Social Engineering trick, but very very crafty, they are trying anything these days...
Z Edward E. Ziots CISSP, Network +, Security + Network Engineer Lifespan Organization Email:[email protected] Cell:401-639-3505 From: Kennedy, Jim [mailto:[email protected]] Sent: Tuesday, October 12, 2010 9:23 AM To: NT System Admin Issues Subject: OTish Phone to email phish. Never heard of this one before, very interesting. Working a little late the phone rings with someone looking for one of my co-workers. It is 'Chase' that wants to confirm his shipping address, they have a fed ex package for him. They give me the correct address and say they want to email him the tracking information. They give the wrong email address. None of it felt right so I just said sure, email it there. Sure enough 10 minutes later we get a hit on that email address from a Gmail account. Called the co-worker and he has never done business with Chase and was not expecting any packages. I messed up. I should have created the email address real quick to see what the payload was. ~ Finally, powerful endpoint security that ISN'T a resource hog! ~ ~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/> ~ --- To manage subscriptions click here: http://lyris.sunbelt-software.com/read/my_forums/ or send an email to [email protected] with the body: unsubscribe ntsysadmin ~ Finally, powerful endpoint security that ISN'T a resource hog! ~ ~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/> ~ --- To manage subscriptions click here: http://lyris.sunbelt-software.com/read/my_forums/ or send an email to [email protected] with the body: unsubscribe ntsysadmin
