بالعربية
Where am I? Home /


BREAKING NEWS :

Fortinet warns of festive shopping scams

By Mark Sutton on Monday, December 17, 2007

Guillaume Lovet, threat response manager, Fortinet EMEA

Guillaume Lovet, threat response manager, Fortinet EMEA

Security company Fortinet is warning online shoppers to be wary in the festive season. The company reports a new trend in online scams that manipulate search results to send unwary shoppers to bogus sites.

The scam, which has been detected in a number of websites so far, target popular search engines, using Search Engine Optimization (SEO) a process which exploits the way search engines collect data and rank sites in order to make the bogus sites appear as popular results for searches.

In the most recently discovered examples, a network of sites used Christmas shopping related terms to try to misdirect online shoppers to sites that would attempt a ‘drive-by' installation of malware, with a variable payload. The sites only attacked shoppers using Internet Explorer, redirecting other browser users, and could also only be accessed through search referral, rather than accessed directly, to hamper security researchers.

Guillaume Lovet, threat response manager at Fortinet EMEA commented: "Basically what these sites are doing is abusing the Google algorithm, through loading sites with lots of pages, all with keywords relating to Christmas, so when [a user] entered ‘Christmas' into the search engine, these malicious sites would be in one of the first positions.

"It is interesting in the sense that when Christmas approaches, or other occasions, we usually see scam email trying to get people to click on fake sites, that are either selling bogus items or simply stealing credit card numbers," he added. "Usually what we advise is don't respond to unsolicited mail - now that advice is not as valid anymore, so it changes what threats people have to focus on."
Story continues below
advertisement



Fortinet has issued new advise to online shoppers, including:

  • Never follow unsolicited links as suggested by a third party, including links from email, instant messaging or links posted to blogs or wikis
  • Have an effective anti-spam, web-filtering and anti-virus solutions, or a Unified Threat Management system in place
  • ‘Pick before you click' Users should think before clicking on any link, and be aware of links attempting to pass themselves off as well-known sites by using typos or odd sub-domains
  • Never give out personal information such as credit card or passwords at the request of a third party
  • When giving out personal information, know your vendor. Ensure it is a trusted source and over a secure connection (ie: SSL & HTTPS) when submitting data


User Comments

All posts are sent to the administrator for review and are published only after approval. ITP.net reserves the right to remove any comment at any time for any reason. Please keep your responses appropriate and on topic.
Name *
( Remember Me )
Email *
(Your email address will not be published)
City
Country
Subject *
Comment *
 


Please click post only once - your comment will not be published immediately.

Related Comment

Andrew Seymour
Recent events at Fortinet and Trend Micro have turned the spotlight back on senior management changes in the channel. 

Related Feature

Head of the class

Networks

In the second part of a two-part series, NME talks to vendors about the skills training they offer in the Middle East, and... 

Related Feature

Testing time

Networks

Penetration testing is growing in popularity among regional enterprises, but there are several things organisations need to... 


Competitions

WIN Content Master

Ends On Wednesday, 15 July 2009

If you can’t live without your tunes then we’ve just the competition for you. We’ve partnered with the wonderful guys from Philips and the outcome is one of the firm’s awesome GoGear Spark...


Advertising Features


Latest Products
ESET Smart Security 4

Software | Applications | June 2009

Ready to protect.

RATING


Samsung SGH-D980

Hardware | Handhelds | June 2009

Two phones in one.

RATING


BlackBerry Bold

Hardware | Handhelds | June 2009

Built for business users.

RATING


Logitech Illuminated Keyboard

Hardware | Peripherals | June 2009

As smooth as butter.

RATING


Lead Manager – Communications
Location: Doha, Qatar
Customer Care Manager
Location: Abu Dhabi, UAE
Software/Hardware Engineer
Location: Saudi Arabia
Schedule Performance Analyst
Location: Saudi Arabia
Installing & Commissioning Technicians/Engineers
Location: Riyadh, Saudi Arabia
More Technology Jobs >

For editorial enquiries contact
Mark Sutton
mark.sutton
@itp.com
To advertise, contact
Ahmad Bashour
+971 4 210 8549
or ahmad.bashour
@itp.com


Arabian Computer News Channel Middle East Channel Middle East - Arabic Charged CommsMEA Network Middle East Windows Middle East Windows Middle East - Arabic ALL ITP TITLES