Exploring Historical & Emerging Phishing Techniques

International Journal of Network Security & Its Applications (IJNSA), Vol.5, No.4, July 2013
DOI : 10.5121/ijnsa.2013.5402 23

Marc A. Rader1 and Syed (Shawon) M. Rahman2, *
1CapellaUniversity, Minneapolis, MN, USA and Associate Faculty, Cochise CollegeAZ, USA
Mrader3@CapellaUniversity.edu
Associate Professor of Computer Science at the University of Hawaii-Hilo, Hawaii,
USA and Part-time Faculty at Capella University, Minneapolis, USA
*SRahman@hawaii.edu
ABSTRACT
Organizations invest heavily in technical controls for their Information Assurance (IA) infrastructure.
These technical controls mitigate and reduce the risk of damage caused by outsider attacks. Most
organizations rely on training to mitigate and reduce risk of non-technical attacks such as social
engineering. Organizations lump IA training into small modules that personnel typically rush through
because the training programs lack enough depth and creativity to keep a trainee engaged. The key to
retaining knowledge is making the information memorable. This paper describes common and emerging
attack vectors and how to lower and mitigate the associated risks.
KEY WORDS
Security Risks, Phishing, Social Engineering, Cross Site Scripting, Emerging Attack Vectors, DNS poising.
1. INTRODUCTION
Phishing is a social engineering technique that is used to bypass technical controls implemented
to mitigate security risks in information systems. People are the weakest link in any security
program. Phishing capitalizes on this weakness and exploits human nature in order to gain access
to a system or to defraud a person of their assets.

Miley Cyrus Hacker Raided by FBI

A 19-year-old hacker who published provocative photos of teen queen Miley Cyrus earlier this year was raided by the FBI Monday morning in Murfreesboro, Tennessee.

The hacker, Josh Holly, repeatedly bragged online about breaking into the Disney star’s e-mail account and stealing her photos. He also gave interviews to bloggers and others and boasted that authorities would never find him because he moved so often. [Last month, Holly contacted Threat Level seeking to have an article written about him here.]

But this morning the FBI did find him and, after talking with him for more than an hour about his exploits, served him with a search warrant and a list of items to be seized (which was posted at the hacking site digitalgangster.com after Holly showed it to a friend).

mileycyrus2

 


WinShell v5.0 £­ A finished telnet server for windows

Author : janker
Homepage: http://www.janker.org

About
=====
WinShell was a telnet server for windows platform. Main program was just a 5k bytes stand-alone executable file, Could run stably without any third dll, Although it was so thin, it had many of functions, such as custom port, password protect, muti-user logon, NT Service mode, download file£¬user-defined message, special anti-ddos and etc. Detail to see the following:

RIP Brand0n

Detectives discover moonshine amid Murrells Inlet death investigation MURRELLS INLET, SC (WMBF) - One man was confirmed deceased at a condo unit at the Royal Garden Resort, located off Waccamaw Drive North. Detectives and special operations units responded to the scene at a condo unit in Murrells Inlet on Monday afternoon. Brandon Tarlton, 40, of Murrells Inlet was found deceased at the condo. The autopsy.....

crèátéd by: shøck, in the year 2001, and released at exactly: 6:42 PM 11/2/01, yeah nigga. .·--·._.·--·._.·--·._.·--·._.·--·._.·--·._.·--·._.·--·._.·--·._.·--· INFORMATION ON AC²: This is probably my last prog, but who knows maybe I'll change my mind and keep makin ao-prøggies. This idler sucks though, and I even put a lot of work into this fuckin bitch but still it sucks. Its got styles, statz, edit ascii, hex.....

<//==[Sk8s AiM TooLz v2.01]==\\> Release Notes: This prog was made in Visual Basic 4.0... I used 3 bas files... They include---> Digital AiM Gold.bas, Cyro Fade.bas, and AbbotAIM.bas... All the options worked the day i released it.. If an option(s) does not work please report it to -Sk8- Use the following contacts at the bottom.... Featured Options: 1. Mass Imer- Mass IMs people very quickly.....

*************************************************** Programed by: Hugo Ferreira ( Bandido Digitål ) E-mail: lokopakaramba@msn.com B A N D I D O D I G I T å L Brasil - Brasilia-DF - Recanto das Emas *************************************************** ENGLISH (very evil) Use this program for get passwords of the AIM with only the screen name. imput the screen name in the UpTextBox and then pres "procurar" button. Or input the.....

Installation Help! - If you get error while loading you probably need to register a file 'RICHTX32.OCX' - To do this. Open your Aim Xpressionz . Locate the 'RICHTX32.OCX ' file - Now place this file in your system32 folder. Path is - C:\Windows\system32 <-- for 98/me/200 windows - For Nt and xp pro , 2000 pro windows - path is c:\winnit\System32 - Now that.....
About
JustinakaPaste.com is dedicated to my childhood from 1998-2005 - everything related to the AOL/AIM scene.  From AOL/AIM Progs, Exploits, Security Breaches, Hacks, Screen Names (leets, 2chars, 3chars, INTs, overheads, hosts, restricteds, indents), AOLers, AIMers, Employee Sections, AOL/AIM Articles & Tutorials, SecurID, Merlin, <M><, <><, Keyword Defacements, Old AOL Site Archives, Fallen AOL h4ckers (RIP), AOL Chat Logs, Macro Art, AOL Scam Sites, AOL Progs from.....