<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.blogher.com" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>BlogHer - What to do if you get spoofed - Comments</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed</link>
 <description>Comments for &quot;What to do if you get spoofed&quot;</description>
 <language>en</language>
<item>
 <title>I use a Mac</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-26497</link>
 <description>&lt;p&gt;Mail.app will reveal the url if you just hover the mouse over the link for a second or so. In Thunderbird, as I recall (and it has been a while), the URL shows up in the status bar at the bottom of the window (if the status bar is enabled).&lt;/p&gt;
&lt;p&gt;&lt;hr /&gt;&lt;br /&gt;
&lt;i&gt;&lt;b&gt;Laura Scott&lt;/b&gt;&lt;br /&gt;
BlogHer Contributing Editor for Technology &amp;amp; Web&lt;br /&gt;
&lt;a href=&quot;http://www.pingv.com&quot;&gt;design&lt;/a&gt;, &lt;a href=&quot;http://scatteredsunshine.com&quot;&gt;snap&lt;/a&gt;, &lt;a href=&quot;http://www.rarepattern.com&quot;&gt;blog&lt;/a&gt;&lt;/i&gt;&lt;/p&gt;
</description>
 <pubDate>Mon, 20 Aug 2007 13:18:55 -0500</pubDate>
 <dc:creator>Laura Scott</dc:creator>
 <guid isPermaLink="false">comment 26497 at http://www.blogher.com</guid>
</item>
<item>
 <title>No tool tip on a Mac</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-26140</link>
 <description>&lt;p&gt;Good point about the mouseover, but you don&#039;t get a tooltip with the destination of the link like that on a Mac. Since most people use Windows, this is a great idea, however.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.webteacher.ws/&quot; title=&quot;http://www.webteacher.ws/&quot;&gt;http://www.webteacher.ws/&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://first50.wordpress.com/&quot; title=&quot;http://first50.wordpress.com/&quot;&gt;http://first50.wordpress.com/&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Wed, 15 Aug 2007 08:24:09 -0500</pubDate>
 <dc:creator>Virginia DeBolt</dc:creator>
 <guid isPermaLink="false">comment 26140 at http://www.blogher.com</guid>
</item>
<item>
 <title>Blogging and Phishing</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-26078</link>
 <description>&lt;p&gt;Thanks, Virginia, for the welcome.&lt;/p&gt;
&lt;p&gt;Laura, you&#039;re right, of course, about the mouse hover trick, though they&#039;re even gettng more clever these days about that. I would still recommend not even hyperlinking within an e-mail.&lt;/p&gt;
&lt;p&gt;Virginia, my books fall into the mystery genre, however they&#039;re rather light-hearted, fun-flled novels about four women from all different walks of life who work together to come to the aid of other women with grace, humor, camaraderie and chocolate.&lt;/p&gt;
&lt;p&gt;Felicia Donovan&lt;br /&gt;
&lt;a href=&quot;http://www.feliciadonovan.com&quot; title=&quot;www.feliciadonovan.com&quot;&gt;www.feliciadonovan.com&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.blackwidowagency.com&quot; title=&quot;www.blackwidowagency.com&quot;&gt;www.blackwidowagency.com&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Tue, 14 Aug 2007 19:03:37 -0500</pubDate>
 <dc:creator>FeliciaDonovan</dc:creator>
 <guid isPermaLink="false">comment 26078 at http://www.blogher.com</guid>
</item>
<item>
 <title>Great pointers</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-26071</link>
 <description>&lt;p&gt;One thing always helpful to remember, too, is that &lt;a href=&quot;http://www.blogher.com/node/13758&quot;&gt;the mouse exposes the phish&lt;/a&gt;. ;)&lt;/p&gt;
&lt;p&gt;&lt;hr /&gt;&lt;/p&gt;
&lt;p&gt;&lt;i&gt;Laura Scott&lt;br /&gt;
&lt;a href=&quot;http://www.pingv.com&quot;&gt;design&lt;/a&gt;, &lt;a href=&quot;http://scatteredsunshine.com&quot;&gt;snap&lt;/a&gt;, &lt;a href=&quot;http://www.rarepattern.com&quot;&gt;blog&lt;/a&gt;&lt;/i&gt;&lt;/p&gt;
</description>
 <pubDate>Tue, 14 Aug 2007 14:05:26 -0500</pubDate>
 <dc:creator>Laura Scott</dc:creator>
 <guid isPermaLink="false">comment 26071 at http://www.blogher.com</guid>
</item>
<item>
 <title>Great input</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-26021</link>
