<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>True Insight &#187; phishing</title>
	<atom:link href="http://www.truedigitalsecurity.com/blog/tag/phishing/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.truedigitalsecurity.com/blog</link>
	<description>Information Security in Today&#039;s Digital Culture</description>
	<lastBuildDate>Mon, 06 Feb 2012 19:22:26 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Phishing on Facebook</title>
		<link>http://www.truedigitalsecurity.com/blog/2009/05/25/phishing-on-facebook/</link>
		<comments>http://www.truedigitalsecurity.com/blog/2009/05/25/phishing-on-facebook/#comments</comments>
		<pubDate>Mon, 25 May 2009 17:32:41 +0000</pubDate>
		<dc:creator>Brett Edgar</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Social networks]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[social networking]]></category>

		<guid isPermaLink="false">http://www.truedigitalsecurity.com/blog/?p=222</guid>
		<description><![CDATA[As noted on several discussion sites around the Internet, there seems to be a new phishing attack against Facebook users.  The login page is being spoofed by several .BE and .AT domains in an attempt to steal user&#8217;s credentials.  Be careful signing in to Facebook for a few days&#8230;make sure everything looks correct and your &#8230; <a href="http://www.truedigitalsecurity.com/blog/2009/05/25/phishing-on-facebook/">Read more <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<div id="tweetbutton222" class="tw_button" style=""><a href="http://twitter.com/share?url=http%3A%2F%2Fgoo.gl%2FGHpCv&amp;via=lairofthewalrus&amp;text=Phishing%20on%20Facebook&amp;related=&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fwww.truedigitalsecurity.com%2Fblog%2F2009%2F05%2F25%2Fphishing-on-facebook%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://www.truedigitalsecurity.com/blog/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;"></a></div><p>As noted on several discussion sites around the Internet, there seems to be a new phishing attack against Facebook users.  The login page is being spoofed by several .BE and .AT domains in an attempt to steal user&#8217;s credentials.  Be careful signing in to Facebook for a few days&#8230;make sure everything looks correct and your browser is showing you the real Facebook login page.</p>
<div class="wp-about-author-containter-none" style="background-color:#edf0f7;"><div class="wp-about-author-pic"><img alt='Brett Edgar' src='http://www.truedigitalsecurity.com/blog/wp-content/uploads/2012/01/Kayna-Kelley_avatar.jpg' class='avatar avatar-100 photo' height='100' width='100' /></div><div class="wp-about-author-text"><h3><a href='http://www.truedigitalsecurity.com/blog/author/bredgar/' title='Brett Edgar'>Brett Edgar</a></h3><p>Brett is a Founder and the Director of Managed Security Services at TRUE.  He has been working in the system and network forensics field since graduating from the University of Tulsa with a B.S. Computer Science in 2003.  He speaks hexadecimal fluently and is TRUE's resident human Ethernet transceiver.  He holds CISSP, CSSLP, and CNSS 4011-4015 certificates, loves MLB and NCAA Football, and when he gets tired of hexadecimal, he goes home to hang out with his wife and kid.</p><p><a href='lairofthewalrus' title='Brett Edgaron Twitter'>Twitter</a> - <a href='http://www.truedigitalsecurity.com/blog/author/bredgar/' title='More posts by Brett Edgar'>More Posts</a> </p></div></div>]]></content:encoded>
			<wfw:commentRss>http://www.truedigitalsecurity.com/blog/2009/05/25/phishing-on-facebook/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Acquiring target&#8230; NOW!</title>
		<link>http://www.truedigitalsecurity.com/blog/2009/05/01/acquiring-target-now/</link>
		<comments>http://www.truedigitalsecurity.com/blog/2009/05/01/acquiring-target-now/#comments</comments>
		<pubDate>Fri, 01 May 2009 14:09:12 +0000</pubDate>
		<dc:creator>Dominic Schulte</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[PCI]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[social engineering]]></category>

		<guid isPermaLink="false">http://www.truedigitalsecurity.com/blog/?p=162</guid>
		<description><![CDATA[Walt Conway has some interesting commentary [treasuryinstitute.org] on the recently released Verizon data breach report [verizonbusiness.com]. All the valuable PCI compliance insight aside, I found the statistics on the prevalence and value of targeted attacks to be especially interesting.  We are frequently engaged to perform social engineering exercises for our clients, primarily to help them &#8230; <a href="http://www.truedigitalsecurity.com/blog/2009/05/01/acquiring-target-now/">Read more <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<div id="tweetbutton162" class="tw_button" style=""><a href="http://twitter.com/share?url=http%3A%2F%2Fgoo.gl%2FIsv8t&amp;text=Acquiring%20target%26%238230%3B%20NOW%21&amp;related=&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fwww.truedigitalsecurity.com%2Fblog%2F2009%2F05%2F01%2Facquiring-target-now%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://www.truedigitalsecurity.com/blog/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;"></a></div><p>Walt Conway has some interesting <a title="PCI DSS News" href="http://treasuryinstitute.org/blog/index.php?itemid=252" target="_blank">commentary</a> [treasuryinstitute.org] on the recently released Verizon data breach <a title="Verizon Business Report" href="http://www.verizonbusiness.com/resources/security/reports/2009_databreach_rp.pdf" target="_blank">report</a> [verizonbusiness.com].</p>
<p>All the valuable PCI compliance insight aside, I found the statistics on the prevalence and value of targeted attacks to be especially interesting.  We are frequently engaged to perform social engineering exercises for our clients, primarily to help them stress the importance of security policies, procedures, and communication to their employees.</p>
<p>While our generic email campaigns typically fool a few of the overly curious or too-quick-to-click crowd, the more informed (targeted) phishing campaigns are overwhelming effective to the point that we often need to reassure our clients that the world is not ending.  Unfortunately, this report highlights the fact that targeted attacks are not just elements of security company sales talk.</p>
<div class="wp-about-author-containter-none" style="background-color:#edf0f7;"><div class="wp-about-author-pic"><img alt='Dominic Schulte' src='http://www.truedigitalsecurity.com/blog/wp-content/uploads/2011/08/dom-bw-1-100x100.jpg' class='avatar avatar-100 photo' height='100' width='100' /></div><div class="wp-about-author-text"><h3><a href='http://www.truedigitalsecurity.com/blog/author/deschulte/' title='Dominic Schulte'>Dominic Schulte</a></h3><p>Dominic Schulte currently serves as the Managing Director of Security Services &amp; Consulting at TRUE, where he is responsible for the execution of a wide range of security and regulatory compliance services. Previously, Dominic worked with the National Security Agency (NSA) as a Global Network Exploitation and Vulnerability Analyst in the National Security Incident and Response Center (NSIRC). He holds CISSP, QSA and CNSS 4011-4015 certifications.</p></div></div>]]></content:encoded>
			<wfw:commentRss>http://www.truedigitalsecurity.com/blog/2009/05/01/acquiring-target-now/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

