<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.blogher.com" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>BlogHer - The mouse exposes the phish - Comments</title>
 <link>http://www.blogher.com/node/13758</link>
 <description>Comments for &quot;The mouse exposes the phish&quot;</description>
 <language>en</language>
<item>
 <title>I can&#039;t say I&#039;ve seen it with PayPal</title>
 <link>http://www.blogher.com/node/13758#comment-13691</link>
 <description>&lt;p&gt;I have seen it with phishing faking being banks, though. I chalk it up to having a public email address.&lt;/p&gt;
&lt;p&gt;&lt;hr /&gt;&lt;/p&gt;
&lt;p&gt;&lt;i&gt;Laura Scott&lt;br /&gt;
&lt;a href=&quot;http://www.pingv.com&quot;&gt;design&lt;/a&gt;, &lt;a href=&quot;http://scatteredsunshine.com&quot;&gt;snap&lt;/a&gt;, &lt;a href=&quot;http://www.rarepattern.com&quot;&gt;blog&lt;/a&gt;&lt;/i&gt;&lt;/p&gt;
</description>
 <pubDate>Mon, 01 Jan 2007 11:55:57 -0600</pubDate>
 <dc:creator>Laura Scott</dc:creator>
 <guid isPermaLink="false">comment 13691 at http://www.blogher.com</guid>
</item>
<item>
 <title>Re: Lots of phishing has the user&#039;s name</title>
 <link>http://www.blogher.com/node/13758#comment-13546</link>
 <description>&lt;p&gt;hmmm... I&#039;ve never seen it.  Legit PayPal emails always address me by my registered name - not a generic &quot;Dear PayPal Member.&quot; So far I&#039;ve not seen any evidence that the scammers have access to that user info - if they did, why would they use &quot;Dear PayPal Member&quot; instead?&lt;/p&gt;
&lt;p&gt;Thanks Laura,  &lt;/p&gt;
&lt;p&gt;-Bob&lt;br /&gt;
&lt;a href=&quot;http://www.bobafifi.com&quot;&gt;bobafifi.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.usedflutes.com&quot;&gt;usedflutes.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fluteplayer.net&quot;&gt;fluteplayer.net&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Wed, 27 Dec 2006 14:54:04 -0600</pubDate>
 <dc:creator>bobafifi</dc:creator>
 <guid isPermaLink="false">comment 13546 at http://www.blogher.com</guid>
</item>
<item>
 <title>Good tip</title>
 <link>http://www.blogher.com/node/13758#comment-13544</link>
 <description>&lt;p&gt;I wonder what banks are doing, as they almost certainly must have a less tech-savvy clientÃ¨le, on average.&lt;/p&gt;
&lt;p&gt;&lt;hr /&gt;&lt;/p&gt;
&lt;p&gt;&lt;i&gt;Laura Scott&lt;br /&gt;
&lt;a href=&quot;http://www.pingv.com&quot;&gt;design&lt;/a&gt;, &lt;a href=&quot;http://scatteredsunshine.com&quot;&gt;snap&lt;/a&gt;, &lt;a href=&quot;http://www.rarepattern.com&quot;&gt;blog&lt;/a&gt;&lt;/i&gt;&lt;/p&gt;
</description>
 <pubDate>Wed, 27 Dec 2006 14:20:35 -0600</pubDate>
 <dc:creator>Laura Scott</dc:creator>
 <guid isPermaLink="false">comment 13544 at http://www.blogher.com</guid>
</item>
<item>
 <title>Lots of phishing has the user&#039;s name</title>
 <link>http://www.blogher.com/node/13758#comment-13543</link>
 <description>&lt;p&gt;So unfortunately that&#039;s not enough of a protective strategy for many folks, alas.&lt;/p&gt;
&lt;p&gt;&lt;hr /&gt;&lt;/p&gt;
&lt;p&gt;&lt;i&gt;Laura Scott&lt;br /&gt;
&lt;a href=&quot;http://www.pingv.com&quot;&gt;design&lt;/a&gt;, &lt;a href=&quot;http://scatteredsunshine.com&quot;&gt;snap&lt;/a&gt;, &lt;a href=&quot;http://www.rarepattern.com&quot;&gt;blog&lt;/a&gt;&lt;/i&gt;&lt;/p&gt;
</description>
 <pubDate>Wed, 27 Dec 2006 14:17:04 -0600</pubDate>
 <dc:creator>Laura Scott</dc:creator>
 <guid isPermaLink="false">comment 13543 at http://www.blogher.com</guid>
</item>
<item>
 <title>Thanks, and please be assured</title>
 <link>http://www.blogher.com/node/13758#comment-13542</link>
