[Full-disclosure] "Sex Scandal" Spam Campaign Targeting US Presidential Election

n3td3v xploitable at gmail.com
Tue Sep 9 16:02:57 BST 2008


On Tue, Sep 9, 2008 at 3:11 PM, n3td3v <xploitable at gmail.com> wrote:
> On Tue, Sep 9, 2008 at 2:48 PM, n3td3v <xploitable at gmail.com> wrote:
>> Is Marcus Sachs responsible?
>>
>> Websense(R) Security Labs™ ThreatSeeker™ Network has discovered an
>> emerging email campaign which uses the US presidential election as a
>> social engineering mechanism to install information-stealing code on a
>> victim's machine. With less than 2 months before the start of the
>> election, emails are circulating with fake news of a sex scandal
>> affecting one of the candidates. Recipients of the email are
>> encouraged to view a video supposedly involving the Democratic
>> candidate Barack Obama. Users who click the link are shown a
>> pornographic video taken from hxxp://homemade*snip*.com/. While the
>> video plays for 14 seconds, malicious applications are installed on
>> the victim's machine.
>>
>> Screenshot of example email:
>>
>> http://securitylabs.websense.com/content/Alerts/3177.aspx
>>
>
> "How do we get the attention of the next administration as they are
> coming in?"--Marcus Sachs
>
> "How do we play into the media and get their attention?"--Marcus Sachs
>
> http://www.youtube.com/watch?v=FSUPTZVlkyU
>

This appears to be a false flag operation carried out by the Marcus Sachs clan.

http://en.wikipedia.org/wiki/False_flag

All the best,

n3td3v



Full-Disclosure is hosted and sponsored by Secunia.