<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.maximumpc.com" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>Maximum PC social engineering RSS Feed</title>
 <link>http://www.maximumpc.com/tags/social_engineering</link>
 <description>used for category lists, takes arguments</description>
 <language>en</language>
<item>
 <title>Fake Microsoft Security Update Email Includes Haxdoor Trojan</title>
 <link>http://www.maximumpc.com/article/news/fake_microsoft_security_update_email_includes_haxdoor_trojan</link>
 <description>&lt;div style=&quot;text-align: center&quot;&gt;&lt;img src=&quot;http://www.maximumpc.com/files/u21826/header-Haxdoor-remove.png&quot; alt=&quot;Haxdoor Trojan&#039;s again on the loose - thanks to a fake security email&quot; width=&quot;410&quot; height=&quot;179&quot; /&gt;&lt;/div&gt;&lt;p&gt;I know it, you know it, almost everybody that reads &lt;strong&gt;Maximum PC&lt;/strong&gt; knows it - but that doesn&#039;t mean that your family, your co-workers, or your bosses know it. What&#039;s it? Simply this: &lt;em&gt;Microsoft never - repeat &lt;strong&gt;never&lt;/strong&gt; - sends out security updates via email.&lt;/em&gt;&lt;/p&gt;&lt;p&gt;&lt;strong&gt;Cnet&lt;/strong&gt; &lt;a href=&quot;http://news.cnet.com/8301-1009_3-10066541-83.html&quot;&gt;reports&lt;/a&gt; that yet another fake security email purporting to be from Microsoft is busy delivering &lt;a href=&quot;http://www.microsoft.com/security/portal/Entry.aspx?Name=Backdoor%3aWin32%2fHaxdoor&quot;&gt;a nasty Trojan called Haxdoor&lt;/a&gt; to unwary emailboxes near you.&lt;/p&gt;&lt;p&gt;The email, ironically enough, claims that &amp;quot;Since public distribution of this Update through the official website &lt;a href=&quot;http://www.microsoft.com/&quot;&gt;http://www.microsoft.com&lt;/a&gt; would have result in efficient creation of a malicious software, we made a decision to issue an experimental private version of an update for all Microsoft Windows OS users.&amp;quot; And, it&#039;s signed &amp;quot;Steve Lipner, Directory of Security Assurance, Microsoft Corp.&amp;quot; &lt;/p&gt;&lt;p&gt;Well, at least the bad guys got Steve&#039;s name right. However, he&#039;s actually senior director of security engineering strategy in Microsoft’s Trustworthy Computing Group, &lt;a href=&quot;http://www.microsoft.com/presspass/features/2008/sep08/09-16lipnersdl.mspx&quot;&gt;according to a recent interview&lt;/a&gt;. &lt;/p&gt;&lt;p&gt;The message (minus the Trojan, of course), is &lt;a href=&quot;http://blogs.technet.com/mmpc/archive/2008/10/13/email-scam-targets-microsoft-customers.aspx&quot;&gt;available&lt;/a&gt; at the Microsoft Malware Protection Center blog, where you can see for yourself the classic hallmarks of a fake message: a shaky command of the English language, sentence construction that&#039;s so stiff it belongs on a Victorian-era calling card, and off-the-wall sentiments that show it was adapted from a different con job document: &amp;quot;&lt;em&gt;We apologize for any inconvenience this back order may be causing you.&lt;/em&gt;&amp;quot; Back order? Whaat? I didn&#039;t order any malware!&lt;/p&gt;&lt;p&gt;Already getting calls from frantic family, friends, or co-workers wondering why their PCs have slowed to a crawl or become infested by popups? Join us after the jump for solutions. &lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.maximumpc.com/article/news/fake_microsoft_security_update_email_includes_haxdoor_trojan&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.maximumpc.com/article/news/fake_microsoft_security_update_email_includes_haxdoor_trojan#comments</comments>
 <category domain="http://www.maximumpc.com/article_type/news_amp_views">News</category>
 <category domain="http://www.maximumpc.com/article_type/news/windows">Windows</category>
 <category domain="http://www.maximumpc.com/taxonomy/term/2759">fake email</category>
 <category domain="http://www.maximumpc.com/taxonomy/term/5377">Haxdoor</category>
 <category domain="http://www.maximumpc.com/geek_tested/malware">malware</category>
 <category domain="http://www.maximumpc.com/geek_tested/microsoft">microsoft</category>
 <category domain="http://www.maximumpc.com/geek_tested/security">Security</category>
 <category domain="http://www.maximumpc.com/geek_tested/social_engineering">social engineering</category>
 <category domain="http://www.maximumpc.com/geek_tested/trojan">Trojan</category>
 <pubDate>Thu, 16 Oct 2008 16:07:25 -0500</pubDate>
 <dc:creator>Mark Edward Soper</dc:creator>
