TechLife | 19 Aug 2013 :
Security vendor Eset has warned Vodafone customers to be on the lookout for a phishing scam using SMS messages.
Users have been receiving fake messages beginning with the line: Someone sent you special Flowers. Click on the link below or copy, paste on your browser and login Vodafone to see the Flowers Sender. www./flowerz
Clicking on the link takes the user to a fake My Vodafone site and asks them to log in to their My Vodafone account with a phone number and password, allowing the scammers to capture user names, passwords and phone numbers.
Related
- CISOs should know business goals to embed security practices37284
- Mobile devices still poorly secured, survey finds7151
- Google Play apps used to hide BadNews mobile botnet7054
- Spanish police say DDoS suspect used a van as a mobile office6366
- Evernote hit in hacking attack, users must reset their passwords6055
- Review: Vodafone 555 Blue5221
- Twitter urges password changes after security breach4641
- Internet will vanish Monday for 300,000 infected computers4072
- Apple device encryption a headache for law enforcement3932
- Windows Phone 8 gets Irish release3788
- Vodafone and Three to share network infrastructure3664
- Undetected access allows botnet-like abuse of cloud computing 3639
- Businesses must go beyond compliance for security3369
- Big Data, social media and security themes at Euro Tech Summit 3180
- Vodafone and Three ‘close to network merger’ in Ireland3171
- Microsoft patches critical security holes in Windows, Office, IE3104
- BlackBerry and Vodafone investigate service outage3047
- Cloud outages pose greater risk than breaches3035
- Crypto-currencies are changing the security landscape2975
- CSOs warned to watch for FinFisher spyware2966
- Fujitsu developing HTML5-based security app for corporate smart phones2644
- Google, Microsoft and Yahoo fix serious e-mail weakness2616
- Dropbox introduces two-factor authentication2602
- RSA bets the future of security on big data2596
- New Crisis Mac trojan targeting Snow Leopard, Lion2554
- Advanced Persistent Threats to top infosec challenges for 20132552
- Dropbox blames employee account breach for spam attack2506
- Global hacking increases in Q22477
- SAP to offer support for smart phone and tablet security2466
- AVG finds 11-year-old creating malware to steal game passwords2444
- Largest DDoS attack in history slows global Internet2443
- Vodafone to roll out 4G 2428
- Anti-virus update2406
- Through a presentation, darkly2373
- Vodafone Ireland introduces Managed Tablet service2351
- Algorithm reveals source of malware and spam attacks2340
- Unpatched vulnerabilities in more than half of Android devices2320
- Fighting the good fight2300
- India tops spam sender rankings2289
- Eset warns against malware ‘as Gaeilge’2287
- Reuters blogging platform, Twitter account hacked2283
- Trusting technology2277
- Facebook pushes security tips to all its users2267
- ‘Dirty smart phones’ leave file traces2249
- Blizzard Entertainment warns of password breach2245
- Met Police toys with smartphone content evidence system2244
- EU online counter-terrorism group considers widespread surveillance2240
- Most security threats in 2012 were redirects from legitimate sites, Sophos2232
- Browsers pose the greatest threat to enterprise2223
- New Sophos partner programme 2217
- Unpatched Java vulnerability exploited in targeted attacks2209
- Ransomware and skills shortage focus for IRISSCERT 2208
- Apple admits fault in iCloud hack situation2202
- Vodafone One Net 2176
- Legal, tech BYOD pitfalls highlighted at security conference2143
- Kaspersky appeals for Gauss crypto help2128
- Alleged LulzSec member indicted in US2127
- Yahoo investigating possible massive security breach2081
- LulzSec members plead guilty to DDoS attacks on Sony, CIA, others2042
- WordPress sites worldwide experience brute force attack2033
- Firms struggling to secure trust infrastructure2017
- Big brother influence alters employee behaviour2001
- FBI nabs alleged LulzSec member over Sony hack1999
- Microsoft vows to improve security suite after failed evaluation1995
- Facebook removes two-factor authentication mobile numbers from search1975
- Critical Android vulnerability discovered1953
- Patch now as more stolen code leaks, warns VMware1932
- ‘Shamoon’ cyberweapon the work of amateurs1928
- Botnets for hire likely used in attacks against US banks1927
- ‘Celebrity’ e-mail hacker sentenced to prison1921
- Microsoft to release IE update for critical vulnerabilities on Friday1915