 <description>&lt;p&gt;Felicia, thanks for the great input. Excellent suggestions. I am particularly happy to learn about &lt;a href=&quot;mailto:reportphishing@antiphishing.org&quot;&gt;reportphishing@antiphishing.org&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;You&#039;ve probably made a new fan of me too, since I see you write mysteries: my favorite fun-time reading.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.webteacher.ws/&quot; title=&quot;http://www.webteacher.ws/&quot;&gt;http://www.webteacher.ws/&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://first50.wordpress.com/&quot; title=&quot;http://first50.wordpress.com/&quot;&gt;http://first50.wordpress.com/&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Mon, 13 Aug 2007 19:26:44 -0500</pubDate>
 <dc:creator>Virginia DeBolt</dc:creator>
 <guid isPermaLink="false">comment 26021 at http://www.blogher.com</guid>
</item>
<item>
 <title>Spoofing and Phishing</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-26011</link>
 <description>&lt;p&gt;Virginia, thank you for this posting. To answer several questions here, one has to understand that most e-mail addresses eventually end up along with millions of others on lists that are readily traded on the Internet and used in these spoofing or &quot;phishing&quot; attempts. Computers are programmed to make millions of these attempts an hour, often through the use of hijacked computers whereby the user doesn&#039;t even realize their computer is being used.&lt;/p&gt;
&lt;p&gt;Spoofing e-mails such as those Virigina described can be forwarded directly to &lt;a href=&quot;mailto:reportphishing@antiphishing.org&quot;&gt;reportphishing@antiphishing.org&lt;/a&gt;.  This is a legitimate organization that tracks and tries to stop attempts.  Some popular on-line venues like eBay have their own security personnel that will investigate these phishing attempts. I have been sending e-mails to &lt;a href=&quot;mailto:spoof@ebay.com&quot;&gt;spoof@ebay.com&lt;/a&gt; for years. They do appreciate the information, but the problem is that the proliferation of these &quot;social engineering&quot; attacks is pervasive. &lt;/p&gt;
&lt;p&gt;Virginia made some very good suggestions. Here are a few more:&lt;/p&gt;
&lt;p&gt;1) Make sure your e-mail client does not preview e-mail by automatically opening it up.  Outlook Express by default, is setup this way and the settings are easily changed. You should always review e-mails prior to opening them.&lt;br /&gt;
2) Never click on a link inside of an e-mail that requires personal or account information.  Assume it is a phishing attempt and act accordingly. Open a new session in Internet Explorer and type the real address (i.e. &lt;a href=&quot;http://www.ebay.com&quot; title=&quot;www.ebay.com&quot;&gt;www.ebay.com&lt;/a&gt; or &lt;a href=&quot;http://www.paypal.com&quot; title=&quot;www.paypal.com&quot;&gt;www.paypal.com&lt;/a&gt;) and then log in.&lt;br /&gt;
3) Use a strong virus program like McAffee or Symantec AntiVirus in case the e-mail contains a payload.&lt;br /&gt;
4) Never, ever respond in frustration or anger to a spoof attempt or spam e-mail because that will validate your e-mail address.&lt;br /&gt;
5) Spell out &quot;dot&quot; if your e-mail address is published and make it more difficult to be swept up into a spamhouse. For example, my e-mail would be felicia_at_feliciadonovan_dot_com making it much more difficult to be scooped.&lt;br /&gt;
6) When going to a site like eBay or your bank, the http: part of the address in the URL should be https: once you get to the part that requires a log in. That indicates you are in a secure, encrypted area.&lt;/p&gt;
&lt;p&gt;Thanks again for a great article. Knowledge is power. As the characters in my books say, &quot;We ARE the World Wide Web.&quot;&lt;/p&gt;
&lt;p&gt;Felicia Donovan&lt;br /&gt;
Author, THE BLACK WIDOW AGENCY&lt;br /&gt;
&lt;a href=&quot;http://www.feliciadonovan.com&quot; title=&quot;www.feliciadonovan.com&quot;&gt;www.feliciadonovan.com&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.blackwidowagency.com&quot; title=&quot;www.blackwidowagency.com&quot;&gt;www.blackwidowagency.com&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Mon, 13 Aug 2007 18:42:09 -0500</pubDate>
