Social engineering
Social engineering

Spammers take aim at Christmas

Study reveals junk mail tactics becoming ever more sophisticated

Written by Robert Jaques

Spammers are becoming increasingly clever and sophisticated in developing tactics to spread viruses, gain control of computers and encourage recipients to part with cash.

According to recently published research from content security firm Clearswift, phishing scams remain the spammers' most blatant use of social engineering.

As internet banking becomes more popular, phishing is becoming increasingly realistic in an attempt to exploit the lack of experience of many novice online bank users, Clearswift reported.

Although the study found that eBay cons are widespread, Citibank is still by far the biggest victim. Almost 50 per cent of mails in the 'scam' category are masquerading as communication from the US banking giant.

With Christmas around the corner, social engineering will come into its own, Clearswift warned. The firm predicts a rise in mails which specifically suggest the purchase of products as gifts for loved ones.

On a more sinister note, the report noted that the past two years have seen cyber-criminals use e-cards as a means of infiltrating Trojans onto desktops.

Employees are traditionally in a more relaxed mood as the festive season approaches, and organisations are advised to warn employees not to let their guard down.

The November Spam Index report noted that subject lines of 'Account number ###' or 'Your mortgage number ###' are also frequent, but rather less convincing, tricks.

Although these are far less likely to elicit money initially, confused email users might reply, thus confirming their email address and opening the door for a deluge of spam and viruses.

The Spam Index also shows that spammers have even turned to faith to instil credibility in their mails, offering finance from Christian organisations and using religious imagery.

An interesting new entrant onto the virtual market stall this month was identified as the Rolex watch, which now accounts for over five per cent of spam.

Yet the research found that software piracy is apparently not quite as acceptable. Spammers brazenly head up their mails with disclaimers such as 'Never use illegal office software' or 'It's illegal to use hacked Microsoft Office' to promote manifestly counterfeit products.

One group of particularly professional-looking mails draws on our inability to turn down freebies. These appear to offer expensive gifts such as a TV or laptop in return for sitting on a product review panel, quoting a plausible sounding name such as 'The Consumer Research Corp'.

Looking at the small print, these always come from an 'affiliate' of the company, making it harder to track down the sender's origin and reducing any legal link.

"It makes sense for spammers to target our weak spots," said Alyn Hockey, Clearswift's technical director.

"Although their success rate remains minimal, these constantly evolving tricks mean that organisations have to increasingly rely on robust email security software to filter out the rubbish."

Tags:

Further reading

Microsoft sues seven sex spammers

Emails in violation of the 'brown paper wrapper' rule   More...

Stop spam from filtering through

As the volume of unsolicited email grows, filtering solutions must become more sophisticated to sort the wheat from the chaff   More...

Movie pirates face Christmas crackdown

Surprise in store for illegal downloaders, promises UK Film Council   More...

Phishing scam forces NatWest services offline

Bank suspend elements of its online service to protect customers   More...

Related articles

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

16 May 2008

2.97 MBXP on OLPC, broken dreams and Yahoo fights back More...

15 May 2008

3.28 MBDark fibre, mobile TV and solar power More...

14 May 2008

2.66 MBOnline inequality, mobile thumbprints and corporate raids More...

Poll

HOME WORKING

HOME WORKING

Do you let any or all of your employees work from home?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

OLPC

OLPC to ship with Windows XP

Microsoft teams up with One Laptop per Child project   More...

The Sims

The Sims goes flat-pack with Ikea

Virtual world gets Swedish wood   More...

Advertisement

Microsoft-Yahoo

Yahoo board fights back at Icahn

Investor accused of 'significant misunderstanding' in Microsoft saga   More...

MySpace

Woman charged over MySpace suicide

Lori Drew indicted on federal charges   More...

Advertisement