Forum     

Go Back   Digit Technology Discussion Forum > News > Technology News
Register FAQ Calendar Mark Forums Read

Technology News News from the world of technology that our members stumble across. NOTE: Sources to be mentioned at the beginning of each post.


Reply
 
LinkBack Thread Tools Display Modes
Old 13-09-2011, 02:36 PM   #1 (permalink)
In The Zone
 
socrates's Avatar
 
Join Date: Mar 2007
Location: Mumbai
Posts: 387
Default Spelling mistakes can lead to online security breaches


If you have a friend with a very complicated email address or even just a name you frequently misspell like mine, you have to be extra careful when typing out their addresses when you send them an email. Researchers have found that cyber thieves create commonly misspelled domains and usernames for email addresses. What this means is when you make a mistake in spelling the name of the intended recipient's email address, it could end up in the inbox of a cyber thief instead of just bouncing back to you. Investigators looking into this have grabbed 20GB from over 1,20,000 wrongly sent emails in the past six months. Of course, some of the intercepted emails contained private information like usernames and passwords, as well as private corporate information.
Usually, it's companies that fall victim to this practice. When a company has one domain for their website and multiple domains for their individual business units, they tend to differentiate between domains with the use of dots. So for instance, a multinational television company in the US would have the email address us.company.com, while in India they might have company.india.com. If a sender messes up the placement of the dots and the order of the words, chances are, the email will end up in the hands of thieves.


Some attackers that are actually clever will go unnoticed by being a middle man. The obvious way such a practice would be caught would be that recipients keep reporting that they're not receiving emails intended for them, but senders aren't getting emails bounced back. A clever thief would actually forward on the email to its intended sender. Of course, this means, that when the recipient hits reply and an email chain starts, that's more information that a thief receives. Mark Stockley wrote on the Sophos security firm's blog, "A determined attacker with a modest budget could easily afford to buy domains covering a vast range of organisations and typos."
http://tech2.in.com/news/web-service...reaches/240462
__________________
be what you are
and say what you feel
bcoz those who mind, don't matter
and those who matter, don't mind !!

Last edited by socrates; 13-09-2011 at 03:01 PM.
socrates is offline   Reply With Quote
Advertisements. Register and be a member of the community to get rid of them.
Advertisement

Old 13-09-2011, 03:05 PM   #2 (permalink)
Techno Freak
 
Join Date: Sep 2003
Location: Thinkdigit.com
Posts: 175
Default Re: Spelling mistakes can lead to online security breaches

Quote:
Originally Posted by socrates View Post
If you have a friend with a very complicated email address or even just a name you frequently misspell like mine, you have to be extra careful when typing out their addresses when you send them an email. Researchers have found that ..................

Spelling mistakes can lead to online security breaches

thanks Buddy thanks For Info!!!
suyash_123 is offline   Reply With Quote
Old 13-09-2011, 03:05 PM   #3 (permalink)
.
 
JojoTheDragon's Avatar
 
Join Date: Aug 2008
Location: Guwahati
Posts: 2,485
Default Re: Spelling mistakes can lead to online security breaches

Well, this is common. Sometimes when we mistype an URL, it takes us to a crappy site and these crappy sites often have "domain for sale" written in big letters.
__________________
| Steam: jojothedragon | Origin : jojothedragon | PSN : jojothedragon |


TDF @ Steam
Get 2GB of free cloud space : http://db.tt/OJKPcZnY
JojoTheDragon is offline   Reply With Quote
Old 13-09-2011, 04:15 PM   #4 (permalink)
FUBAR.
 
KDroid's Avatar
 
Join Date: Mar 2010
Location: Indore
Posts: 727
Default Re: Spelling mistakes can lead to online security breaches

Thanx. But this is no NEWS!

This should have been posted in the Community Discussions.
__________________
Inactive. For a year.
Twitter
KDroid is offline   Reply With Quote
Old 13-09-2011, 06:06 PM   #5 (permalink)
Human Spambot
 
Join Date: Nov 2008
Location: Guwahati
Posts: 5,796
Default Re: Spelling mistakes can lead to online security breaches

Looks like lately you have started to spam this section with MULTIPLE threads each day with news like- Microsoft Server Down,etc

Please stop this. Post only usefull News.
__________________
My Photography page on- Flickr

Follow me on - Twitter
thetechfreak is offline   Reply With Quote
Old 13-09-2011, 06:58 PM   #6 (permalink)
In The Zone
 
socrates's Avatar
 
Join Date: Mar 2007
Location: Mumbai
Posts: 387
Default Re: Spelling mistakes can lead to online security breaches

Quote:
Originally Posted by thetechfreak View Post
Looks like lately you have started to spam this section with MULTIPLE threads each day with news like- Microsoft Server Down,etc

Please stop this. Post only usefull News.
I think you are referring to 'Microsoft's Hotmail, other cloud services go offline due to a technical snag'. I posted that as I thought it might be useful to some who use that service, also it brings to mind the robustness of 'cloud' services in general. Seems you don't use that service hence find it irrelevant. Strange there are no complaints on that thread. Also I don't think there is any restriction on how threads/posts one can make AND whatever I post here is because I think it might be useful to some member, of course it cant satisfy all. Even this thread where some have commented that its old news etc will be surprised how many 'experts' exist on the internet who 'know a lot' about security AND still fall prey to some of the most basic tricks. I should know as being in that line I have to then help these people so I think these type of warnings which may seem like crap to some can be v useful to some others.

BTW If you think something is irrelevant please complain to the admin. Let them decide.
__________________
be what you are
and say what you feel
bcoz those who mind, don't matter
and those who matter, don't mind !!

Last edited by socrates; 13-09-2011 at 07:20 PM.
socrates is offline   Reply With Quote
Old 14-09-2011, 11:48 AM   #7 (permalink)
Stuck in Time...
 
Vyom's Avatar
 
Join Date: May 2009
Location: Land of Logic
Posts: 2,278
Default Re: Spelling mistakes can lead to online security breaches

You have given us something to ponder upon.
It's amazing in how many ways, can data be lost in Cyber world!
Thanks for the heads up!
__________________
Marty: Hey, Doc, we better back up. We don't have enough road to get up to 88.
Doc Brown: Roads? Where we're going, we don't need, "roads!" :)

──── On the Internet you can be Anything you want. It's Strange that, so many people choose to be Stupid! ────
Vyom is online now   Reply With Quote
Old 14-09-2011, 01:55 PM   #8 (permalink)
In The Zone
 
socrates's Avatar
 
Join Date: Mar 2007
Location: Mumbai
Posts: 387
Default Re: Spelling mistakes can lead to online security breaches

A pvt bank comes to my mind where it uses abcbank.com for its email bank statements & abcbank.net for marketing emails. In the past they used to use only the .net domain for everything then started using the .com domain, giving the .net domain a rest for a few years then started using the .net domain along with the .com Even though there are no spelling mistakes in this case it does muddy the waters & creates confusion in the minds of customers who do check all these parameters, one wonders why they need two domains? The best joke is they regularly send emails warning customers about phishing attacks & other net scams.
__________________
be what you are
and say what you feel
bcoz those who mind, don't matter
and those who matter, don't mind !!
socrates is offline   Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


 
Latest Threads
- by Who
- by Tech&ME
- by icebags
- by Tenida
- by clmlbx

Advertisement




All times are GMT +5.5. The time now is 08:27 PM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.

Search Engine Optimization by vBSEO 3.3.2