- US government tops list of Twitter snoopers1914
- Global information security spending to reach €13.2bn by 20171902
- Education and feedback focus for PCI1895
- Huawei to meet German security researcher over vulnerabilities1872
- Cisco pushes ahead with context-aware security vision1861
- IT security survey: the insider risk1832
- MasterCard shows credit card with LCD screen and PIN1814
- M2M offers new frontier for hacker mischief1769
- Facebook attacked with credential-harvesting malware1759
- EU cybersecurity agency warns of cloud dangers1749
- Cybercrime ring busted with help from Facebook1728
- Long hard climb to high level of cloud security1724
- GoDaddy comes back online after attacks1712
- AWS aims for security conscious enterprise with appliance1702
- LulzSec defendant will be dealt with in UK1699
- Cybergeddon likely to be caused by ‘glorious cock-up’1686
- LulzSec leader granted six-month sentencing delay1663
- LinkedIn outage prompts security concerns1652
- Antivirus ‘king’ McAfee still free despite blog report of capture1637
- Securing the human 1636
- Adobe investigates alleged customer data breach1635
- Final Patch Tuesday of 2012 includes five ‘critical’ updates1627
- MakeITsecure publishes tips for safe surfing1584
- Vodafone launches high speed mobile Wi-Fi1584
- A DAB hand1581
- Hackers leak 1m Apple UDIDs allegedly stolen from FBI laptop1574
- State nets €855m from 4G spectrum sale1571
- Experts call for two-factor authentication on Twitter1570
- LivingSocial hacked, 50 million users told to reset passwords1556
- Dexter malware infects point-of-sale systems worldwide, researchers say1524
- Java fix and better communication needed1511
- BitCoin exchange loses $250,0000 after encryption keys stolen1498
- Ruby on Rails vulnerability compromises servers for botnet1495
- Microsoft brushes off claim Xbox Live accounts were compromised1486
- Important SCADA systems secured using weak log-ins1445
- Pirate Bay introduces Web browser to elude censorship1440
- IT pros offered new Cloud Security qualification1431
- Serious data breaches take months to spot1423
- Android antivirus products a big flop, say researchers1417
- Sony admits 400 Chinese customer names, e-mails leaked from mobile division1409
- US to scrutinise IT purchases with ties to China1380
- Denial of service attacks more complex, targeted and angry1376
- Windows phones can be burned by rogue hotspots1369
- Facebook security bug exposes 6m users’ contact info1364
- Spam levels down as industry takes aim at botnets1359
- McAfee heart problems delay deportation to Belize1359
- Malware can be installed on iPhone, iPad using malicious charger1349
- There’s no such thing as information security risk1345
- Online scammers target unemployed with fake job offers1341
- Hybrid cloud accelerates demise of traditional firewall security1336
- Tech companies feel the pressure over tax, privacy1329
- Server management flaws pose immediate risk1313
- Vodafone calls on app developers to make a difference1300
- Kaspersky developing secure OS for industrial control1297
- Best worst enemy1289
- Phishing attacks show sudden drop as criminals use servers for DDoS1275
- NCBI hosts mobile app workshop for Smart Accessibility Awards1261
- XP retirement will be hacker heaven1241
- Blackberry users frustrated by Vodafone network snafu1230
- Annual DPC report shows increase in complaints, and data access issues1223
- Complete Telecom awarded HP Advanced Networking Specialist accreditation1221
- China calls for cooperation not war in cyberspace1214
- Vodafone Ireland to spend €5m on public sector broadband network 1198
- Bit9 blames SQL injection flaw for recent hack1184
- Lenovo PCs allegedly banned by CIA and MI5 1154
- Leaked Apple UDIDs stolen from digital publishing firm1137
- Data ‘crown jewels’ must determine security stance1130
- BlackBerry 10 cleared for use by US Defence dept1108
- Sophos Android security update1099
- Airfibre’s managed firewall service with Palo Alto Networks1095
- LulzSec turncoat dodges sentencing for second time1076
- Vodafone offers $1.68 billion for Cable Wireless Worldwide1075
- Suspected China-based hackers ‘Comment Crew’ emerge again1073
- Bradley Manning’s maximum sentence reduced to 90 years1060
- Mobile boom turns BYOD into unmanaged risk1056
- Vodafone Smart StartUp Network comes to Cork1024
- Custom House builds up security with Dell firewall1020
- Global markets ‘at risk’ from cyberattacks on exchanges1005
- Citrix optimises offerings for any device943
- Dual-OS hybrid tablets create challenges for IT938
