New phishing attack hits Twitter

By
Follow google news

Direct messages used again.

A fresh phishing attack has appeared on social networking site Twitter that again used direct messages.

F-Secure CTO Mikko Hypponen said that the messages are similar to those seen last month. In the latest detected, the recipient receives a message asking "did I tell you that ur here" or "you should change ur photo u took here" with a link provided. Following this link takes the user to a fake Twitter page. 

Hypponen said: “If you mistakenly give out your credentials, the attackers will start sending similar direct messages to your contacts, posing as you. The ultimate goal of the attackers is to gain access to a large amount of valid Twitter accounts, then use these accounts to post tweets with URLs pointing to malicious websites which will take over users' computers when clicked."

He claimed that Twitter is already filtering these messages from being posted, although it was unclear if they are also removing already-delivered direct messages. 

Also, the Twitter built-in link shorteners (twt.tl and bit.ly) are detecting the URLs as malicious.

See original article on scmagazineus.com


Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

Australia, US and UK sanction Russian cyber firms over ransomware links

Australia, US and UK sanction Russian cyber firms over ransomware links

Labor bets on agency to monitor AI companies

Labor bets on agency to monitor AI companies

JPMorgan, Citi, Morgan Stanley client data may be exposed by vendor's hack

JPMorgan, Citi, Morgan Stanley client data may be exposed by vendor's hack

Startup finds flaws in popular VoIP products

Startup finds flaws in popular VoIP products

Log In

  |  Forgot your password?