<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The iPhone Blog &#187; scam</title>
	<atom:link href="http://www.theiphoneblog.com/tag/scam/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.theiphoneblog.com</link>
	<description>For people who dare to Phone Different.</description>
	<lastBuildDate>Sun, 22 Nov 2009 21:58:41 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>MobileMe Hackery: Salma Hayek Edition</title>
		<link>http://www.theiphoneblog.com/2009/04/28/mobileme-hackery-salma-hayek-edition/</link>
		<comments>http://www.theiphoneblog.com/2009/04/28/mobileme-hackery-salma-hayek-edition/#comments</comments>
		<pubDate>Tue, 28 Apr 2009 10:50:17 +0000</pubDate>
		<dc:creator>Jeremy Sikora</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[Hacked]]></category>
		<category><![CDATA[mobileme]]></category>
		<category><![CDATA[Salma Hayek]]></category>
		<category><![CDATA[scam]]></category>

		<guid isPermaLink="false">http://www.theiphoneblog.com/?p=8252</guid>
		<description><![CDATA[

Lately all has been quiet in regards to Apple&#8217;s MobileMe service and shady activities. In the past we&#8217;ve told you about a few separate cases of phishing scams going around. Well today we&#8217;ve heard that Oscar nominated actress, Salma Hayek&#8217;s account has been hacked. 

Honestly, this is something that is really not that difficult to [...]<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br/><br/><a href="http://www.theiphoneblog.com/2009/04/28/mobileme-hackery-salma-hayek-edition/">MobileMe Hackery: Salma Hayek Edition</a></p>
]]></description>
			<content:encoded><![CDATA[<p><a href='http://www.theiphoneblog.com/images/stories/2009/04/salma.jpg'><img src="http://www.theiphoneblog.com/images/stories/2009/04/salma-265x400.jpg" alt="" title="salma" width="265" height="400" class="aligncenter size-medium wp-image-8254" /></a></p>

<p>Lately all has been quiet in regards to Apple&#8217;s MobileMe service and shady activities. In the past we&#8217;ve told you about a few separate cases of <a href="http://www.theiphoneblog.com/?s=mobileme+scam">phishing scams</a> going around. Well today we&#8217;ve heard that Oscar nominated actress, Salma Hayek&#8217;s account has been hacked. </p>

<p>Honestly, this is something that is really not that difficult to do, especially depending on how much information you have about a person. Sarah Palin&#8217;s Yahoo! account was famously hacked last year using information from Wikipedia, as have several other celebrities. </p>

<p>In this particular case, all that was needed was Salma&#8217;s birthday and the answer to her security question which just happened to be &#8220;What is my favorite character?&#8221;. Just in case you were wondering what the answer was, it was &#8220;Frida&#8221; which was Hayek&#8217;s most popular role in a movie. (And yes, I&#8217;m sure it is now something a bit tougher to figure out so don&#8217;t bother trying.) In the end, that is all of the information that was needed to gain access to all of her emails, calendar information, etc&#8230;</p>

<p>Moral of this story, choose your security questions and answers wisely&#8230; And if you&#8217;re well known, make up a fake set of answers, memorize them thoroughly, and don&#8217;t tell anyone else. </p>

<p>[<em>Via <a href="http://www.macworld.com/article/140229/2009/04/selma_hayeks_mobileme_account_hacked.html?lsrc=rss_main">Macworld</a></em>]</p>
<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br /><br /><a href="http://www.theiphoneblog.com/2009/04/28/mobileme-hackery-salma-hayek-edition/">MobileMe Hackery: Salma Hayek Edition</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.theiphoneblog.com/2009/04/28/mobileme-hackery-salma-hayek-edition/feed/</wfw:commentRss>
		<slash:comments>12</slash:comments>
		</item>
		<item>
		<title>Psst! Hey, You! iPhone Developer! Wanna Scam Some Apple Bucks?</title>
		<link>http://www.theiphoneblog.com/2009/04/08/psst-hey-iphone-developer-wanna-scam-apple-bucks/</link>
		<comments>http://www.theiphoneblog.com/2009/04/08/psst-hey-iphone-developer-wanna-scam-apple-bucks/#comments</comments>
		<pubDate>Wed, 08 Apr 2009 19:26:11 +0000</pubDate>
		<dc:creator>Rene Ritchie</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Fraud]]></category>
		<category><![CDATA[gift certificate]]></category>
		<category><![CDATA[iTunes]]></category>
		<category><![CDATA[scam]]></category>

