Selasa, 11 September 2012

Littlewoods Account Confirmation Scam Swipes User Passwords


Littlewoods customers are advised to be on the lookout for the latest scam that leverages the name of the popular retailer.

Here’s what the shady messages look like:

Dear Littlewoods account holder,

We detected irregular activity on your Littlewoods Account. We require you to complete an account update to avoid account suspension.

You must verify your account information, and upon verification, we will remove any restrictions placed on your account.

To review your account as soon as possible please click on the link below,

Click here to proceed

The links don’t point to the legitimate website, but to a compromised nutrition site from Portugal that has been set up to host a fake login page. Here, victims are asked to provide email addresses, passwords, postcodes and birth dates.

The clever thing about the malicious site is that all the links and buttons actually point to the legitimate website (littlewoods.com), except for the elements that surround the Sign In/Register form.

Once the information is provided and the Continue button is pressed, the victim is taken to the legitimate site, while the details are seamlessly stored in a database controlled by the crooks.

Via: Littlewoods Account Confirmation Scam Swipes User Passwords

Tidak ada komentar:

Posting Komentar