 <dc:creator>FeliciaDonovan</dc:creator>
 <guid isPermaLink="false">comment 26011 at http://www.blogher.com</guid>
</item>
<item>
 <title>It&#039;s like shredding</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-25937</link>
 <description>&lt;p&gt;It&#039;s like shredding paper. You make sure you don&#039;t let anything with your sociial security number go unshredded. Email requires the same vigilance.&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;With email, it can SOMETIMES be harmless to open it, but if the email is trying to pry info out of you with some half-baked story about your account information or something like that it&#039;s important not to respond.&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;http://www.webteacher.ws/ &lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://first50.wordpress.com/&quot; title=&quot;http://first50.wordpress.com/&quot;&gt;http://first50.wordpress.com/&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Mon, 13 Aug 2007 07:28:35 -0500</pubDate>
 <dc:creator>Virginia DeBolt</dc:creator>
 <guid isPermaLink="false">comment 25937 at http://www.blogher.com</guid>
</item>
<item>
 <title>Confusion is a clue</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-25936</link>
 <description>&lt;p&gt;If your reaction to a piece of mail is confusion, that&#039;s probably a sure sign that something is not right about it.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.webteacher.ws/&quot; title=&quot;http://www.webteacher.ws/&quot;&gt;http://www.webteacher.ws/&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://first50.wordpress.com/&quot; title=&quot;http://first50.wordpress.com/&quot;&gt;http://first50.wordpress.com/&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Mon, 13 Aug 2007 07:22:58 -0500</pubDate>
 <dc:creator>Virginia DeBolt</dc:creator>
 <guid isPermaLink="false">comment 25936 at http://www.blogher.com</guid>
</item>
<item>
 <title>You know, I&#039;ve wondered</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-25931</link>
 <description>&lt;p&gt;if I&#039;ve deleted important emails because I&#039;m terrified to open anything that even might be spoofed emails these days. I guess being careful is the way to go. &lt;/p&gt;
&lt;p&gt;Virginia, thanks so much for the information. I&#039;m going to send it to my sisters tonight. : )&lt;/p&gt;
&lt;p&gt;Birdie&lt;br /&gt;
&lt;a href=&quot;http://www.blogher.com/blog/birdie-jaworski&quot;&gt;Birdie&#039;s BlogHer Blog&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://www.lapajaro.com&quot;&gt;La Pajaro&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Mon, 13 Aug 2007 00:41:56 -0500</pubDate>
 <dc:creator>Birdie Jaworski</dc:creator>
 <guid isPermaLink="false">comment 25931 at http://www.blogher.com</guid>
</item>
<item>
 <title>Thanks Anyway, Virginia!</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-25926</link>
 <description>&lt;p&gt;If you do come upon any useful info about this, it would be great content for a new post :-)&lt;/p&gt;
</description>
 <pubDate>Sun, 12 Aug 2007 23:05:18 -0500</pubDate>
 <dc:creator>Cary</dc:creator>
 <guid isPermaLink="false">comment 25926 at http://www.blogher.com</guid>
</item>
<item>
 <title>I wish I had a good answer</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-25884</link>
 <description>&lt;p&gt;because I&#039;ve received the same sort of thing. I&#039;ve reported it to my domain host, my ISP, and &lt;a href=&quot;http://www.spamcop.net/&quot;&gt;spam cop&lt;/a&gt;, but I never hear back with any sort of information about it. Be sure to include the Internet headers when you report your own address being used in a spoof.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.webteacher.ws/&quot; title=&quot;http://www.webteacher.ws/&quot;&gt;http://www.webteacher.ws/&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://first50.wordpress.com/&quot; title=&quot;http://first50.wordpress.com/&quot;&gt;http://first50.wordpress.com/&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Sat, 11 Aug 2007 21:17:05 -0500</pubDate>
 <dc:creator>Virginia DeBolt</dc:creator>