		<guid isPermaLink="false">http://www.theiphoneblog.com/?p=7962</guid>
		<description><![CDATA[

While in the old days, this would no doubt have come from Creep McShady in a trench coat around the corner of some noir-esque alley, now its online fraudsters who&#8217;ve gamed Apple&#8217;s iTunes gift certificate generation algorithms, unable to sell directly due to fear of Apple tracing the accounts, who&#8217;ve found a new target for [...]<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br/><br/><a href="http://www.theiphoneblog.com/2009/04/08/psst-hey-iphone-developer-wanna-scam-apple-bucks/">Psst! Hey, You! iPhone Developer! Wanna Scam Some Apple Bucks?</a></p>
]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.theiphoneblog.com/images/stories/2009/03/iphone_pirate_itunes.jpg" alt="" title="iphone_pirate_itunes" width="316" height="335" class="aligncenter size-full wp-image-7440" /></p>

<p>While in the old days, this would no doubt have come from Creep McShady in a trench coat around the corner of some noir-esque alley, now its online fraudsters who&#8217;ve <a href="http://www.theiphoneblog.com/2009/03/10/200-itunes-gift-cards-sale-260/">gamed Apple&#8217;s iTunes gift certificate generation algorithms</a>, unable to sell directly due to fear of Apple tracing the accounts, who&#8217;ve found a new target for their schemes. Says <a href="http://www.appleinsider.com/articles/09/04/07/scammers_offer_to_help_iphone_developers_defraud_apple.html">Apple Insider</a>:</p>

<blockquote>
  <p>Third party iPhone App Store developers have received propositions from a scammer offering to buy large volumes of their iPhone applications and then split the resulting revenue with them, apparently using fraudulent iTunes gift certificates to make the purchases.</p>
</blockquote>

<p>Of course, the developers faces every bit as much chance for retaliation from Apple, perhaps more so because this could end their careers as iPhone developers.</p>

<p>Yeah. Not a good idea.</p>
<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br /><br /><a href="http://www.theiphoneblog.com/2009/04/08/psst-hey-iphone-developer-wanna-scam-apple-bucks/">Psst! Hey, You! iPhone Developer! Wanna Scam Some Apple Bucks?</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.theiphoneblog.com/2009/04/08/psst-hey-iphone-developer-wanna-scam-apple-bucks/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
		</item>
		<item>
		<title>MobileMe Scam Alert: Round 3</title>
		<link>http://www.theiphoneblog.com/2009/02/11/mobileme-scam-alert-3/</link>
		<comments>http://www.theiphoneblog.com/2009/02/11/mobileme-scam-alert-3/#comments</comments>
		<pubDate>Wed, 11 Feb 2009 18:07:19 +0000</pubDate>
		<dc:creator>Jeremy Sikora</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[fake]]></category>
		<category><![CDATA[Fraud]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[iPhone 3G]]></category>
		<category><![CDATA[mobileme]]></category>
		<category><![CDATA[scam]]></category>

		<guid isPermaLink="false">http://www.theiphoneblog.com/?p=7090</guid>
		<description><![CDATA[

September was the last time we saw some malicious attacks on MobileMe subscribers.  Well the scammers are at it again, trying to take advantage of Apple&#8217;s MobileMe subscribers.  A Gizmodo reader claims to have gotten the email shown above.

