.com/2009/04/social-network-spam-scare/</link>
		<comments>http://www.allspammedup.com/2009/04/social-network-spam-scare/#comments</comments>
		<pubDate>Wed, 01 Apr 2009 12:29:59 +0000</pubDate>
		<dc:creator>Carl E. Reid</dc:creator>
				<category><![CDATA[Fighting spam]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[anti spam]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[social network]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=705</guid>
		<description><![CDATA[The next time you receive a "heart" invitation, a virtual "drink" or a "birthday" card from a friend on Facebook, look closer at the safety message displayed. . . <p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/04/social-network-spam-scare/">Social Network Spam Scare</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F04%2Fsocial-network-spam-scare%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F04%2Fsocial-network-spam-scare%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p><img class="alignright size-full wp-image-706" title="Social Network Spam Scare" src="http://www.allspammedup.com/wp-content/uploads/2009/03/twitter-magpie-spam1.jpg" alt="twitter-magpie-spam1" width="242" height="124" />Yesterday I experienced quite a scare.  Several client social networks I created and maintain all had fake member registration forms filled out. I immediately identified each registration as spam. Luckily all registrations must be manually approved by the administrator.  I found this to be a very sophisticated spam attack. In each instance the spammer even uploaded a required picture of a pretty girl.  The registration form field entries each had the same entry of &#8220;I&#8217;ll tell you later&#8221;.  This indicates an automated spam machine was used. The different <strong>email addresses entered all used the malinator.com</strong> domain.  All the social network administrators have been notified to be on alert.</p>
<p>With account registration moderation in place, the scenario above is a more controlled environment. So spam infiltrations are much harder to achieve. More mainstream popular social networks, like <strong><a target="_blank" href="http://www.facebook.com" target="_blank">Facebook</a></strong> and <strong><a target="_blank" href="http://www.twitter.com" target="_blank">Twitter</a></strong>, do not moderate registration. So spammers can slip in very easily to target legitimate members.</p>
<p>As mentioned in a previous article &#8220;<a href="http://www.allspammedup.com/2009/01/belated-2009-spam-predictions" target="_blank">Belated Spam Predictions</a>&#8220;, spammers will continue to phish social networks, but use more sophisticated approaches. The goal is to collect not only personal information, but also retrieve information surrounding a person’s inner circle of friends and associates.</p>
<p><span id="more-705"></span>Continue to educate your email users to be prudent about information entered into their social network profiles. People must be more vigilant about the nonchalant acceptance with the comfort and trust in entering all types of information about themselves on social networking sites.</p>
<p>A balance must be created between personal branding or making networking connections, while keeping your personal information safe. <strong>If a phishing spammer gets to you, that means your friendship connections are also at risk. </strong></p>
<p>It may seem innocuous to share your favorite books or movies on your profile. How about providing your real birth date as opposed to making yourself 10 years older or younger? So what, if you receive those automated or personal friend birthday wishes on the wrong day. At least you make your personal identification information safer. Your hobbies and interests may seem like it&#8217;s not a big deal. The more profile information you share, just makes it that much easier for cyber criminals to assume your identity. <strong>The more personal information shared, the higher the chances another person can become YOU to get closer to scamming your friends.</strong></p>
<p>The next time you receive a &#8220;heart&#8221; invitation, a virtual &#8220;drink&#8221; or a &#8220;birthday&#8221; card from a friend on <strong><a target="_blank" href="http://www.facebook.com" target="_blank">Facebook</a></strong>, <strong>look closer at the safety message displayed</strong>. It says &#8220;Allowing Birthday Cards access will let it pull your profile information, photos, your friends&#8217; info, and other content that it requires to work.&#8221;  <strong>Each time the &#8220;Allow&#8221; button is clicked</strong>, your personal information and your friends list is being shared<strong>.</strong></p>
<p>Social networks are powerful marketing and networking tools.   <strong>How much personal information do you think a person should share in a profile? Will the profile accuracy impact personal or business relationships?</strong></p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/04/social-network-spam-scare/">Social Network Spam Scare</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/04/social-network-spam-scare/&amp;title=Social+Network+Spam+Scare" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/04/social-network-spam-scare/&amp;title=Social+Network+Spam+Scare" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/04/social-network-spam-scare/&amp;title=Social+Network+Spam+Scare&amp;desc=The%20next%20time%20you%20receive%20a%20%22heart%22%20invitation%2C%20a%20virtual%20%22drink%22%20or%20a%20%22birthday%22%20card%20from%20a%20friend%20on%20Facebook%2C%20look%20closer%20at%20the%20safety%20message%20displayed.%20.%20.%20" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/04/social-network-spam-scare/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/04/social-network-spam-scare/&amp;title=Social+Network+Spam+Scare" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/04/social-network-spam-scare/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Social+Network+Spam+Scare+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/04/social-network-spam-scare/&amp;t=Social+Network+Spam+Scare" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/04/social-network-spam-scare/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New Service Allows Companies to Spam Twitter Users</title>
		<link>http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/</link>
		<comments>http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/#comments</comments>
		<pubDate>Wed, 11 Feb 2009 15:31:38 +0000</pubDate>
		<dc:creator>Sue Walsh</dc:creator>
				<category><![CDATA[Spam news]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.allspammedup.com/?p=400</guid>
		<description><![CDATA[
			
