Home Phishing Rogue Facebook Phishing Application Discovered

Rogue Facebook Phishing Application Discovered

Posted: August 17, 2009

A rogue Facebook application was recently discovered to be part of a phishing scam.

With all the trouble being caused for social networking websites like Twitter and Facebook, one might start to feel just a little anxious, and not without good reason. The latest problem seems to be one targeting Facebook users.

A rogue Facebook application , as shown in figure 1. below, appears to be sending notifications that lead users to a site that harvests login information. Typically you will receive a message that another user has commented on one of your posts, and this message seems to derive from an application called "sex sex sex and more sex!!!". Even though this application may seem to be suspicious to the majority of Facebook users who may encounter it, more than 287,000 users have become fans of it.

Figure 1.
Facebook Rogue Application

Within the sent messages, there are hyperlinks to a fake Facebook login page, hosted on a domain registered no less than a week ago, requiring you to submit your login credentials. The registered domain appears as follows:

Registered through: GoDaddy.com, Inc. (http://www.godaddy.com)
Domain Name: FUCABOOK.COM
Created on: 15-Aug-09
Expires on: 15-Aug-10
Last Updated on: 15-Aug-09

In order to keep yourself protected, remember to only log into online services by using your own bookmarks or by typing in the URL manually. If any link you receive seems suspicious to you, do not click it. If you happen to be a Facebook user, be sure to go over your privacy settings with a fine-toothed comb, and possibly remove any applications you no longer use.

Loading...