Phisshed

Jul 20, 2009 03:03

 Never respond to things while half asleep. I think I just fell for a phishing scheme and gave out my AIM password. If you are contacted my "me" on AIM, ask me something that only I would know and don't accept any kind of invitation to anything. I am currently locked out of my account. I hope to get this squared away in a day or so.

Update: I should have mentioned more about this. The specific attack came in the form of an AIM BuddyStats challenge: From the link:

"One of your buddies sends you a bit.ly link. For example, http:// bit.ly/ jyDTm (spaces added). Don’t go there unless you know what you’re doing. This is the potentially-dangerous page that attempts to steal your AIM password.
When you click the link, you see a page with an embedded Flash applet that appears to compare your rank with your buddy’s."

(read the rest for details) - it tricks you into supplying your password, after which your account is compromised and can be used to send the same scam on to others. Mine came from somebody on my fairly short buddy list, so I suspect her account is compromised as well.

I actually saw somebody try to log on to my AIM account shortly afterward; fortunately, it seems to be fairly difficult for them to try to change my password; unfortunately, they tried and apparently managed to lock my account so that I cannot change it myself (although I can still use AIM for now)
Previous post Next post
Up