 <description>&lt;p&gt;I wasn&#039;t phishing for props. ;)&lt;/p&gt;
&lt;p&gt;&lt;hr /&gt;&lt;/p&gt;
&lt;p&gt;&lt;i&gt;Laura Scott&lt;br /&gt;
&lt;a href=&quot;http://www.pingv.com&quot;&gt;design&lt;/a&gt;, &lt;a href=&quot;http://scatteredsunshine.com&quot;&gt;snap&lt;/a&gt;, &lt;a href=&quot;http://www.rarepattern.com&quot;&gt;blog&lt;/a&gt;&lt;/i&gt;&lt;/p&gt;
</description>
 <pubDate>Wed, 27 Dec 2006 14:16:00 -0600</pubDate>
 <dc:creator>Laura Scott</dc:creator>
 <guid isPermaLink="false">comment 13542 at http://www.blogher.com</guid>
</item>
<item>
 <title>I got this one too!</title>
 <link>http://www.blogher.com/node/13758#comment-13451</link>
 <description>&lt;p&gt;I got this one, but it wasn&#039;t an iPod, it was a Dell computer that I had supposedly bought. I must admit that, even as an experienced phish detector, I almost clicked that link.&lt;/p&gt;
&lt;p&gt;I do still send them on to &lt;a href=&quot;mailto:spoof@paypal.com&quot;&gt;spoof@paypal.com&lt;/a&gt; and/or &lt;a href=&quot;mailto:spoof@ebay.com&quot;&gt;spoof@ebay.com&lt;/a&gt;, if only to alert them to the scam. The companies say they investigate -- I hope they do.&lt;/p&gt;
&lt;p&gt;Mary&lt;/p&gt;
&lt;p&gt;The Blog: &lt;a href=&quot;http://bozoette.typepad.com&quot;&gt;Red Nose&lt;/a&gt;&lt;br /&gt;
The Book: &lt;a href=&quot;http://www.lulu.com/content/45470&quot;&gt;Girl Clown&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Sat, 23 Dec 2006 17:55:49 -0600</pubDate>
 <dc:creator>maryrwise</dc:creator>
 <guid isPermaLink="false">comment 13451 at http://www.blogher.com</guid>
</item>
<item>
 <title>Re: There have been so many</title>
 <link>http://www.blogher.com/node/13758#comment-13425</link>
 <description>&lt;p&gt;I used to send bogus emails on to PayPal, eBay etc.  However, once I got wise that the scammers didn&#039;t know the name and email address I used to register with these companies, I simply set up rules in my email filters to screen for those keywords.  I&#039;ve had 100% success this way - legit PayPal emails go into their own folder, all the bogus ones don&#039;t and are easily marked spam and deleted.&lt;/p&gt;
&lt;p&gt;-Bob&lt;br /&gt;
&lt;a href=&quot;http://www.bobafifi.com&quot;&gt;bobafifi.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.usedflutes.com&quot;&gt;usedflutes.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fluteplayer.net&quot;&gt;fluteplayer.net&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Sat, 23 Dec 2006 00:12:38 -0600</pubDate>
 <dc:creator>bobafifi</dc:creator>
 <guid isPermaLink="false">comment 13425 at http://www.blogher.com</guid>
</item>
<item>
 <title>There have been so many</title>
 <link>http://www.blogher.com/node/13758#comment-13424</link>
 <description>&lt;p&gt;There have been so many phishing emails for Payp[al, that you can now forward a Paypal email that you think is suspect to &quot;spoof@paypal.com&quot;, and they will reply letting you know if it was real or bogus. &lt;/p&gt;
&lt;p&gt;~~ Contributing Editor, Mata H. also blogs relentlessly at &lt;a href=&quot;http://timesfool.blogspot.com&quot;&gt;Time&#039;s Fool&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Fri, 22 Dec 2006 22:55:26 -0600</pubDate>
 <dc:creator>Mata H</dc:creator>
 <guid isPermaLink="false">comment 13424 at http://www.blogher.com</guid>
</item>
<item>
 <title>Re: The mouse exposes the phish</title>
 <link>http://www.blogher.com/node/13758#comment-13414</link>
 <description>&lt;p&gt;Unless the email addresses me by my name - not &quot;Dear PayPal Member&quot; - I know it&#039;s BS.&lt;/p&gt;