If you then click the fake &#8220;Login&#8221; button you will be directed to a website [...]<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br/><br/><a href="http://www.theiphoneblog.com/2009/02/11/mobileme-scam-alert-3/">MobileMe Scam Alert: Round 3</a></p>
]]></description>
			<content:encoded><![CDATA[<p><a href='http://www.theiphoneblog.com/images/stories/2009/02/picture_7_01.png'><img src="http://www.theiphoneblog.com/images/stories/2009/02/picture_7_01-400x230.png" alt="" title="mobilemescamemail" width="400" height="230" class="aligncenter size-medium wp-image-7091" /></a></p>

<p>September was the last time we saw some <a href="http://www.theiphoneblog.com/2008/09/08/mobileme-phishing-scam-round-2/">malicious attacks on MobileMe subscribers</a>.  Well the scammers are at it again, trying to take advantage of Apple&#8217;s MobileMe subscribers.  A Gizmodo reader claims to have gotten the email shown above.</p>

<p>If you then click the fake &#8220;Login&#8221; button you will be directed to a website the scammers have set up &#8212; to look like Apple&#8217;s web site &#8212; asking for your credit card information.  It is safe to say, delete this email if you happen to find it in your inbox.</p>

<p>[<em>Via <a href="http://i.gizmodo.com/5151248/fraudsters-now-targeting-mobileme-subscribers">Gizmodo</a></em>]</p>
<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br /><br /><a href="http://www.theiphoneblog.com/2009/02/11/mobileme-scam-alert-3/">MobileMe Scam Alert: Round 3</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.theiphoneblog.com/2009/02/11/mobileme-scam-alert-3/feed/</wfw:commentRss>
		<slash:comments>10</slash:comments>
		</item>
		<item>
		<title>MobileMe Phishing Scam Round 3</title>
		<link>http://www.theiphoneblog.com/2008/09/23/mobileme-phishing-scam-round-3/</link>
		<comments>http://www.theiphoneblog.com/2008/09/23/mobileme-phishing-scam-round-3/#comments</comments>
		<pubDate>Wed, 24 Sep 2008 02:11:16 +0000</pubDate>
		<dc:creator>Jeremy Sikora</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[mobileme]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[Phishing Scam]]></category>
		<category><![CDATA[scam]]></category>

		<guid isPermaLink="false">http://www.theiphoneblog.com/?p=4568</guid>
		<description><![CDATA[

Well it seems like these scam artists will just not go away! Here at TiPb we like to keep you, our loyal readers, safe by alerting you of every scam out there.  A while back we reported two other phishing scams aimed at MobileMe customers, and told you Apple was even posting warnings about [...]<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br/><br/><a href="http://www.theiphoneblog.com/2008/09/23/mobileme-phishing-scam-round-3/">MobileMe Phishing Scam Round 3</a></p>
]]></description>
			<content:encoded><![CDATA[<p><a href='http://www.theiphoneblog.com/images/stories/2008/09/apple_phishing_t.jpg'><img src="http://www.theiphoneblog.com/images/stories/2008/09/apple_phishing_t.jpg" alt="" title="apple_phishing_t" width="400" height="291" class="aligncenter size-medium wp-image-4570" /></a></p>

<p>Well it seems like these scam artists will just not go away! Here at TiPb we like to keep you, our loyal readers, safe by alerting you of every scam out there.  A while back we reported <a href="http://www.theiphoneblog.com/2008/08/15/mobileme-phishing-attack-nets-hundreds-of-victims/">two</a> <a href="http://www.theiphoneblog.com/2008/09/08/mobileme-phishing-scam-round-2/">other</a> phishing scams aimed at MobileMe customers, and told you Apple was even <a href="http://www.theiphoneblog.com/2008/08/29/apples-mobileme-blog-addresses-phishing-scams/">posting warnings</a> about them.</p>

<p>Just like those phishing scams, these latest scammers are looking to obtain your credit card information.  According to <a href="http://www.ugnn.com/2008/09/apple_phishing_alert.html">UGN Infomanager</a>:</p>

<blockquote>Yesterday, and over night a wave of phishing attacks hit the servers targeting Apple Mobile Me users, and others who might not know the specifics of the phish. There were several, all from different &#8220;senders&#8221; but leading to the same address. READ THIS ALERT.<br /><br />

<strong>DO NOT CLICK ON ANY LINK IN THIS PHISHING ATTEMPT</strong>. 
Not only could it extract information from your computer, the site, or clickthrough pages could contain malware or spyware intended specifically for Mac users. If you can avoid opening it, you will avoid pinging the botnet of a live address.</blockquote>

<p>In addition to all of that, <a href="http://www.macnn.com/articles/08/09/23/mobileme.phishing.scam/">MacNN</a> is reporting that &#8220;the originating server DNS addresses have been masked by Joker.com, a site suspected of sympathizing with online criminals&#8221;.  Really nice isn&#8217;t it?  Be careful out there people!</p>

