You aren't signed in     Sign In    Help

Hook, Line, Sinker (How I fell for a phishing scam)

Hook, Line, Sinker (How I fell for a phishing scam) by ToastyKen.
(Project 365 Day 314)
Today I fell for a phishing scam. :( A friend of mine sends me a link via Yahoo IM asking me to check out some geocities link. I click on it, and I get a Yahoo 360 sign-in page. "Strange that you'd need to sign in to see a geocities page, but Yahoo does own geocities, and I haven't been there in a while," I think.

So I put in my username/password and just get a Yahoo 360 homepage. Weird. I IM my friend to ask what the deal is, but he doesn't reply. I'm in the middle of working, so I quickly get distracted by other duties and don't think about it much.

A while later, I get a reply from my friend, along the lines of, "Huh?" Turns out he never sent me the link! "Crap!" I think. "I'm a doofus! I just fell for a phishing scam!" My friend had gotten the same link from one of HIS friends, and so I bet the bad guys have a program that recorded his password when he typed it into that bogus page, then logged in to his Yahoo IM account and spammed it to everyone on his buddy list.

It's quite insidious, because you're tempted to trust links your friends send you, and because this doesn't require any spyware on your computer; it's all done over the web.

So again, people, don't be an idiot like me. Think twice before putting your password in a page that asks for it!

Oh, and needless to say, I immediately reported the page to Yahoo (and it's been taken down now), changed my Yahoo password, and then changed the password in the various other places I use that same password, just in case. I also emailed everyone in my Yahoo IM buddy list to warn them, just in case my account sent them the bogus URL, too. Pain in the ass. 

Comments

view profile

UnintendedBliss  Pro User  says:

I thought the pic was cool to begin with, and then I read the story and now it's even better. Sorry that you got sucked into a phishing scam, though! I know I like to think that I'm too good for them, but I was suckered by a link in a friend's AIM profile once.
Posted 27 months ago. ( permalink )

view profile

ToastyKen  Pro User  says:

Yup. Exactly. I usually think I'm too smart to fall for this stuff, too. :P
Posted 27 months ago. ( permalink )

view profile

TheDamnMushroom  Pro User  says:

Hi, I'm an admin for a group called Scams, Phish, and Fraud, and we'd love to have your story (and photo) added to the group. We have plenty of images of phish but could use a first-person account like this!
Posted 27 months ago. ( permalink )

view profile

Bill Sheridan  Pro User  says:

Hi! I occasionally blog about tax-related phishing scams at www.CPASuccess.com. Think it would be OK if I used this great photo in one of my future blog posts?
Posted 22 months ago. ( permalink )

view profile

mamalexi says:

hi, i used this photo on my blog:

mylifeshift.blogspot.com/2008/02/how-to-avoid -work-at-hom...

if you want me to remove it, please just drop me a line here in flickr.

thank you!
Posted 21 months ago. ( permalink )

view profile

tamebay says:

Thanks for the fantastic photo, and the Creative Commons licence! We used it on a blog post today.
Sue & Chris
Posted 20 months ago. ( permalink )

view profile

jamesyterri  Pro User  says:

Contact me about use of your photo for a Dept of Defense organization's phishing email awareness poster.

Thanks,
James
Posted 17 months ago. ( permalink )

view profile

medea_material  Pro User  says:

This picture is great, thanks for using a Creative Commons License on it! I have used it to illustrate an article on Pyramid schemes in Colombia that you can view at Global Voices Online
Posted 14 months ago. ( permalink )

view profile

ToastyKen  Pro User  says:

Thanks for letting me know! :)
Posted 14 months ago. ( permalink )

view profile

krystleblair says:

Hey, great pic! I added it to www.wikihow.com/Spot-a-Con-Artist. Thanks for using a CC license!
Posted 10 months ago. ( permalink )

view profile

RCP Family  Pro User  says:

Great pic, i just used it on a blog post of my own scam story.

www.reyes-chow.com/2009/03/bruce-reyeschow-do es-not-want-...
Posted 8 months ago. ( permalink )

view profile

.aG  Pro User  says:

Hi, I'm an admin for a group called Digital Security, and we'd love to have this added to the group!
Posted 5 months ago. ( permalink )

view profile

S and C says:

Hey there, I have used your photo on a scam related article I have recently published on my blog - www.everydayhowto.net/business/work-at-home-b usiness/how-...

Thanks for using the CC license.
Posted 3 months ago. ( permalink )

view profile

CellPlaza says:

DON'T CLICK LINKS! But you know that ....

I used this rad image in a blog about cell phone scam. Great stuff.

Cell Phone Lines Not Immune to Scams
Posted 3 months ago. ( permalink )

view profile

paulpablopawel  Pro User  says:

I used your picture in my Blog: www.kostrolaw.com/NJFamilyIssues/2009/08/27/f raud-elements/
Thank You.
Posted 2 months ago. ( permalink )

Would you like to comment?

Sign up for a free account, or sign in (if you're already a member).

[?]
view photos Uploaded on August 30, 2007
by ToastyKen

ToastyKen's photostream

1,572
uploads

This photo also belongs to:

My Project 365 (Set)

416
items
Part of: Misc

the long description! (Pool)

Project 365 (Pool)

Scams, Phish, and Fraud (Pool)

Digital Security (Pool)

Tags

Click this icon to see all public photos and videos tagged with me me

Additional Information

Attribution Some rights reserved Anyone can see this photo

Add to your map