<br />
<b>Deprecated</b>:  Function create_function() is deprecated in <b>/home/hidefide/public_html/blog/wp-content/plugins/wr-pagebuilder/core/core.php</b> on line <b>127</b><br />
{"id":547,"date":"2018-04-07T16:04:30","date_gmt":"2018-04-07T16:04:30","guid":{"rendered":"https:\/\/icaruspressblog.wordpress.com\/?p=547"},"modified":"2019-04-17T11:31:57","modified_gmt":"2019-04-17T11:31:57","slug":"now-its-personal-devious-new-spam-and-getting-your-house-in-order","status":"publish","type":"post","link":"https:\/\/hidefideas.com\/blog\/2018\/04\/07\/now-its-personal-devious-new-spam-and-getting-your-house-in-order\/","title":{"rendered":"Now It&#8217;s Personal: Devious New Spam and Getting Your House in Order"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"  wp-image-398 alignleft\" src=\"http:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/personal.jpg\" alt=\"personal\" width=\"393\" height=\"278\" srcset=\"https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/personal.jpg 1528w, https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/personal-300x212.jpg 300w, https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/personal-768x543.jpg 768w, https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/personal-1024x724.jpg 1024w, https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/personal-212x150.jpg 212w\" sizes=\"auto, (max-width: 393px) 100vw, 393px\" \/>Hate spam all you like. Despise spammers even more, but you have to admit that they\u2019re resilient and darn it all, they\u2019re downright wily. You\u2019ve probably seen it all in the bowels of your server rooms, spam filters full of some of the worst stuff these jerks can throw at you. Most days, you probably feel like you need a shower every time you review it. You\u2019ve committed to memory every stunt, every devious <!--more-->little attempt to circumvent, every clickable bomb, as a what not to do manual for the righteous. You\u2019ve seen it all and you know it all. But do your staff?<\/p>\n<p>It\u2019s a safe bet that most of us are so busy dealing with the day to day mundaneness of life in the modern Orc forges known as IT departments, that we don\u2019t really stop to consider just how well-armed our front lines are. Remember, one errant clicker may open up your network like a broadsword cutting down a soldier and opening the line for the enemy to enter.<\/p>\n<p>So how many of you actually have a <strong>spam tactics manual?<\/strong> Hopefully, you\u2019ve all answered in the affirmative, but of all the information that new employees receive on their orientation day, it\u2019s a safe bet that they are sadly lacking in some fundamental training that could mitigate serious threats to the organization.<\/p>\n<p>In fact, as we speak, new spam attacks are rampant, and they\u2019ve become even more devious than ever. They\u2019re so good, in fact, that it\u2019s a cinch they\u2019ll make it through the best spam filters. And to the untrained eye, they could be the click-candy that spells out devastation for you and your organization. And, if what we hear is true, things are <a href=\"http:\/\/www.allspammedup.com\/2012\/09\/blackhole-2-0-hits-the-net-with-new-exploits\/\">getting much worse<\/a>. These are serious enough threats that it merits a general staff sitdown, if you haven\u2019t had one recently. There are new threats occurring every day, so hopefully this article will be a primer that you can use to implement your organization\u2019s spam tactics manual.<\/p>\n<p>Here are a few going around that have raised an eyebrow or two over here:<\/p>\n<h2><strong>LinkedIn spam exploit<\/strong><\/h2>\n<p><strong>Comment<\/strong>: it\u2019s shockingly simple in implementation and extremely difficult to block<\/p>\n<p><strong>Subject:<\/strong> \u201cJoin my network on LinkedIn\u201d<\/p>\n<p><strong>Why it\u2019s dangerous:<\/strong> The message looks good enough to pass the first blush, and the randomized naming of senders makes it difficult to flag with any consistency. Clicking any of the fake links in this message take you on a <a href=\"http:\/\/defintel.blogspot.ca\/2013\/02\/linkedin-spam-leading-to-exploits.html\"><strong>malicious magical mystery tour<\/strong><\/a><\/p>\n<h2><strong>Facebook photo scam<\/strong><\/h2>\n<p><strong>Comment: Preys on people\u2019s vanity<\/strong><\/p>\n<p><strong>Subject: <\/strong>\u201c[Name] added your photo.