<p>(<em>Via <a href="http://www.macnn.com/articles/08/09/23/mobileme.phishing.scam/">MacNN</a></em>)</p>
<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br /><br /><a href="http://www.theiphoneblog.com/2008/09/23/mobileme-phishing-scam-round-3/">MobileMe Phishing Scam Round 3</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.theiphoneblog.com/2008/09/23/mobileme-phishing-scam-round-3/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>MobileMe Phishing Scam Round 2</title>
		<link>http://www.theiphoneblog.com/2008/09/08/mobileme-phishing-scam-round-2/</link>
		<comments>http://www.theiphoneblog.com/2008/09/08/mobileme-phishing-scam-round-2/#comments</comments>
		<pubDate>Mon, 08 Sep 2008 22:55:26 +0000</pubDate>
		<dc:creator>Jeremy Sikora</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[mobileme]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[scam]]></category>

		<guid isPermaLink="false">http://www.theiphoneblog.com/?p=4159</guid>
		<description><![CDATA[

Not long ago we brought to your attention a phishing scam that was going around to some MobileMe customers, we then reported that Apple addressed the scam in their MobileMe blog.   Well Apple Insider is now reporting that round 2 is just begining.

In this latest scam, an email is going around that says [...]<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br/><br/><a href="http://www.theiphoneblog.com/2008/09/08/mobileme-phishing-scam-round-2/">MobileMe Phishing Scam Round 2</a></p>
]]></description>
			<content:encoded><![CDATA[<p><a href='http://www.theiphoneblog.com/images/stories/2008/09/mobileme_scam.jpg'><img src="http://www.theiphoneblog.com/images/stories/2008/09/mobileme_scam.jpg" alt="" title="mobileme_scam" width="366" height="301" class="aligncenter size-medium wp-image-4162" /></a></p>

<p>Not long ago we brought to your attention a <a href="http://www.theiphoneblog.com/2008/08/15/mobileme-phishing-attack-nets-hundreds-of-victims/">phishing scam</a> that was going around to some MobileMe customers, we then reported that <a href="http://www.theiphoneblog.com/2008/08/29/apples-mobileme-blog-addresses-phishing-scams/">Apple addressed the scam in their MobileMe blog</a>.   Well Apple Insider is now reporting that round 2 is just begining.</p>

<p>In this latest scam, an email is going around that says there are some issues with the users subscription renewal information.  It then goes on to direct them to a link to update their credit card information.  You can see the exact email that MobileMe customers are receiving below.  Notice there is not a single MobileMe logo?</p>

<p><a href='http://www.theiphoneblog.com/images/stories/2008/09/mmfraud-1.png'><img src="http://www.theiphoneblog.com/images/stories/2008/09/mmfraud-1.png" alt="" title="mmfraud-1" width="164" height="200" class="aligncenter size-thumbnail wp-image-4161" /></a></p>

<p>Here are some great tips from Rene:
<blockquote>REMEMBER: Don’t EVER believe email requests for secure data. Go to the site yourself (not through their link — type it in) and log in and see if there really is a problem. Check domain names carefully. App1e.com isn’t the same as Apple.com, they’re just hoping you don’t notice. Worried about the recent DNS poisoning attacks? Use HTTPS/SSL or use a direct IP address. If in any doubt, pick up a phone and call Apple (or your credit card company) directly.</blockquote></p>

<p>Head on over to <a href="http://www.appleinsider.com/articles/08/09/07/mobileme_users_hit_by_phishing_scam.html">Apple Insider</a> for the full story with detailed pictures.</p>
<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br /><br /><a href="http://www.theiphoneblog.com/2008/09/08/mobileme-phishing-scam-round-2/">MobileMe Phishing Scam Round 2</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.theiphoneblog.com/2008/09/08/mobileme-phishing-scam-round-2/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Apple&#8217;s MobileMe Blog Addresses Phishing Scams</title>
		<link>http://www.theiphoneblog.com/2008/08/29/apples-mobileme-blog-addresses-phishing-scams/</link>
		<comments>http://www.theiphoneblog.com/2008/08/29/apples-mobileme-blog-addresses-phishing-scams/#comments</comments>
		<pubDate>Sat, 30 Aug 2008 02:29:27 +0000</pubDate>
		<dc:creator>Rene Ritchie</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[mobileme]]></category>
		<category><![CDATA[mobileme update blog]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[scam]]></category>

