On TV.com: Why Is Everyone in TV High School SO OLD
BNET Business Network:
BNET
TechRepublic
ZDNet

July 28th, 2009

419 scammers using Dilbert.com

Posted by Dancho Danchev @ 3:23 am

Categories: Phishing, Spam and Phishing

Tags: Fraud, Scammer, Litigation, E-mail, Spam, Viruses And Worms, Security, Spam And Phishing, Dancho Danchev

Scammers too, know Dilbert.

On their way to search for clean IPs through which to send out yet another scam email, 419 con-artists (Mrs Sharon Goetz Massey) have recently started  using Dilbert.com’s recommendation feature in an attempt to bypass anti-spam filters — and it works. The use of Dilbert.com’s clean IP reputation comes a month after 419 scammers used the same tactic on NYTimes.com ‘email this’ feature.

Isolated incidents or an indication of a trend? 419 scammers are like spammers circa 1997, technically unsophisticated but fully capable of maintaining a fraudulent infrastructure by using legitimate services only.

Case in point - automatically registered email accounts next to compromised ones already represent the source of a close to 20% of the overall spam volume, and these levels remain steady. A logical question arises, why hasn’t 419 advance-fee fraud reached the efficiency levels of phishing or spam in general, taking into consideration the fact that spam is already outsourced as a process? It’s because South Africa-based scammers lack the networking skills necessary to approach international cybercrime groups which would not only manage the entire scamming process for them, but would help them improve the quality of the campaigns.

Data detailing the magnitude of advance-fee fraud varies. According to the U.S Internet Crime Complaint Center, Nigerian letter fraud represented a 5.2% of the total loss reported in their annual 2008 report, with non-delivery scams topping the chart. Internationally, the number of advance-fee fraud cases and the number of victims is higher:

In the last two years, the Electronic and Financial Crimes Commission (EFCC) of Nigeria has been putting scammers in jail. The commission has invited journalists on a successful high-profile operation to apprehend a scamming ring and has helped foil Nigerian-led groups that ran multimillion-dollar fraud schemes. In a 2007 report, the EFCC said it handled more than 18,000 advanced-fee fraud cases, a six-fold increase in just four years.

From a technical perspective, advanced-fee fraud is still in its infancy, however the results of its tactics are pretty evident in the face of the thousands of scammed people across the globe. Don’t be one of them, spot the scam, take a minute and report it.

Dancho DanchevDancho Danchev is an independent security consultant and cyber threats analyst, with extensive experience in open source intelligence gathering, malware and cybercrime incident response. He's been an active security blogger since 2007, and maintains a popular security blog. See his full profile and disclosure of his industry affiliations.

Email Dancho Danchev

Subscribe to Zero Day via Email alerts or RSS.

Related Discussions on TechRepublic

Did you know you can take part in these discussions with your ZDNet membership?

  • Talkback
  • Most Recent of 19 Talkback(s)
not quite the "natural selection" process
>>>Western society seems to have evolved to protect the terminally stupid over and above the rest of society.

Unfortunately, this "terminal stupidity" is not something that nature seems to reject. It is a persistent defect.... (Read the rest)
Posted by: David A. Pimentel Posted on: 10/30/09 You are currently: a Guest | | Terms of Use
You know, you'd think 419 schemes would be famous by now  wolf_z | 07/28/09
Well, as PT Barnum once said...  JohnMcGrew@... | 07/28/09
Well, as PT Barnum once said... (not)  Darr247 | 07/29/09
Greed  Divergex | 07/28/09
Victim's dishonesty  sboverie@... | 07/28/09
Think of it as Evolution in Action  adrian_grover@... | 07/29/09
not quite the "natural selection" process  David A. Pimentel | 10/30/09
It's the new users, not the old hacks  GrimmReaperSound | 07/28/09
Sometimes they're nearly believable  snberk341 | 07/28/09
anyone still filtering on pure IP is retarded.  Been_Done_Before | 07/28/09
RE: 419 scammers using Dilbert.com  robert145 | 07/28/09
Bravo  adrian_grover@... | 07/29/09
RE: 419 scammers using Dilbert.com  savio.lau | 07/28/09
RE: 419 scammers using Dilbert.com  John N. | 07/28/09
RE: 419 scammers using Dilbert.com  DumbTube | 07/29/09
Hey!  adrian_grover@... | 07/29/09
Re: 419 scammers have a new "FACE" on Facebook  littlekel | 07/30/09
RE: 419 scammers using Dilbert.com  Scambuster | 08/01/09
RE: 419 scammers using Dilbert.com  sabonet | 08/14/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

SmartPlanet

Click Here