Trend Micro Facebook TrendLabs Twitter Malware Blog RSS Feed You Tube - Trend Micro
Search our blog:

  • Mobile Vulnerabilities

  • Zero-Day Alerts

  • Recent Posts

  • Calendar

    August 2015
    S M T W T F S
    « Jul    
  • Email Subscription

  • About Us

    Job seekers are likely to be familiar with, a popular job search and online recruitment web site that is the second largest job search engine in the US, with roughly 42 million job seekers per month posting their resumes on the website-that is about 42 million people willingly providing their contact details and additional personal information to be reviewed by potential employers.
    Of course there is nothing wrong with this picture but then again a Trojan-assisted security breach happens and then you have big problems on your hands.

    Recently, a new information-stealing Trojan has turned up, this time targeting subscribers. This new Trojan apparently logs in to using a compromised account that is meant for employers who want to review resumes. Once it has gained access, the Trojan harvests the information contained within resume database, siphoning off names, home and mobile phone numbers, home addresses and email addresses into a remote server.
    The remote server contains a file counter.txt which lists the number of compromised resume entries.

    As of now 1,599,675 entries have been compromised. It is possible that the Trojan was created to harvest email addresses for the use of spammers.

    Trend detects this Trojan as TSPY_MAMAW.A. For security purposes, we advise users who subscribe to such online recruitment website to provide minimal contact information. When providing an email address, use one that is separate from the personal email address that you often use to avoid being spammed.

    Share this article
    Get the latest on malware protection from TrendLabs
    Email this story to a friend   Technorati   NewsVine   MySpace   Google   Live   StumbleUpon

    Comments are closed.


    © Copyright 2013 Trend Micro Inc. All rights reserved. Legal Notice