				
			
		
There&#8217;s a new service that lets advertisers target Twitter users by monitoring Twitter posts for keywords and allowing them to send ads to users based on their location and/or if they&#8217;ve posted links or questions in their posts. However, the company behind the service, called TwitterHawk seemed unaware that the service is basically a tool [...]<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/">New Service Allows Companies to Spam Twitter Users</a></p>
]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: left; margin-right: 10px;">
			<a target="_blank" href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F02%2Fnew-service-allows-companies-to-spam-twitter-users%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.allspammedup.com%2F2009%2F02%2Fnew-service-allows-companies-to-spam-twitter-users%2F&amp;source=allspammedup&amp;style=normal&amp;service=bit.ly" height="61" width="50" /><br />
			</a>
		</div>
<p>There&#8217;s a new service that lets advertisers target Twitter users by monitoring Twitter posts for key<img class="alignright size-medium wp-image-405" title="New Service Allows Companies to Spam Twitter Users" src="http://www.allspammedup.com/wp-content/uploads/2009/02/twitter-400x147.jpg" alt="twitter" width="175" height="91" />words and allowing them to send ads to users based on their location and/or if they&#8217;ve posted links or questions in their posts. However, the company behind the service, called TwitterHawk seemed unaware that the service is basically a tool for spammers, even though they&#8217;ve already changed the TOS so the advertisers can only send one ad a day to Twitter users. (That&#8217;s not likely to do much, if they have 100 advertisers and they are allowed to send just one ad a day each, that&#8217;s still 100 ads a day being sent!)</p>
<blockquote><p>          In response, TwitterHawk owner Chris Duell has restricted advertisers to sending only one message a day per Twitter account, and said that the restrictions on advertisements may be increased again if the service is abused or causes the Twitter community &#8220;unwanted problems&#8221;.</p>
<p>&#8220;We did not expect such an explosion in use of the tool and considerably underestimated its effect on the social medium,&#8221; he said.</p>
<p>Duell said that he would not condone the use of spam, and wanted the service to bring relevant information and services to Twitter users that would &#8220;add value&#8221; to their social networking experiences.</p>
<p>He added that he wanted to provide a &#8220;non-intrusive service&#8221; similar to Google Adwords, which allows marketers to target people according to their search terms.</p>
<p><span id="more-400"></span></p></blockquote>
<p>That&#8217;s all well and good, however Google Adwords appear on webpages and are, for the most part, very unobtrusive.  TwitterHawk uses a bot to send ads in response to keywords it picks up in Twitter posts. Very very big difference! This is bound to annoy many Twitter users.  Further research has revealed that the one message a day per advertiser has been further restricted to one message a day per keyword targeted, but again, that will have little impact if the service is used by a large group of advertisers all targeting different keywords &#8211; if you happen to post more than one you&#8217;ll get an ad for each one. The powers that be behind TwitterHawk need to understand that any unsolicited message, whether it be an email, tweet, IM, etc, is considered spam. I expect this service to quickly wear out its welcome on Twitter. I&#8217;m a big Twitter user and although I haven&#8217;t received any ads yet ,if I do I will be annoyed. If you&#8217;re a Twitter user too, drop us a comment and let us know what you think!</p>
<p>Liked this post? Get more <a href="http://www.allspammedup.com">anti-spam</a> related news from AllSpammedUp.com!<br/><br/><a href="http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/">New Service Allows Companies to Spam Twitter Users</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/&amp;title=New+Service+Allows+Companies+to+Spam+Twitter+Users" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/&amp;title=New+Service+Allows+Companies+to+Spam+Twitter+Users" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-diigo">
			<a href="http://www.diigo.com/post?url=http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/&amp;title=New+Service+Allows+Companies+to+Spam+Twitter+Users&amp;desc=There%27s%20a%20new%20service%20that%20lets%20advertisers%20target%20Twitter%20users%20by%20monitoring%20Twitter%20posts%20for%20keywords%20and%20allowing%20them%20to%20send%20ads%20to%20users%20based%20on%20their%20location%20and%2For%20if%20they%27ve%20posted%20links%20or%20questions%20in%20their%20posts.%20However%2C%20the%20company%20behind%20the%20service%2C%20called%20TwitterHawk%20seemed%20unaw" rel="nofollow" class="external" title="Post this on Diigo">Post this on Diigo</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/&amp;title=New+Service+Allows+Companies+to+Spam+Twitter+Users" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=New+Service+Allows+Companies+to+Spam+Twitter+Users+-+{"errorCode":203,"errorMessage":"Su.pr authentication failed","statusCode":"ERROR"}&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/&amp;t=New+Service+Allows+Companies+to+Spam+Twitter+Users" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

]]></content:encoded>
			<wfw:commentRss>http://www.allspammedup.com/2009/02/new-service-allows-companies-to-spam-twitter-users/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