\u201d<\/p>\n<p><strong>Why it\u2019s dangerous: <\/strong>Randomizes sender names. A quick scan of the message doesn\u2019t raise any flags. Clicking the fake links will<\/p>\n<p>How can you and your end users fight this stuff? Easy. Get them together and educate them. Show them how clicking can be a very, very bad thing, and what to look for. Develop a spam tactics manual and give someone in your IT department ownership over keeping it current.<\/p>\n<h2><strong>Here\u2019s what we know so far<\/strong><\/h2>\n<ul>\n<li>We\u2019ve known for some time that most spammers have <a href=\"http:\/\/www.allspammedup.com\/2013\/02\/spam-on-the-decline-dont-start-celebrating-just-yet-kaspersky\/\">left the rancid fields of scattershot spam<\/a> \u2013 where you open fire with mass mailing attempts, in effect playing the numbers game and assuming that, the more spam that gets sent, the better the odds that it will reach someone dim-witted enough to click<\/li>\n<li>We also know that <a href=\"http:\/\/www.allspammedup.com\/2011\/04\/spear-phishing-email-nets-8m-from-media-giant-conde-nast\/\">their attacks have become more focused<\/a>, often identifying specific targets and learning personal information about them before striking<\/li>\n<li>We know that their attacks are multi-tiered, opting for the addition of social media and SMS smartphones to spread the evil<\/li>\n<li>For some time, we\u2019ve known that <a href=\"http:\/\/www.allspammedup.com\/2013\/01\/nonsense-spam-is-more-dangerous-than-you-think\/\">there\u2019s a purpose behind the dumbness<\/a> found in many of the modern spam messages<\/li>\n<li>We know that <a href=\"http:\/\/www.allspammedup.com\/2012\/12\/capitalizing-on-the-holidays-fedex-malware-spam\/\">they take advantage of key milestones<\/a>, like holidays and other events that provide a distraction to users that makes them even more vulnerable<\/li>\n<li>We know <a href=\"http:\/\/www.allspammedup.com\/2011\/08\/phishin%E2%80%99-magicians-think-the-spammers-are-getting-smarter-you%E2%80%99re-right\/\">they\u2019re getting smarter<\/a>, or <a href=\"http:\/\/www.allspammedup.com\/2012\/04\/aww-so-cute-so-devious\/\">at least their tactics are<\/a><\/li>\n<li>And we know that what\u2019s around the corner is nasty, the kind of nasty you can\u2019t wash away with a thousand showers, and <a href=\"http:\/\/www.allspammedup.com\/2013\/03\/black-hat-spam-not-black-magic-but-it-may-be-the-worst-spam-ever\/\">perhaps the worst thing we\u2019ve ever seen<\/a><\/li>\n<li>We also know <a href=\"http:\/\/www.allspammedup.com\/2012\/12\/70-of-spam-complaints-caused-by-email-marketers\/\">the unfortunate role that marketers play in the spam war<\/a>, like a million troops rushing the battlefield in the belief that they can help their allies; but, not quite certain which one is the enemy, they start killing everything in their path<\/li>\n<li>Finally, we know that more and more spam campaigns are targeting <a href=\"http:\/\/www.techweekeurope.co.uk\/news\/cutwail-botnet-android-malware-spam-security-threat-112131\">Android<\/a> and <a href=\"http:\/\/securitywatch.pcmag.com\/spam\/309881-imessage-used-in-irritating-denial-of-service-attacks\">iOS<\/a> Why is this bad? Simple: <a href=\"http:\/\/www.allspammedup.com\/2011\/10\/ibm-report-mobile-spam-on-the-rise-sun-sets-in-the-west\/\">more and more companies are implementing BYOD<\/a> policies, which makes personal smartphones a perfect attack vector for hackers who want to get inside corporate networks<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Hate spam all you like. Despise spammers even more, but you have to admit that they\u2019re resilient and darn it all, they\u2019re downright wily. You\u2019ve&hellip; <\/p>\n","protected":false},"author":3,"featured_media":398,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[13,14],"tags":[11,9,10,8,7],"class_list":["post-547","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","category-spam","tag-allspammedup","tag-bot","tag-botnet","tag-malware","tag-spam","jsn-master"],"_links":{"self":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/547","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/comments?post=547"}],"version-history":[{"count":2,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/547\/revisions"}],"predecessor-version":[{"id":1758,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/547\/revisions\/1758"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/media\/398"}],"wp:attachment":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/media?parent=547"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/categories?post=547"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/tags?post=547"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}