 <guid isPermaLink="false">comment 25884 at http://www.blogher.com</guid>
</item>
<item>
 <title>A Corolary Question</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-25880</link>
 <description>&lt;p&gt;Is there anything that can be done when it&#039;s your *own* e-mail address that&#039;s been used by the &quot;spoofer&quot;? On several occasions I have had mail I never sent (clearly mass-generated spam messages) &quot;bounce back&quot; to my actual address. It was horrifying to think that someone might believe I had actually sent those messages. On both occasions it seemed to be short-lived -- the spammers must have moved on to using some other unsuspecting person&#039;s address instead. Other than reporting it to my own provider, is there anything else one should do in those circumstances?&lt;/p&gt;
</description>
 <pubDate>Sat, 11 Aug 2007 19:54:35 -0500</pubDate>
 <dc:creator>Cary</dc:creator>
 <guid isPermaLink="false">comment 25880 at http://www.blogher.com</guid>
</item>
<item>
 <title>I actually stopped using Comcast e-mail</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-25879</link>
 <description>&lt;p&gt;Because I got way too many of those. It was frustrating trying to find any valid e-mails amidst the spam and spoofing and such.&lt;/p&gt;
&lt;p&gt;Very useful post. I remember my first spoof. Fortunately, it confused me but I knew not to answer it. It&#039;s good to know ways of dealing with it, too!&lt;/p&gt;
&lt;p&gt;-MM&lt;/p&gt;
</description>
 <pubDate>Sat, 11 Aug 2007 19:53:48 -0500</pubDate>
 <dc:creator>Mrs.Micah</dc:creator>
 <guid isPermaLink="false">comment 25879 at http://www.blogher.com</guid>
</item>
<item>
 <title>That&#039;s how it goes</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-25869</link>
 <description>&lt;p&gt;when great topic ideas just seem to drop on you from the sky, right, Denise?&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.webteacher.ws/&quot; title=&quot;http://www.webteacher.ws/&quot;&gt;http://www.webteacher.ws/&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://first50.wordpress.com/&quot; title=&quot;http://first50.wordpress.com/&quot;&gt;http://first50.wordpress.com/&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Sat, 11 Aug 2007 15:34:49 -0500</pubDate>
 <dc:creator>Virginia DeBolt</dc:creator>
 <guid isPermaLink="false">comment 25869 at http://www.blogher.com</guid>
</item>
<item>
 <title>comcast</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed#comment-25868</link>
 <description>&lt;p&gt;I use Comcast, too. I&#039;ve reported at least a hundred emails I&#039;ve received addressed to gabino to them as spam. I still keep getting them. But I also see dozens of pieces of mail going into my screened mail folder every day without me ever having to touch them, so whatever they are doing does help a lot.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.webteacher.ws/&quot; title=&quot;http://www.webteacher.ws/&quot;&gt;http://www.webteacher.ws/&lt;/a&gt;&lt;br /&gt;
&lt;a href=&quot;http://first50.wordpress.com/&quot; title=&quot;http://first50.wordpress.com/&quot;&gt;http://first50.wordpress.com/&lt;/a&gt;&lt;/p&gt;
</description>
 <pubDate>Sat, 11 Aug 2007 15:33:00 -0500</pubDate>
 <dc:creator>Virginia DeBolt</dc:creator>
 <guid isPermaLink="false">comment 25868 at http://www.blogher.com</guid>
</item>
<item>
 <title>What to do if you get spoofed</title>
 <link>http://www.blogher.com/what-do-if-you-get-spoofed</link>
 <description>&lt;p&gt;Spoofed or forged email is a common problem these days. Here&#039;s how it works. The spoofer changes the settings in his or her email program to a fake name and &quot;return to&quot; address. When mail from the spoofer lands in your inbox, you see the fake name and email address. It may look legitimate, for example, it might be something like &lt;a href=&quot;mailto:imablogger@blogher.org&quot;&gt;imablogger@blogher.org&lt;/a&gt; or &lt;a href=&quot;mailto:imacrook@paypal.com&quot;&gt;imacrook@paypal.com&lt;/a&gt;. It might seem to be from your bank or some company where you have an account.&lt;/p&gt;
