1&1 Hosting Special


Friday, December 11, 2009

Online holiday shoppers should beware of scams

Posted: Nov 25, 2009 8:00 PM CST Updated: Nov 26, 2009 8:27 PM CST


by Larry Lemmons

Newschannel 10

Amarillo, Texas - Scams and identity theft are dangers for online shoppers as the holiday shopping season gets underway.

Believe it or not more than half of consumers are expected to shop online for holiday gifts.

But there are some simple rules to follow if you do. The best way to protect yourself when ordering online is to go to well-known secure sites, preferably with a local outlet.

Cpl. Jerry Neufeld of the Amarillo Police Department says, "If you're going to buy something, if there's at least a local connection like Best Buy, or whoever, that if you have a problem with your statement or you didn't receive the product, I can go out here off Soncy and go talk to a manager and say, hey, this is what I've done.

Brian Hughes, Manager of the Best Buy in Amarillo says, "Here at Best Buy we always strive to take care of our customers not only in the store but online too."

It's also important that your own computer be secure. Hughes says, "So many things going on now with hacking and people stealing data that it's very important that you have your computer protected, anti-spyware, antivirus, very important. If not, you go on to three or four websites right off the bat you get a virus and you're shut down."

Skimming is when thieves use small devices at a card swiping machine to steal your information. Police say they haven't seen many if any instances of skimming here in Amarillo but if you're traveling or you want to be cautious you might give the slot a little shake, just to see if it comes off."

Finally, if you think you're a victim of identity theft, place a fraud alert on your credit reports quickly and file a police report.

Online shopping is becoming a lot more popular with folks who don't like to fight the crowds. In fact, 26 percent more folks will be doing that over last year.

http://www.newschannel10.com/global/story.asp?s=11575900

Phishing Scam Imitates cPanel, Targets Webmasters



By Liam Eagle, December 08,


(WEB HOST INDUSTRY REVIEW) -- A report published Monday on the Register said a new phishing scam has been uncovered, targeting the webmasters of legitimate websites by appearing to be their hosting providers and asking for their administrator login details.

The new scam, which was reported on Saturday by security researcher Gary Warner, via a post on his blog, targets the customers of a long list of hosting providers, including some of the most widely used hosting companies – Go Daddy, Hostgator and Yahoo! among them.

Customers of these and other hosting companies, a list of more than 90 in total, have received emails that vary somewhat in content, but ultimately ask, “due to the system maintenance, we kindly ask you to take a few minutes to confirm your FTP details.”

Clicking on a link in the email takes the user to a page that imitates the appearance of the widely-used hosting control panel cPanel. Should the customer enter their information, they are then forwarded to their hosting provider’s login page.

“The goal seems to really be capturing the FTP userids and passwords of webmasters,” writes Werner. “You can imagine what sorts of badness this campaign may lead to.”

As pointed out in the Register story, an increasingly popular tactic among phishers, and distributers of Malware, is corrupting trusted websites, often a step in the distribution of the viruses that create botnets then used to distribute spam.

The Register cites recently-launched security firm Dasient, a company that provides antivirus-type security scanning and repair for websites, as reporting that 640,000 websites were infected with code designed to launch malware attacks on visitors.

From the webmaster’s perspective, having a website corrupted with malware can lead to a site being added on blacklists that can be very difficult to make it away from. Those blacklists are used by Google and Firefox, as well as other tools, to warn users they may be entering unsafe websites.

Werner advises webmasters targeted by the attack to let their web hosting companies know they have been targeted. We would similarly advise web hosting companies named on Werner’s list to let customers know they might be targeted by this sort of phishing email, in much the way banks have been doing for several years.

http://www.thewhir.com/web-hosting-news/120809_Phishing_Scam_Imitates_cPanel_Targets_Webmasters