&lt;p&gt;-Bob&lt;br /&gt;
&lt;a href=&quot;http://www.bobafifi.com&quot;&gt;bobafifi.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.usedflutes.com&quot;&gt;usedflutes.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.fluteplayer.net&quot;&gt;fluteplayer.net&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Fri, 22 Dec 2006 17:56:00 -0600</pubDate>
 <dc:creator>bobafifi</dc:creator>
 <guid isPermaLink="false">comment 13414 at http://www.blogher.com</guid>
</item>
<item>
 <title>Cute headline, BTW</title>
 <link>http://www.blogher.com/node/13758#comment-13409</link>
 <description>&lt;p&gt;Just had to give props to the mouse/phish headline :)&lt;/p&gt;
&lt;p&gt;Elisa Camahort&lt;br /&gt;
BlogHer and Worker Bees&lt;br /&gt;
elisa@blogher.org/elisa@workerbees.biz&lt;/p&gt;
</description>
 <pubDate>Fri, 22 Dec 2006 17:24:15 -0600</pubDate>
 <dc:creator>Elisa Camahort</dc:creator>
 <guid isPermaLink="false">comment 13409 at http://www.blogher.com</guid>
</item>
<item>
 <title>That&#039;s a new one</title>
 <link>http://www.blogher.com/node/13758#comment-13407</link>
 <description>&lt;p&gt;I&#039;ve seen a lot of phishing,but this one&#039;s new on me.&lt;/p&gt;
&lt;p&gt;Although, here&#039;s a funny story that happened the other day. I got an email thanking me for my recent membership of an organization with which I was certainly familiar, but hadn&#039;t joined. It was unclear how I&#039;d been charged, although it quoted a value for my membership. It seemed quite real in all respects.&lt;/p&gt;
&lt;p&gt;So I called them.&lt;/p&gt;
&lt;p&gt;Turns out one of the org&#039;s staff wanted to let me check out something for potential use at the conference,so they had created a dummy membership for me to go behind their members only firewall.&lt;/p&gt;
&lt;p&gt;Of course her email telling me that only showed up after I had indignantly called the org and protested that I had *not* joined their organization!&lt;/p&gt;
&lt;p&gt;So, in this case, and only in this case, it was not a phish, but a favor.&lt;/p&gt;
&lt;p&gt;Elisa Camahort&lt;br /&gt;
BlogHer and Worker Bees&lt;br /&gt;
elisa@blogher.org/elisa@workerbees.biz&lt;/p&gt;
</description>
 <pubDate>Fri, 22 Dec 2006 17:04:57 -0600</pubDate>
 <dc:creator>Elisa Camahort</dc:creator>
 <guid isPermaLink="false">comment 13407 at http://www.blogher.com</guid>
</item>
<item>
 <title>The mouse exposes the phish</title>
 <link>http://www.blogher.com/node/13758</link>
 <description>&lt;p&gt;I received a rather alarming email today from what appeared to be PayPal, confirming an iPod purchase that I never made. I get well over 100 spam and phishing emails every day, but I confess this one made me blink.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;node/13755&quot;&gt;&lt;img src=&quot;http://www.blogher.com/files/images/screenshot-paypal-phishing.jpg&quot; width=&quot;230&quot; alt=&quot;PayPal phishing&quot; /&gt;&lt;/a&gt;This email was &lt;b&gt;not&lt;/b&gt; from PayPal, but they wanted me to believe it was. &quot;Hey, wait a minute!&quot; I cried not quite aloud. &quot;I didn&#039;t order any iPod!&quot;&lt;/p&gt;
&lt;p&gt;Of course I hadn&#039;t. And I had not been charged for any iPod. This was yet another tactic in the world of phishing, and I could only groan at how many innocent people will be suckered by it. It happens &lt;a href=&quot;http://www.mndaily.com/articles/2006/12/12/70260&quot;&gt;all too often&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Many readers will already know about &lt;a href=&quot;http://en.wikipedia.org/wiki/Phishing&quot;&gt;phishing&lt;/a&gt;:&lt;/p&gt;
