Powered by Blogger.

Don't Like - a thieving Facebook app

Facebook users beware. If your attention is grabbed by a video post with the headline “Tornado Randomly Appears During Soccer Game”, chances are a storm has ripped through your account.

Another video post entitled "This is the best April Fools' prank ever!” will only leave users feeling foolish.

Security expert Symantec reports that a Facebook application is making rounds with the aim of stealing passwords.

Clicking on the message forces the download of a script which displays a Facebook login message even if the user is already logged in.


Once the login details are entered, the malicious app will sends two POST requests, one to Facebook, and the other to the malicious server where the user’s email address and password is stored.

The very detailed fraud app will hide the malicious site to even attentive users who may double-check the URL only to find “apps.facebook.com” in the information bar.

Users can also be taken in as the bogus app shows "likes" with the link in an automatic post which will be displayed on the user's profile, so that the malicious code spreads.

Apart from clicking with care, Symantec is offering a free Norton Safe Web for Facebook app which should hopefully take the sting out of those out to make a sting.

Studies by security experts have shown that stealing cash and credit card details aren't as lucrative for online thieves. Most now opt for identity theft and target popular social network sites for victims.

0 comments:

Blogger Tips and TricksLatest Tips And TricksBlogger Tricks
1 Share/Bookmark

Labels

Blogger Tips and TricksLatest Tips And TricksBlogger Tricks