Categorized | Antivirus, Featured

I can’t believe a GIRL did this because of Justin Bieber – Facebook’s latest scam

Facebook has been hit very hard the last few weeks with a never ending onslaught of new scams trying to trick innocent Facebook users. The latest one spreads with the message “I can’t believe a GIRL did this because of Justin Bieber” and links you to a YouTube look-a-like site called FouTube.

FouTube screenshot

Fortunately Sophos customers are protected from being likejacked when using our browser helper object in Internet Explorer. The hidden iFrame is detected as Troj/Iframe-ET. This style of attack is quite old and resembles some of the first likejacking attacks we started seeing earlier this year.

Most Facebook attacks I have looked at recently were rogue Facebook Applications rather than simply liking a web page. This one is quite poorly crafted, yet it is still spreading quite quickly amongst Facebook users who can’t seem to get enough Justin Bieber.

Offer to buy Facebook Fan pagesOne interesting thing while came up though, the person behind this attack displays an offer to purchase Facebook Groups/Fan pages, apparently to help further spread their malicious scams.

Like most scams this one does not appear to be spreading malware, rather just displaying survey scams and other tricks to get you to subscribe to premium rate SMS services on your mobile phone.

It’s unfortunate that almost eight months after likejacking started becoming common that Facebook has chosen to keep the simplicity of the “Like” feature and not implement a confirmation option that would alert a user who is logged into Facebook that they are endorsing another scam.

If you have accidentally “Liked” this web page you can remove it by visiting your Facebook Wall and choosing to remove your like. As a precaution against likejacking you may wish to logout from Facebook when you are not actively using it. These attacks do not work if you are not currently logged into Facebook.

If you’re a Facebook user and want to keep up on the latest threats and security news why don’t you join the Sophos Facebook page?

– Naked Security – Sophos on Naked Security – Sophos

Related Posts

One Response to “I can’t believe a GIRL did this because of Justin Bieber – Facebook’s latest scam”

  1. Big_D says:

    Yet one more reason to dump FailBook… never in my wildest dreams did I ever see the day when computers and websites would act like drugs for the younger generations. When does the madness stop??? What ever happened to CALLING and TALKING to your family and friends??!?! It would be a dang crying shame if something were to happen to technology.

Trackbacks/Pingbacks


Security Status

Beware Facebook "Timeline" scams http://t.co/W5EW0cVv
4 months ago
Nigerian government (unknowingly) hosts phishing website http://t.co/uQd42ENw
4 months ago
PCMag Awards McAfee All Access its Editors’ Choice: SANTA CLARA, Calif.--(BUSINESS WIRE)--McAfee today announced... http://t.co/FakV7Vd8
4 months ago
RT @mikko: I hadn't noticed Google Maps has added 3D models of buildings. Here's a (very accurate) view of F-Secure HQ in Helsinki http://t.co/IKfAZlak
4 months ago
North Koreans aren't known for their online presence. But others may be lured into clicking Kim Jong-Il 'videos' too http://t.co/yQOon6YT
4 months ago
How to Protect Your Professional Reputation on Facebook Timeline http://t.co/I4bcR2VN
4 months ago
This is pretty impressive from @Softpedia: Facebook scans 2 trillion link clicks and blocks 220 million posts each day http://t.co/vKsn9gNl
4 months ago
Need for integrated approach to security in industrial control systems - http://t.co/tPBCNOow with @PikeResearch
4 months ago
Some free-based music we play at work http://t.co/xu5agZfc
4 months ago
Japan’s cyber defense weapon: a virus. It includes quotes by @Luis_Corrons via @InfosecurityMag
4 months ago