May28
4:30 am (UTC-7)   |   by Ailene Dela Rosa (Technical Communications)

As many as 13,000 Twitter users have been affected by a new “worm-like” phishing attack that feeds on some members’ desire to gain more followers. The said scam dupes users into forking over their account names and passwords using a Web site called “Twittercut.”

Twitter users may see the following tweet in their stream:

Post from affected user

When they click on the link, they are redirected to a fraudulent Twitter Web site that asks them for their account name and password. Once the needed login details are entered, the site sends similar messages to all of the affected users’ followers, along with links to a paid dating service.

The messages are said to have started from an account called @twittercut, which had been disabled. But then the tweets continued to come, this time from a new account called @tweetcut. The latter is now also inoperative.

The site operators at TwitterCut denied phishing allegations and announced that they were shutting the site down.

“According to several social network blog sites, TwitterCut has been the bud of several rumors,” they said on a message on their site. “Our website and its programmers can assure you that these rumors are not true and that TwitterCut is simply a Twitter train that was a work in progress!”

Twitter acknowledged the problem with a post on its status page Tuesday night. “We are currently pushing a password reset on accounts we believe may have been caught in a phishing scam,” said the company. “Please exercise your best judgement when thinking about releasing your username and password to third parties.”

If you're new here, you may want to subscribe to our RSS feed. Thanks for visiting!




14 Responses to “Phishing For Twitter Popularity”

  1. BиpyC Says:

    Отличный сайт! Если необходимо убить парочку часов – вам сюда :)

Trackbacks

  1. Twitter Apple Info» Phishing For Twitter Popularity | Malware Blog | Trend Micro | Twitter Apple Info
  2. FtWorthWay (Robert Rouse)
  3. cybasurfa (cybasurfa)
  4. apsconnections (APS)
  5. penguim (penguim)
  6. JenOwen (fred)
  7. stevewerby (Steve Werby)
  8. BurgessCT (Christopher Burgess)
  9. Twitter was attacked again! | The Internet Database
  10. Twitter Users Victims of Two-Phase Attack: Screencast | Tek Tips Blogs
  11. ‘Best Video’ scam on Twitter dropped malware « Friendly Computers Virus Alerts
  12. After twittercut get off the twittertrain! » Counter Measures
  13. 'Best Video' scam on Twitter dropped malware | Scam Slammer

Leave a Reply



© Copyright 2009 Trend Micro Inc. All rights reserved. Legal Notice