[Full-disclosure] "Sex Scandal" Spam Campaign Targeting US Presidential Election
n3td3v
xploitable at gmail.com
Tue Sep 9 15:11:25 BST 2008
On Tue, Sep 9, 2008 at 2:48 PM, n3td3v <xploitable at gmail.com> wrote:
> Is Marcus Sachs responsible?
>
> Websense(R) Security Labs™ ThreatSeeker™ Network has discovered an
> emerging email campaign which uses the US presidential election as a
> social engineering mechanism to install information-stealing code on a
> victim's machine. With less than 2 months before the start of the
> election, emails are circulating with fake news of a sex scandal
> affecting one of the candidates. Recipients of the email are
> encouraged to view a video supposedly involving the Democratic
> candidate Barack Obama. Users who click the link are shown a
> pornographic video taken from hxxp://homemade*snip*.com/. While the
> video plays for 14 seconds, malicious applications are installed on
> the victim's machine.
>
> Screenshot of example email:
>
> http://securitylabs.websense.com/content/Alerts/3177.aspx
>
"How do we get the attention of the next administration as they are
coming in?"--Marcus Sachs
"How do we play into the media and get their attention?"--Marcus Sachs
http://www.youtube.com/watch?v=FSUPTZVlkyU
Full-Disclosure is hosted and sponsored by Secunia.