<?xml version="1.0" encoding="UTF-8"?><?xml-stylesheet type="text/css" media="screen" href="http://s2.wp.com/wp-content/themes/vip/newyorkobserver/stylesheets/rss.css"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Betabeat &#187; Spammers Now Phishing via Google Docs</title>
	<atom:link href="http://betabeat.com/2012/10/spammers-now-phishing-via-google-docs/feed/" rel="self" type="application/rss+xml" />
	<link>http://betabeat.com</link>
	<description>Just another WordPress.com site</description>
	<lastBuildDate>Wed, 19 Jun 2013 01:00:22 +0000</lastBuildDate>
	<language></language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='betabeat.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Betabeat &#187; Spammers Now Phishing via Google Docs</title>
		<link>http://betabeat.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://betabeat.com/osd.xml" title="Betabeat" />
	<atom:link rel='hub' href='http://betabeat.com/?pushpress=hub'/>
		<item>
				
		<title>Spammers Now Phishing via Google Docs</title>

		<comments>http://betabeat.com/2012/10/spammers-now-phishing-via-google-docs/#comments</comments>
		<pubDate>Thu, 18 Oct 2012 17:01:46 -0400</pubDate>
					<link>http://betabeat.com/2012/10/spammers-now-phishing-via-google-docs/</link>
			<dc:creator>Steve Huff</dc:creator>
				
		<guid isPermaLink="false">http://betabeat.com/?p=67056</guid>
		<description><![CDATA[<p><div id="attachment_547" class="wp-caption alignleft" style="width: 310px"><a href="http://nyobetabeat.files.wordpress.com/2011/03/spam-guy.jpg"><img class="size-medium wp-image-547" title="spam guy" alt="" src="http://nyobetabeat.files.wordpress.com/2011/03/spam-guy.jpg?w=300" height="211" width="300" /></a><p class="wp-caption-text">This guy.</p></div></p>
<p>In a new SecureList blog post, Kaspersky Lab researcher Vicente Diaz has described a new frontier in a relatively old online scam. Phishers, tired of building fake websites to lure victims into unintentionally giving away email addresses, passwords or even financial information are beginning to use Google Docs to siphon data from the unwary.<!--more--></p>
<p>This approach makes it easy for spammers to bypass filters, as emails with links to a shared Google document don't get flagged, giving the recipient the illusion that the message is legit.</p>
<p>Mr. Diaz <a href="http://www.securelist.com/en/blog/208193911/Fraud_abusing_Google_Docs">writes</a> that tricking someone into entering personal data into a sketchy Google Doc is only "the tip of the iceberg":</p>
<blockquote><p>Google Docs allows hosting other contents such as executable files in different formats, resulting in a very convenient and free hosting service for malicious content. As a bonus the connection is HTTPS by default, making it even more convenient for cybercriminals the use of this service.</p></blockquote>
<p>HTTPS is the communications protocol that supposedly means a web page is secure and any data entered in a form on that page won't be intercepted by a cyber-thief.</p>
<p>The Google Docs dodge is fairly new but may not be all that rare, as spammers are catching on to the fact that it's so easy to make a target believe they're looking at a legitimate document.</p>
<p>Until anti-spam programs begin to learn and account for this ploy the best defense is skepticism. If you have no idea why anyone would share a Google document with you, don't even click the link.</p>
]]></description>
		<content:encoded><![CDATA[<p><div id="attachment_547" class="wp-caption alignleft" style="width: 310px"><a href="http://nyobetabeat.files.wordpress.com/2011/03/spam-guy.jpg"><img class="size-medium wp-image-547" title="spam guy" alt="" src="http://nyobetabeat.files.wordpress.com/2011/03/spam-guy.jpg?w=300" height="211" width="300" /></a><p class="wp-caption-text">This guy.</p></div></p>
<p>In a new SecureList blog post, Kaspersky Lab researcher Vicente Diaz has described a new frontier in a relatively old online scam. Phishers, tired of building fake websites to lure victims into unintentionally giving away email addresses, passwords or even financial information are beginning to use Google Docs to siphon data from the unwary.<!--more--></p>
<p>This approach makes it easy for spammers to bypass filters, as emails with links to a shared Google document don't get flagged, giving the recipient the illusion that the message is legit.</p>
<p>Mr. Diaz <a href="http://www.securelist.com/en/blog/208193911/Fraud_abusing_Google_Docs">writes</a> that tricking someone into entering personal data into a sketchy Google Doc is only "the tip of the iceberg":</p>
<blockquote><p>Google Docs allows hosting other contents such as executable files in different formats, resulting in a very convenient and free hosting service for malicious content. As a bonus the connection is HTTPS by default, making it even more convenient for cybercriminals the use of this service.</p></blockquote>
<p>HTTPS is the communications protocol that supposedly means a web page is secure and any data entered in a form on that page won't be intercepted by a cyber-thief.</p>
<p>The Google Docs dodge is fairly new but may not be all that rare, as spammers are catching on to the fact that it's so easy to make a target believe they're looking at a legitimate document.</p>
<p>Until anti-spam programs begin to learn and account for this ploy the best defense is skepticism. If you have no idea why anyone would share a Google document with you, don't even click the link.</p>
]]></content:encoded>
		<wfw:commentRss>http://betabeat.com/2012/10/spammers-now-phishing-via-google-docs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:thumbnail url="http://nyobetabeat.files.wordpress.com/2011/03/spam-guy.jpg?w=150" />
		<media:content url="http://nyobetabeat.files.wordpress.com/2011/03/spam-guy.jpg?w=150" medium="image">
			<media:title type="html">spam guy</media:title>
		</media:content>

		<media:content url="http://1.gravatar.com/avatar/12d391316d94afeef01bd9a987c847fe?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">shuffobserver</media:title>
		</media:content>

		<media:content url="http://nyobetabeat.files.wordpress.com/2011/03/spam-guy.jpg?w=300" medium="image">
			<media:title type="html">spam guy</media:title>
		</media:content>
	</item>
	</channel>
</rss>
