Free Republic
Browse · Search
News/Activism
Topics · Post Article

To: holymoly

I don't believe a browser change will help here although I use Firefox. If the e-mail comes in and you click on it, you will be redirected. I got one the other day and observed the address and it definitely not was from ebay which allegedly needed to "update" my credit card information. Be aware, be very aware.


16 posted on 12/17/2004 7:37:01 AM PST by RichardW
[ Post Reply | Private Reply | To 1 | View Replies ]


To: RichardW
I don't believe a browser change will help here although I use Firefox.

One extension that would be helpful here is the Spoofstick extension. It tells you the real URL of the page you are on.

18 posted on 12/17/2004 7:39:29 AM PST by ShadowAce (Linux -- The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 16 | View Replies ]

To: RichardW
I don't believe a browser change will help here although I use Firefox.

From the article:
"The vulnerability is caused by a cross-site scripting vulnerability in the DHTML Edit ActiveX control"

I still run a vesion of Mozilla, but I believe that, like Mozilla, Firefox does not use ActiveX.  (I don't know about Opera.)  "Off By One" uses no plugins, java, etc., and so is the most secure browser available.

This and other articles I've read state this is a MSIE-only flaw.
19 posted on 12/17/2004 7:43:27 AM PST by holymoly (Merry Christmas! http://tinyurl.com/5mxvw)
[ Post Reply | Private Reply | To 16 | View Replies ]

To: RichardW

Phishers are constantly out there.

I get at least three-five ebay or paypal phisher email a week, I believe. I even get some from companies I have no account with. I used to turn them all in. Now I just delete them.

But after awhile, you begin to recognize the scripts, like with the "help the nigerian whatever get money out of the country scam" Someone's with an out of country IP has been using your account. Sometimes you get a message like a very large purchase was made with your account, and you get an oportunity to cancel if you go to this link. Saw a new one last week for paypal...email informing you that a new email address had been added to your account. If you want to verify it, just click here (and they were using an exploit that made it look like the URL was legit). Being an old hand at this, I went directly on another page to PP, and lo and behold, nothing of the kind had happened.

Phishers are evil and should be burned at the stake.


36 posted on 12/17/2004 8:39:44 AM PST by Knitting A Conundrum (Act Justly, Love Mercy, and Walk Humbly With God Micah 6:8)
[ Post Reply | Private Reply | To 16 | View Replies ]

Free Republic
Browse · Search
News/Activism
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson