iPhone 'winners' become zombies

Summary:Spammers are exploiting the excitement over Apple's smartphone release, by sending malicious emails to fool recipients into thinking they have won their own iPhone

As Apple's new gadget sells out across the US, spammers are exploiting the situation by sending emails that try to dupe recipients into thinking they have won a brand new iPhone of their own.

Web-filtering specialist Secure Computing is warning users not to fall for the socially engineered emails that contain a link which, if clicked on, will attempt to connect to a website and install malicious software designed to take control of the victim's computer.

Paul Henry, vice president of technology evangelism for Secure Computing, believes that although this is the first iPhone-related "phish", it certainly will not be the last. "Because of the popularity of the iPhone brand, this is the first in what's bound to be a series of scams involving the iPhone," Henry said.

The criminals behind this scam are using sophisticated techniques to thwart security firms. For example, the website is loaded with more than 10 different pieces of malicious code, each targeting a potential browser vulnerability. In addition, users that attempt to visit the site more than once are redirected to another, "safe" website.

"This threat is particularly insidious in that scripts within the HTML code returned to the user contain exploit code for multiple vulnerabilities to improve the malicious hacker's chances of gaining the necessary access to install the rootkit /spam bot malware," said Henry.

Topics: Security

About

Munir first became involved with online publishing in 1998 when he joined ZDNet UK and later moved into print publishing as Chief Reporter for IT Week, part of ZDNet UK, a weekly trade newspaper targeted at Enterprise IT managers. He later moved back into online publishing as Senior News Reporter for ZDNet UK.Munir was recognised as Austr... Full Bio

Kick off your day with ZDNet's daily email newsletter. It's the freshest tech news and opinion, served hot. Get it.

Related Stories

The best of ZDNet, delivered

You have been successfully signed up. To sign up for more newsletters or to manage your account, visit the Newsletter Subscription Center.
Subscription failed.