 <guid isPermaLink="false">3903 at http://www.maximumpc.com</guid>
</item>
<item>
 <title>Palin&#039;s E-Mail Id Hacked Using Social Engineering, One Person Quizzed</title>
 <link>http://www.maximumpc.com/article/news/palins_email_id_hacked_using_social_engineering_one_person_quizzed</link>
 <description>&lt;div style=&quot;text-align: center&quot;&gt;&lt;img src=&quot;http://www.maximumpc.com/files/u46168/sarah_palin.jpg&quot; width=&quot;415&quot; height=&quot;298&quot; /&gt;&lt;/div&gt;&lt;p&gt;Republican vice-presidential candidate Sarah Palin found that she is just as vulnerable in cyber realms as any of us, when hackers wrested control of her Yahoo e-mail id. The &lt;a href=&quot;http://blog.wired.com/27bstroke6/2008/09/group-posts-e-m.html&quot;&gt;hackers released five screenshots of her personal e-mails and photographs&lt;/a&gt;. &lt;/p&gt;&lt;p&gt;Both her campaign manager and the FBI confirmed the news of her account being hacked, which began circulating after the appearance of the leaked screenshots on WikiLeaks. You will not be able to have a look at the screenshots yourself, in case your peeping faculties have been roused by the news, as they have been taken down.&lt;/p&gt;&lt;p&gt;The hackers are said to have only counted on their social engineering skills – by collecting or guessing personal information required for password recovery – and Yahoo’s flimsy, lax password-recovery process for breaking into her account. All said, the hack has exposed Palin’s inexpedient habit of conducting state business using a personal e-mail account. &lt;/p&gt;&lt;p&gt;According to Knoxnews, &lt;a href=&quot;http://www.knoxnews.com/news/2008/sep/18/tennessean-state-reps-son-contacted-palin-e-mail-p/&quot;&gt;State Rep. Mike Kernell admitted that investigators had quizzed his 20-year old son David Kernell about the hack&lt;/a&gt;. Kernell is a Democrat! &lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.maximumpc.com/article/news/palins_email_id_hacked_using_social_engineering_one_person_quizzed&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.maximumpc.com/article/news/palins_email_id_hacked_using_social_engineering_one_person_quizzed#comments</comments>
 <category domain="http://www.maximumpc.com/article_type/news_amp_views">News</category>
 <category domain="http://www.maximumpc.com/geek_tested/email">e-mail</category>
 <category domain="http://www.maximumpc.com/taxonomy/term/5013">governor</category>
 <category domain="http://www.maximumpc.com/geek_tested/hack">hack</category>
 <category domain="http://www.maximumpc.com/taxonomy/term/5012">republican</category>
 <category domain="http://www.maximumpc.com/taxonomy/term/5011">sarah palin</category>
 <category domain="http://www.maximumpc.com/geek_tested/social_engineering">social engineering</category>
 <category domain="http://www.maximumpc.com/geek_tested/yahoo">Yahoo</category>
 <pubDate>Sat, 20 Sep 2008 04:32:15 -0500</pubDate>
 <dc:creator>Pulkit Chandna</dc:creator>
 <guid isPermaLink="false">3586 at http://www.maximumpc.com</guid>
</item>
<item>
 <title>New MSN Messenger Trojan Targets VNCs Too [updated]</title>
 <link>http://www.maximumpc.com/article/new_msn_messenger_trojan_targets_vms_too</link>
 <description>&lt;p&gt;MSN Messenger users, it&#039;s time to batten down the hatches as a new IRC Trojan attacks both PCs and virtual network connections. Learn how it works so you can stop it.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.maximumpc.com/article/new_msn_messenger_trojan_targets_vms_too&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.maximumpc.com/article/new_msn_messenger_trojan_targets_vms_too#comments</comments>
 <category domain="http://www.maximumpc.com/article_type/news_amp_views">News</category>
 <category domain="http://www.maximumpc.com/article_type/news/windows">Windows</category>
 <category domain="http://www.maximumpc.com/geek_tested/malware">malware</category>
 <category domain="http://www.maximumpc.com/geek_tested/phishing">phishing</category>
 <category domain="http://www.maximumpc.com/geek_tested/security">Security</category>
 <category domain="http://www.maximumpc.com/geek_tested/social_engineering">social engineering</category>
 <category domain="http://www.maximumpc.com/geek_tested/threats">threats</category>
 <category domain="http://www.maximumpc.com/geek_tested/virus">virus</category>
 <pubDate>Mon, 19 Nov 2007 21:37:25 -0600</pubDate>
 <dc:creator>Mark &amp;amp;#39;Marcus Soperus&amp;amp;#39; Soper</dc:creator>
 <guid isPermaLink="false">1634 at http://www.maximumpc.com</guid>
</item>
</channel>
</rss>