&lt;p&gt;If it looks at all strange, delete it without opening it. This is because some spoofed emails contain worms that send more spamming emails to everyone in your address book once you open them.&lt;/p&gt;
&lt;p&gt;If you do open the mail, you may be asked to click a link to a bogus website and supply some sort of sensitive information such as a PIN number, account number, social security number, or password. Don&#039;t do it! If it&#039;s a request for you to send money somewhere in order to receive big bucks in return, don&#039;t do it. Hit delete.&lt;/p&gt;
&lt;p&gt;As for BlogHer, there are very few people who could send you email from blogher.org, and I think you know who they are. Even if it&#039;s a name you know, if the request sounds fishy, it IS fishy. No one at BlogHer is going to ask you to reveal anything like an account number, threaten you with suspension if you don&#039;t supply some sensitive bit of information, or do anything even slightly off kilter.&lt;/p&gt;
&lt;p&gt;You can report these spoofing violations to the real organization that is being spoofed in hopes that they can figure out who the culprit is. If you do that, you need to include the Internet headers. The headers give every single hop the mail made along the way from the spoofer to you. Sometimes it can be traced back to where it originated. &lt;/p&gt;
&lt;p&gt;Different email applications have different ways of revealing the headers to you. Some have it in the View menu as View &amp;gt; Headers. Some have an option like View Source that will show them. You&#039;ll know you found it if you see a bunch of odd looking text like that in this image. &lt;/p&gt;
&lt;p&gt;&lt;img src=&quot;http://vdebolt.com/blogher/emailheader.jpg&quot; alt=&quot;an example of an email header&quot; /&gt;&lt;/p&gt;
&lt;p&gt;That&#039;s from a real email, so I greyed out a few bits of it, but you get the idea.&lt;/p&gt;
&lt;p&gt;In addition to letting the real organization know what&#039;s going on and providing them with the Internet headers, there are some pretty technical preventative measures. These measures should be taken by a mail system administrator, not by you individually. You can see some preventative steps at  &lt;a href=&quot;http://www.cert.org/tech_tips/email_spoofing.html&quot;&gt;The CERT Coordination Center&lt;/a&gt; at Carnegie Mellon University. A &lt;a href=&quot;http://www.windowsecurity.com/articles/Email-Spoofing.html&quot;&gt;Windows Security&lt;/a&gt; article on email spoofing supplies similar technological solution ideas. If you&#039;re getting a lot of fake email, you might check with the account administrators to see if these technical measures are in place for your system.&lt;/p&gt;
&lt;p&gt;A habit of mine is to look over my inbox each time mail arrives and delete everything that doesn&#039;t look right before I start reading anything. Then I don&#039;t accidentally open something because it was the next piece of mail in my inbox once I start reading mail. &lt;/p&gt;
&lt;p&gt;Yahoo!, Gmail, Comcast, Roadrunner and all the other mail service providers out there are doing their utmost to catch spam and keep it out of your inbox. But sometimes things get through. You are the last line of defense. Be ready.&lt;/p&gt;
</description>
 <comments>http://www.blogher.com/what-do-if-you-get-spoofed#comments</comments>
 <category domain="http://www.blogher.com/blogher-topics/business-career">Business &amp;amp; Career</category>
 <category domain="http://www.blogher.com/blogher-topics/blogging-social-media-0">Blogging &amp;amp; Social Media</category>
 <category domain="http://www.blogher.com/topic/life">Life</category>
 <category domain="http://www.blogher.com/topic/technology-web">Technology &amp;amp; Web</category>
 <category domain="http://www.blogher.com/free-tagging/email-spoofing">email spoofing</category>
 <category domain="http://www.blogher.com/free-tagging/fake-email">fake email</category>
 <category domain="http://www.blogher.com/free-tagging/spam">spam</category>
 <category domain="http://www.blogher.com/free-tagging/spoofing">spoofing</category>
 <pubDate>Sat, 11 Aug 2007 08:41:11 -0500</pubDate>
 <dc:creator>Virginia DeBolt</dc:creator>
 <guid isPermaLink="false">24102 at http://www.blogher.com</guid>
</item>
</channel>
</rss>