		<guid isPermaLink="false">http://www.theiphoneblog.com/?p=4052</guid>
		<description><![CDATA[

Remember that phishing scam that targeted MobileMe users a while back? The one that may have nabbed hundreds of account holders&#8217; information? Well Apple must, because the latest in their series of MobileMe Updates addresses the issue head on:

You will never receive a message from MobileMe asking you to send personal information over email. If [...]<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br/><br/><a href="http://www.theiphoneblog.com/2008/08/29/apples-mobileme-blog-addresses-phishing-scams/">Apple&#8217;s MobileMe Blog Addresses Phishing Scams</a></p>
]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.theiphoneblog.com/images/stories/2008/08/mobileme_phishing.jpg" alt="" title="mobileme_phishing" width="366" height="400" class="aligncenter size-medium wp-image-3823" /></p>

<p>Remember that <a href="http://www.theiphoneblog.com/2008/08/15/mobileme-phishing-attack-nets-hundreds-of-victims/">phishing scam</a> that targeted MobileMe users a while back? The one that may have nabbed hundreds of account holders&#8217; information? Well Apple must, because the latest in their series of MobileMe Updates <a href="http://www.apple.com/mobileme/news/2008/08/being-phishing-aware.html">addresses the issue</a> head on:</p>

<blockquote>You will never receive a message from MobileMe asking you to send personal information over email. If we are ever unable to charge your credit card, for instance, we will send you a reminder email, but will not directly link to any web pages. The safest way to respond and update any necessary information is to type www.me.com into your browser and log in to your account directly. That way you can be confident you are at me.com and your personal information is secure.</blockquote>

<p>Apple further <a href="http://support.apple.com/kb/HT2080">provides a support document</a> on how to better determine the actual destination hidden behind a link, and an email address &#8212; <a href="mailto:reportphishing@apple.com">reportphishing@apple.com</a> &#8212; where users can forward any questionable content for investigation by Apple legal and law enforcement.</p>

<p>Together, MobileMe users can help take a byte out of Apple-targeted crime!</p>
<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br /><br /><a href="http://www.theiphoneblog.com/2008/08/29/apples-mobileme-blog-addresses-phishing-scams/">Apple&#8217;s MobileMe Blog Addresses Phishing Scams</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.theiphoneblog.com/2008/08/29/apples-mobileme-blog-addresses-phishing-scams/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>MobileMe Phishing Attack Nets Hundreds Of Victims</title>
		<link>http://www.theiphoneblog.com/2008/08/15/mobileme-phishing-attack-nets-hundreds-of-victims/</link>
		<comments>http://www.theiphoneblog.com/2008/08/15/mobileme-phishing-attack-nets-hundreds-of-victims/#comments</comments>
		<pubDate>Fri, 15 Aug 2008 20:35:35 +0000</pubDate>
		<dc:creator>Rene Ritchie</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[mobileme]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[scam]]></category>

		<guid isPermaLink="false">http://www.theiphoneblog.com/?p=3822</guid>
		<description><![CDATA[

Remember that warning we posted on Tuesday about a MobileMe phishing attack in the wild? Turns out it&#8217;s been terrifyingly effective so far. Ars Technica quotes CardCops president Dan Celements:

&#8220;We found 20 different files parked on the server, each file with two or three or four, up to 20, profiles. Cumulatively, there were about 300 [...]<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br/><br/><a href="http://www.theiphoneblog.com/2008/08/15/mobileme-phishing-attack-nets-hundreds-of-victims/">MobileMe Phishing Attack Nets Hundreds Of Victims</a></p>
]]></description>
			<content:encoded><![CDATA[<p><a href='http://www.theiphoneblog.com/images/stories/2008/08/mobileme_phishing.jpg'><img src="http://www.theiphoneblog.com/images/stories/2008/08/mobileme_phishing.jpg" alt="" title="mobileme_phishing" width="366" height="400" class="aligncenter size-medium wp-image-3823" /></a></p>

