Thursday, July 17, 2008

Watch For Trojan Deliveries by UPS

This is a textbook example of social engineering using a phishing site. It starts as ane e-mail from UPS about a package delivery and has an attachment with a supposed "invoice."

The invoice, of course, is a Word document with a password-stealing Trojan.

Details are in this SC Magazine article, which says the Trojan runs undetected in the background by replacing an operating system file.


Post a Comment

<< Home