- Digital forensics professionals to get global certification935
- Firewall performance threatened by rising encryption traffic931
- Global security market will grow to $86 billion by 2016931
- Snowden may stop leaking documents929
- Web companies summoned by UK government over illegal images, ‘hate’ content921
- Enterprise networks ‘riddled’ with vulnerable Java installations912
- Study finds Internet users actually heed browser warnings883
- Facebook, Twitter, Google call for transparency in surveillance requests848
- Vodafone, Magnet join eircom in offering fast broadband services847
- Mega founder vows to create encrypted e-mail service for the masses844
- Report: Microsoft helped NSA circumvent its own encryption843
- Google says Gmail does no illegal evil842
- US and Euro cloud providers go head-to-head after NSA revelations835
- Snowden seeks asylum from several countries, including Ireland815
- Malware alliances a new headache for antivirus software814
- Twitter’s two-factor authentication implementation can be abused, researchers say808
- FBI, Microsoft takedown blunts most Citadel botnets807
- Security pros brace for Carberp source code release799
- New York Post Twitter and Facebook accounts hacked by Syrian Electronic Army793
- Cybercrime incidents cost Irish businesses average of €135,000 762
- Dropbox, WordPress used in cyberespionage campaign757
- Academic banned from publishing car-hacking paper755
- Google detects phishing attacks in Iran ahead of elections753
- Opera says hackers pilfered expired code-signing certificate740
- Bitcoin exchange files with US Treasury regulatory agency735
- Critics question whether NSA data collection is effective696
- Government to consider stringent online child protection measures687
- Vodafone revenue and profit drop as European troubles continue686
- US intelligence chief defends surveillance programs683
- Prism leaker steps forward, cites ‘massive surveillance machine’677
- S4 full review667
- Smartphones could evolve into password killers658
- Venezuela, Nicaragua, Bolivia offers asylum to Edward Snowden623
- SIM cards vulnerable to hacking607
- Layered defences largely fail to block exploits594
- Apple restores key parts of dev site after attack592
- Prism whistleblower Snowden leaves Hong Kong, reportedly for Russia585
- Microsoft asks to disclose FISA requests to set the record straight575
- We know who you are567
- Snowden leaves Moscow airport as Russia grants him asylum for a year533
- Canonical takes Ubuntu forums offline in wake of password breach502
- Hackers target servers running Apache Struts apps497
- Ubisoft suffers account database breach491
- Baby monitor hack highlights manufacturers’ security shortfalls475
- Hack or research?469
- Obama calls for review of surveillance programmes448
- SQL flaws remain an Achilles heel for IT security groups420
- US court renews permission to NSA to collect phone metadata413
- Apple acknowledges developer portal hack405
- Manning shared data without regard for national security399
- WikiLeaks slams US for pursuing Snowden398
- White House opposes amendment to curb NSA spying390
- Manning acquitted of aiding enemy, found guilty on other charges388
- US appeals court upholds warrantless collection of phone location data370
- Oil, gas field sensors vulnerable to attack via radio waves348
- Trend Micro to provide cybercrime training for Interpol346
- MIT report says it didn’t seek federal charges against Aaron Swartz332
- Microsoft scares Windows XP users straight with undead bug warning295
- Sophisticated? Really?207
- Survey: Network Security165
- Survey: IT Security111
- Security focus: APTs and the Irish situation110
- Cloud Continuity and Security: Certification race 101
- Under Currents: A necessary evil93
- INSIDE TRACK: Antivirus, antispam and firewalls90
- Facebook fixes timeline bug, cites language trouble in delay88
- INSIDE TRACK: Security breaches78
Logging in re-directs to the actual vodafone.ie My Vodafone page, which again asks the user to log in.
According to Eset, the domain owner of the fake website is Latorcorp Ltd, which is believed to be connected to a company from Nigeria linked to a number of 419 scams.
A post on Vodafone Ireland’s support page recommended users be vigilant for such ‘SMiShing’ scams and not to click on links in e-mails promising prizes subject to re-entering user names and passwords. It also recommended not inputting bank details into websites that don’t use the https protocol.
TechCentral Reporters