<p>Remember that warning we posted on Tuesday about a <a href="http://www.theiphoneblog.com/tag/mobileme/">MobileMe phishing attack in the wild</a>? Turns out it&#8217;s been terrifyingly effective so far. <a href="http://arstechnica.com/journals/apple.ars/2008/08/15/hundreds-of-mobileme-customers-caught-in-phishing-net">Ars Technica</a> quotes CardCops president Dan Celements:</p>

<blockquote>&#8220;We found 20 different files parked on the server, each file with two or three or four, up to 20, profiles. Cumulatively, there were about 300 profiles collected in that one day. And 100 to 200 were mac.com addresses.&#8221;</blockquote>

<p>NOT GOOD. Ars goes on to rightly point out that Apple customers are typically higher-income, and thus more desirable targets. We&#8217;d also add that Apple users are not as accustomed to malware and phishing as our Windows-using friends, but as email and web browsing doesn&#8217;t care about platform, we REALLY need to be. Just like you wouldn&#8217;t open a package left at your door that smelled like gasoline and was ticking, even if it came in a Tiffany&#8217;s box, don&#8217;t open links or give out credit card information just because it fakes coming from Apple.</p>

<p>REMEMBER: Don’t EVER believe email requests for secure data. Go to the site yourself (not through their link — type it in) and log in and see if there really is a problem. Check domain names carefully. App1e.com isn’t the same as Apple.com, they’re just hoping you don’t notice. Worried about the recent DNS poisoning attacks? Use HTTPS/SSL or use a direct IP address. If in any doubt, pick up a phone and call Apple (or your credit card company) directly.</p>
<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br /><br /><a href="http://www.theiphoneblog.com/2008/08/15/mobileme-phishing-attack-nets-hundreds-of-victims/">MobileMe Phishing Attack Nets Hundreds Of Victims</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.theiphoneblog.com/2008/08/15/mobileme-phishing-attack-nets-hundreds-of-victims/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>WARNING: MobileMe Phishing Scam in the Wild</title>
		<link>http://www.theiphoneblog.com/2008/08/12/warning-mobileme-phishing-scam-in-the-wild/</link>
		<comments>http://www.theiphoneblog.com/2008/08/12/warning-mobileme-phishing-scam-in-the-wild/#comments</comments>
		<pubDate>Tue, 12 Aug 2008 15:00:46 +0000</pubDate>
		<dc:creator>Rene Ritchie</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[mobileme]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[scam]]></category>

		<guid isPermaLink="false">http://www.theiphoneblog.com/?p=3770</guid>
		<description><![CDATA[

Phishing attacks, where a bad guy tries to fool you into giving them personal information such as financial account logins, are nothing new on the &#8216;net. Fake emails leading you to a fake bank site to enter your information so that they (increasingly organized crime, often in Russia or China) can log into your real [...]<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br/><br/><a href="http://www.theiphoneblog.com/2008/08/12/warning-mobileme-phishing-scam-in-the-wild/">WARNING: MobileMe Phishing Scam in the Wild</a></p>
]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.theiphoneblog.com/images/stories/2008/06/iphone_pirate_2.jpg" alt="iPhone 2.0 Jailbreak and Unlock" title="iPhone 2.0 Jailbreak and Unlock" width="273" height="336" class="aligncenter size-full wp-image-2601" /></p>

<p>Phishing attacks, where a bad guy tries to fool you into giving them personal information such as financial account logins, are nothing new on the &#8216;net. Fake emails leading you to a fake bank site to enter your information so that they (increasingly organized crime, often in Russia or China) can log into your real site and transfer out all your money, then steal your identity and sell it off to second and third tier hackers for other nefarious uses. </p>

<p>This specific attack pretends to come from Apple regarding a MobileMe billing problem, and asks the user to click a link to update their credit card information (which will be promptly stolen). What makes this recent attack particularly dangerous is that <a href="http://www.theiphoneblog.com/2008/07/19/rocky-launch-botched-authorization-4-month-of-mobileme-free/">MobileMe HAS had billing problems</a> in the recent past, and what with all the other problems associated with the launch, users may be unfortunately prone to believe the phishing attack.</p>