&lt;blockquote&gt;&lt;p&gt;Phishers attempt to fraudulently acquire sensitive information, such as passwords and credit card details, by masquerading as a trustworthy person or business in an electronic communication. Phishing is typically carried out using email or an instant message, although phone contact has been used as well. Attempts to deal with the growing number of reported phishing incidents include legislation, user training, and technical measures.&lt;/p&gt;&lt;/blockquote&gt;
&lt;p&gt;The best way to deal with phishing is to recognize it when you see it. And here, &lt;i&gt;your mouse is your friend&lt;/i&gt;. The answer is hidden in the links within the email. &lt;/p&gt;
&lt;p&gt;If I&#039;m not sure about the identity of the sender, and cannot dismiss the email out of hand -- &lt;i&gt;e.g.&lt;/i&gt;, I don&#039;t have a Wells Fargo account or eBay account, thank you very much -- I &lt;b&gt;mouse over the link&lt;/b&gt; -- &lt;b&gt;don&#039;t click&lt;/b&gt;* -- and see where it &lt;i&gt;really&lt;/i&gt; links to.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;node/13756&quot;&gt;&lt;img src=&quot;http://www.blogher.com/files/images/screenshot-paypal-phishing-2.jpg&quot; width=&quot;330&quot; alt=&quot;mouse over the link&quot; /&gt;&lt;/a&gt;Here, in this screenshot, I can see that the link takes me to some website called kiesz.com. &lt;i&gt;(Note: Where the link is revealed differs between email programs. If the link doesn&#039;t pop up when you mouse over the link, you might see the link down in the status bar of your email program at the bottom.)&lt;/i&gt;&lt;/p&gt;
&lt;p&gt;I&#039;m not fooled by the &lt;a href=&quot;http://www.google.com&quot; title=&quot;http://www.google.com&quot;&gt;http://www.google.com&lt;/a&gt; in the url -- that&#039;s just a trick to make you think the url is &quot;safe,&quot; but Google will just redirect you to the pernicious site ... which will &lt;i&gt;look&lt;/i&gt; real (but won&#039;t be).&lt;/p&gt;
&lt;p&gt;If you do happen to click to the site, whatever you do, don&#039;t type in your private information! Instead, go to the institution&#039;s actual website and start there. For example, if the email was seemingly from PayPal, manually surf to paypal.com and type in your information there.&lt;/p&gt;
&lt;p&gt;What is really dangerous (and imho evil) about these PayPal scams is that, in most cases, the thief will be able to get in and drain hundreds or thousands of dollars from your account before you notice. The same goes for personal banking accounts.&lt;/p&gt;
&lt;p&gt;So whenever you encounter what smells like a phish, let your mouse check it out and avoid what could end up being a bear of a problem.&lt;/p&gt;
&lt;p&gt;Happy Holidays!&lt;/p&gt;
&lt;p&gt;*If you click, then the phisher/spammer will have confirmation that your email address is valid, and will be able to sell it to other phishers and spammers, and you&#039;ll only get more and more of this garbage in your in-box.&lt;/p&gt;
&lt;p&gt;&lt;i&gt;Laura Scott blogs on her business site, &lt;a href=&quot;http://pingv.com&quot;&gt;pingVision&lt;/a&gt;, and her personal blog, &lt;a href=&quot;http://rarepattern.com&quot;&gt;rare pattern&lt;/a&gt;.&lt;/i&gt;&lt;/p&gt;
</description>
 <comments>http://www.blogher.com/node/13758#comments</comments>
 <category domain="http://www.blogher.com/topic/technology-web">Technology &amp;amp; Web</category>
 <pubDate>Fri, 22 Dec 2006 16:22:41 -0600</pubDate>
 <dc:creator>Laura Scott</dc:creator>
 <guid isPermaLink="false">13758 at http://www.blogher.com</guid>
</item>
</channel>
</rss>
