Girls Aloud pop star Cheryl Cole, famous in the UK for her role as a judge on top TV show “The X Factor” which had its grand final last night, is being exploited by scammers on Facebook.
Scammers are using a clickjacking technique to trick users into “liking” a webpage without their knowledge, believing it to be a BBC News report about paparazzi photographs that have exposed the popular celebrity.
Using the familiar banner of the BBC News website, the story beneath is not exactly the err.. content you would normally associate with the British Broadcasting Corporation. Instead it shows a typically tabloid pararazzi photograph of Cheryl Cole getting out of a car while wearing a short skirt.

Hardly the most convincing replica of the BBC website I’ve ever seen, but if you are tempted to click on the page uses a clickjacking technique to invisibly “like” the webpage, sharing it with all of your Facebook friends and buddies.

BBC News: Cheryl Cole Exposed Paparazzi Photos !
You won’t realise, however, that your Facebook page has been updated unless you specifically look at your feed.
Instead, chances are that some fans of Cheryl Cole will venture further, seeing another page which looks distinctly unlike those normally produced by the BBC – and ultimately a picture that is often printed in the more lowbrow British newspapers.

So, what’s all the purpose of all this? Well, it appears that once again scammers are abusing Facebook users to drive traffic to online surveys – designed to earn them commission for every survey completed.
It’s really time that something more serious was done about spam like this, which has been exploiting Facebook users for far too long.
If you have been hit by a scam like this, delete the messages from your newsfeed and remove the “like”s from your profile.
If you want to get earlier warning about security threats on the social network and elsewhere on the internet, you could do a lot worse than join the Sophos Facebook page.
Related Posts
- How to report a Facebook scam
At some point in your life, one or several of the Facebook scams out there might affect you enough to look for ways on how to report them and go on a vendetta rampage against the scam creator. I... - Italian model exposed in Facebook clickjacking attack
The mere mention of anything with a sex connotation on Facebook almost always begets some major activity, with people wanting to know more. As a result, whatever the attack vector or channel might be ... - Facebook clickjacking: Malware takes on new Italian disguises
Non-English speaking Facebook users shouldn't be fooled into believing that they are somehow immune from the scams and attacks that plague the social networking site.
The latest few campaigns seen by ... - Facebook clickjacking: Dirty Italian schoolteacher undresses
Italian users could be at risk of being clickjacked on Facebook, as a new attack is seen spreading between users.
SophosLabs has been seeing some detections of Mal/FBJack-A from Italian users, as they... - Hacktivism, Apple App Store, Vodafone and Facebook – 90 Sec News – Jan 2011
Don't just read the latest computer security news - watch it in 90 seconds!
The lessons this month: "Anonymous" hacktivists aren't as anonymous as they might have hoped, applications in Apple's bran... - Facebook News Feeds Full of Malware, BitDefender Says (PC Magazine)
PC Magazine - There are a lot of bogus posts floating around Facebook. According to data from security company BitDefender, there's harmful content behind about 20 percent of posts on a Facebook news... - Facebook and Twitter Flunk Security Report Card
Ignorance is bliss, so don't read any further if you don't want to panic about Facebook and Twitter security.
View full post on Computerworld Security News... - Facebook voyeurism a part of workplace life: report (AFP)
AFP - Facebook fans tend to lurk instead of play when they tune into the social network while at their jobs, according to a report released Thursday by computer security firm Palo Alto Networks.
Vi... - Report Says Facebook Apps Share Personal Data With Advertisers
A report in today's Wall Street Journal finds that many Facebook applications have been transmitting Facebook user id (UID) data to advertisers in violation of Facebook policy and, in some ca... - Facebook Clickjacking Attacks: Recognize and Avoid Them
So far the clickjacking attacks that are making the rounds on Facebook haven't done more than forcibly gather web traffic. Learn to recognize and avoid them now, before a more dangerous version surfac...
Posted on 14 December 2010. Tags: Cheryl, Clickjacking, Cole, Facebook, news, posing, Report