Phishers using new lures


Your e-mail account is a goldmine. Technology companies push hard to keep your data secure, but there are plenty of scumbags out there who always seem to find a new way to gain an edge over the guys in white hats. Phishers, in particular, are eager to find new ways to profit from your identity and information, and they're getting some new tricks.

Phishing scam activity was quiet at the beginning of this year, according to a report in USA Today, but these attacks surged 200% from May through September, says the X-Force team at IBM (NYSE: IBM). Webmail, social media and gaming accounts are their primary targets. E-mail access, in particular, is highly sought after, since they can be use to push out spam ... while bypassing filters.

These "virgin" e-mail accounts command top dollar: a digital criminal can pick up as much as $2 for a clean account from Microsoft (NASDAQ: MSFT) Windows Live, Google (NASDAQ: GOOG) Gmail, Yahoo (NASDAQ: YHOO) YahooMail or AOL (NYSE: TWX). This is more than twice the amount typically paid for a stolen credit card account, according to Fred Rica, principal in the security practice at PricewaterhouseCoopers. Many webmail users actually do half the criminals' job for them, with 33% using just one password online and 48% using only a handful.

In addition to being able to push millions of messages through a clean account and sidestepping spam filters, online snoops can use the data you've stored in your e-mail folders to hunt for other username and password data, for your social networking accounts, for example. Also, the account can be used to reset passwords for these accounts, engineering easier access. So, losing your e-mail password can translate to compromised MySpace, Twitter and Facebook accounts, as well.

Demand for these virgin e-mail accounts is so high that the crooks are developing new techniques for accessing them, even compromising legitimate web pages as a way to infect a PC with software that can pick up keystrokes.

A few high-profile mistakes, of course, could have profound implications for several companies, including: the e-mail provider, social networking platform, credit card company and any stores where credit card data is used. One compromised account can trigger a chain reaction.

Symbol Lookup
IndexesChangePrice
DJIA+6.5112,890.46
NASDAQ+11.372,927.23
S&P 500+1.991,351.95

Last updated: February 10, 2012: 07:44 AM

Hot Stocks

General Electric

19.13-0.11(-0.57)

Alcoa

10.64-0.03(-0.28)

Apple Inc

493.17+16.49(+3.46)

Google Inc 'A'

611.46+1.61(+0.26)

Bank of America

8.18+0.05(+0.62)

Wal-Mart Stores

61.96+0.34(+0.55)

Exxon Mobil Corp

84.88-0.44(-0.52)

Ford

12.69-0.15(-1.17)

Citigroup

33.66-0.57(-1.67)

IBM

193.13+0.18(+0.09)

Yahoo

16.00+0.22(+1.39)

Starbucks

49.20+0.48(+0.99)

Microsoft

30.77+0.11(+0.36)

Home Depot

45.27+0.10(+0.22)

DailyFinance Headlines

Benzinga Headlines

TheFlyOnTheWall.com Headlines

BioHealth Investor Headlines

WalletPop Headlines

DailyFinance BlackBerry App

My Portfolios

Track your stocks here!

Find out why more people track their portfolios on AOL Money & Finance then anywhere else.

BloggingStocks Partners

More from AOL Money & Finance

BioHealth Investor Headlines

Page Loaded in 1328877842527 ms.