Security Management
Published on Security Management (http://www.securitymanagement.com)
Don't Fall Victim to Hurricane Gustav Phishing Scams
By Matthew Harwood
Created 09/03/2008 - 13:12



    
Wrap-Up?: 
No
Weight: 
0
Lead Headline?: 
Yes
Date: 
09/03/2008
By Line: 
By Matthew Harwood
Teaser: 

SANS Internet Storm Center lists the slew of domain names registered around relief efforts for victims of hurricanes Gustav and Hanna, many of which are malicious in nature.

It doesn't take long for cybercriminals to exploit the latest human tragedy, according to SC Magazine [1].

The SANS Institute [2], a computer security training, certification, and research firm, noted a flurry of domain-name registrations related to hurricanes Gustav and Hanna. (You can view the list of those recently registered here [3], here [4], here [5], and here [6].) After hurricanes Katrina and Rita wrought destruction along the Gulf Coast, an onslaught of domains were registered for relief efforts, many of which proved to be malicious.

Marcus H. Sachs, director of SANS Storm Center, cautions donors to be on guard for phishing and spoofing scams. "Many of the domain names being registered are legitimate and are redirecting to sites that support law-abiding charities," he wrote on SANS Diary blog. " Unfortunately though, many more are either parked in a "for sale" status, or are associated with IP addresses known to host malicious software, spyware, or other hazardous content."

To better equip those that want to donate to hurricane relief efforts, the U.S. Computer Emergency Readiness Team provides this checklist [7]to view before giving money online.

Users are encouraged to take the following measures to protect themselves from this type of phishing scam:

  • Do not follow unsolicited Web links received in email messages.
  • Review the Federal Trade Commission's Charity Checklist [8].
  • Verify the legitimacy of the e-mail by contacting the organization directly through a trusted contact number. Trusted contact information can be found on the Better Business Bureau National Charity Report Index [9].

Related Resources: 

"Beware MSNBC.com Breaking News Spam E-Mails [10]," by Matthew Harwood, Daily Headlines, Aug. 15, 2008

"Security Patch Stops Spoofing [11]," by Matthew Harwood, Daily Headlines, July 11, 2008

Comments


Security Management is the award-winning publication of ASIS International, the preeminent international
organization for security professionals, with more than 38,000 members worldwide.

ASIS International, Inc. Worldwide Headquarters, 1625 Prince Street, Alexandria, Virginia 22314-2818 U.S.A.
703.519.6200 | fax 703.519.6299 | www.asisonline.org

ASIS

© 2013 Security Management
This site is protected by copyright and trade mark laws under U.S. and International law.
No part of this work may be reproduced without the written permission of Security Management.

Powered by: Phase2 Technology

Source URL: http://www.securitymanagement.com/news/dont-fall-victim-hurricane-gustav-phishing-scams-004614

Links:
[1] http://www.scmagazineuk.com/Hurricanes-set-to-spawn-new-phishing-scams/article/116225/
[2] http://www.sans.org/
[3] http://isc.sans.org/diary.html?storyid=4954
[4] http://isc.sans.org/diary.html?storyid=4957
[5] http://isc.sans.org/diary.html?storyid=4958
[6] http://isc.sans.org/diary.html?storyid=4961
[7] http://www.us-cert.gov/current/index.html#hurricane_gustav_and_phishing_scams
[8] http://www.ftc.gov/bcp/edu/pubs/consumer/telemarketing/tel01.shtm
[9] http://charityreports.bbb.org/public/All.aspx?bureauID=9999
[10] http://www.securitymanagement.com/news/beware-msnbc-com-breaking-news-spam-e-mails-004502
[11] http://www.securitymanagement.com/news/security-patch-stops-spoofing-004358