<p>REMEMBER: Don&#8217;t EVER believe email requests for secure data. Go to the site yourself (not through their link &#8212; type it in) and log in and see if there really is a problem. Check domain names carefully. App1e.com isn&#8217;t the same as Apple.com, they&#8217;re just hoping you don&#8217;t notice. Worried about the recent DNS poisoning attacks? Use HTTPS/SSL or use a direct IP address. If in any doubt, pick up a phone and call Apple (or your credit card company) directly.</p>

<p>Yes, the bad guys are bombing the internet back to the stone age. It&#8217;s not a safe browsing world. Be careful and protect your data with the same care you protect real-world valuables.</p>

<p>(via <a href="http://arstechnica.com/journals/apple.ars/2008/08/12/phishing-e-mail-appears-in-mobileme-disguise">Ars Technica</a>)</p>
<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br /><br /><a href="http://www.theiphoneblog.com/2008/08/12/warning-mobileme-phishing-scam-in-the-wild/">WARNING: MobileMe Phishing Scam in the Wild</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.theiphoneblog.com/2008/08/12/warning-mobileme-phishing-scam-in-the-wild/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>WARNING: Don&#8217;t Fall for Fake Apps!</title>
		<link>http://www.theiphoneblog.com/2008/07/19/warning-dont-fall-for-fake-apps/</link>
		<comments>http://www.theiphoneblog.com/2008/07/19/warning-dont-fall-for-fake-apps/#comments</comments>
		<pubDate>Sat, 19 Jul 2008 21:53:35 +0000</pubDate>
		<dc:creator>Rene Ritchie</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[app store]]></category>
		<category><![CDATA[apps]]></category>
		<category><![CDATA[scam]]></category>

		<guid isPermaLink="false">http://www.theiphoneblog.com/?p=3395</guid>
		<description><![CDATA[

Proving once again that nothing enables crooks more than the internet, Gizmodo is warning iPhone app-seekers to steer clear of scams:

If you Google &#8220;iPhone apps,&#8221; the first thing that comes up is iPhoneApps.org, a site selling a bundle of &#8220;top 10&#8243; iPhone applications for $25 using &#8220;safe PayPal.&#8221; Friends, there&#8217;s nothing safe about this site. [...]<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br/><br/><a href="http://www.theiphoneblog.com/2008/07/19/warning-dont-fall-for-fake-apps/">WARNING: Don&#8217;t Fall for Fake Apps!</a></p>
]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.theiphoneblog.com/images/stories/2008/07/iphoneapps.jpg" alt="" title="iphoneapps" width="500" height="148" class="aligncenter size-full wp-image-3396" /></p>

<p>Proving once again that nothing enables crooks more than the internet, <a href="http://gizmodo.com/5026969/beware-iphone-app-scams">Gizmodo is warning iPhone app-seekers to steer clear of scams</a>:</p>

<blockquote>If you Google &#8220;iPhone apps,&#8221; the first thing that comes up is iPhoneApps.org, a site selling a bundle of &#8220;top 10&#8243; iPhone applications for $25 using &#8220;safe PayPal.&#8221; Friends, there&#8217;s nothing safe about this site. It&#8217;s a scam. The iTunes App Store is the exclusive distributor of official iPhone apps, period. Don&#8217;t get your apps anywhere else. Tell your friends and family. If you&#8217;re savvy enough to use Installer.app, this PSA is not for you, obviously. [Thanks Blake!]</blockquote>

<p>Remember, if something looks fishy, it probably is; seems too good to be true, is too good to be true; doesn&#8217;t come from Apple&#8217;s built-in-to-iPhone-and-iTunes App Store, is a big honking SCAM!</p>
<p>This is a story by <a href="http://theiphoneblog.com">the iPhone Blog</a>.  This feed is sponsored by <a href="http://store.theiphoneblog.com">The iPhone Blog Store</a>.<br /><br /><a href="http://www.theiphoneblog.com/2008/07/19/warning-dont-fall-for-fake-apps/">WARNING: Don&#8217;t Fall for Fake Apps!</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.theiphoneblog.com/2008/07/19/warning-dont-fall-for-fake-apps/feed/</wfw:commentRss>
		<slash:comments>13</slash:comments>
		</item>
	</channel>
</rss>

