<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Check Chain Mail and Hoaxes</title>
	<atom:link href="http://chainmailcheck.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://chainmailcheck.wordpress.com</link>
	<description>Information on and verification of hoaxes, semi-hoaxes, chainletters, scams and related nuisances.</description>
	<lastBuildDate>Fri, 20 Jan 2012 14:39:12 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='chainmailcheck.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Check Chain Mail and Hoaxes</title>
		<link>http://chainmailcheck.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://chainmailcheck.wordpress.com/osd.xml" title="Check Chain Mail and Hoaxes" />
	<atom:link rel='hub' href='http://chainmailcheck.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Facebook Memes are the New Black(hat)</title>
		<link>http://chainmailcheck.wordpress.com/2012/01/20/facebook-memes-are-the-new-blackhat/</link>
		<comments>http://chainmailcheck.wordpress.com/2012/01/20/facebook-memes-are-the-new-blackhat/#comments</comments>
		<pubDate>Fri, 20 Jan 2012 14:39:06 +0000</pubDate>
		<dc:creator>David Harley</dc:creator>
				<category><![CDATA[David Harley]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[Facecrooks]]></category>
		<category><![CDATA[Stephen Cobb]]></category>
		<category><![CDATA[survey scams]]></category>
		<category><![CDATA[Virus Bulletin]]></category>
		<category><![CDATA[facebook memes]]></category>
		<category><![CDATA[internet memes]]></category>

		<guid isPermaLink="false">http://chainmailcheck.wordpress.com/?p=815</guid>
		<description><![CDATA[Facebook memes and facebook scams: dream meme, dream team.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=815&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>At any rate, they keep tapping on my shoulder.</p>
<p>Earlier in the week, a couple of recent &#8220;status games&#8221; loosely connected with medical fund/attention-raising prompted me to write about security implications in a piece for Virus Bulletin (I&#8217;ll let you know here when it comes out).</p>
<p>Then <a href="http://facecrooks.com/Scam-Watch/the-number-one-song-when-i-was-born-was-facebook-scam.html" target="_blank">Facecrooks announced</a> a malicious app that subverts a <a href="http://knowyourmeme.com/memes/no-1-song-on-my-birthday" target="_blank">status game</a> that I&#8217;ve seen around a lot lately, involving sharing whatever was the top of the charts the day you were born. In my case it was <a href="http://en.wikipedia.org/wiki/Sumer_Is_Icumen_In" target="_blank">Sumer is icumen in</a> (if only it was&#8230;) by some wandering minstrel or other, but it so happens I had a fair amount to say about that, which you can read about in <a href="http://blog.eset.com/2012/01/20/facebook-your-birthday-1-and-survey-scams">Facebook, your birthday #1, and survey scams</a>, if you so wish.</p>
<p> And now I see that <a href="http://www.facebook.com/Facecrooks/posts/290358957688553" target="_blank">Facebook is announcing</a> a variation on the Timeline scams that Stephen Cobb discussed in <a href="http://blog.eset.com/2012/01/04/facebooks-timeline-to-fraud-a-geddon">Facebook’s timeline to fraud-a-geddon?</a> Bizarrely, this one tells you how to get Timeline ahead of the official launch (it&#8217;s already happened, guys!). You might think that it&#8217;s all too easy to get Timeline , which some of us would quite happily do without. But at least 120,000 people have apparently fallen for it.</p>
<p>This one will run and run&#8230;</p>
<p><strong>David Harley CITP FBCS CISSP</strong><br />
<strong>Small Blue-Green World</strong><br />
<strong>ESET Senior Research Fellow</strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/chainmailcheck.wordpress.com/815/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/chainmailcheck.wordpress.com/815/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/chainmailcheck.wordpress.com/815/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/chainmailcheck.wordpress.com/815/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/chainmailcheck.wordpress.com/815/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/chainmailcheck.wordpress.com/815/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/chainmailcheck.wordpress.com/815/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/chainmailcheck.wordpress.com/815/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/chainmailcheck.wordpress.com/815/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/chainmailcheck.wordpress.com/815/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/chainmailcheck.wordpress.com/815/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/chainmailcheck.wordpress.com/815/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/chainmailcheck.wordpress.com/815/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/chainmailcheck.wordpress.com/815/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=815&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://chainmailcheck.wordpress.com/2012/01/20/facebook-memes-are-the-new-blackhat/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/87a00d996b23fce4539dbdd792cc5d13?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">dharley</media:title>
		</media:content>
	</item>
		<item>
		<title>Agony Column for Comment Spammers</title>
		<link>http://chainmailcheck.wordpress.com/2012/01/19/agony-column-for-comment-spammers/</link>
		<comments>http://chainmailcheck.wordpress.com/2012/01/19/agony-column-for-comment-spammers/#comments</comments>
		<pubDate>Thu, 19 Jan 2012 15:15:10 +0000</pubDate>
		<dc:creator>David Harley</dc:creator>
				<category><![CDATA[comment spam]]></category>
		<category><![CDATA[David Harley]]></category>
		<category><![CDATA[ESET]]></category>
		<category><![CDATA[Letitia Teaspoon]]></category>
		<category><![CDATA[News International]]></category>
		<category><![CDATA[Rebekah Brooks]]></category>
		<category><![CDATA[Rupert Murdoch]]></category>

		<guid isPermaLink="false">http://chainmailcheck.wordpress.com/?p=802</guid>
		<description><![CDATA[Letitia Teaspoon, ESET's former Agony-Aunt-in-Residence, is now writing for Small Blue-Green World. <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=802&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Sadly, ESET&#8217;s former Agony-Aunt-in-Residence Ms Letitia Teaspoon has now left her employment at ESET. Well, there&#8217;s an awful lot of churn in the AV business these days.</p>
<p>The good news, however, is that she has deigned to contribute some words of wisdom to the Small Blue-Green World blogging empire, though any suggestion that she will play Rebekah Brooks to my Rupert Murdoch is merely malicious gossip.</p>
<p>Over to you, Letitia.</p>
<p>(1)</p>
<p><em>Dear Mumbai Escorts, thank you for your kind words about Mr. Harley&#8217;s post about SEO poisoning exploiting last year&#8217;s Japanese earthquake. However, if you regard that information as &#8220;gorgeous&#8221;, that poses some serious questions about the attractions of your escort service. </em></p>
<p>(2)</p>
<p><em>Dear Melida, thank you for your interesting observations on car insurance. We&#8217;re not sure how they fit into a discussion on DNS settings, though, and I&#8217;m afraid you probably can&#8217;t pay for car insurance with World of Warcraft gold. Still, these days, who knows?</em></p>
<p>(3)</p>
<p><em>Dear Shop On Line, we&#8217;re delighted to hear that you are subscribing to our augment and even you fulfillment our access consistently fast. But are you sure you should be smoking quite so much of whatever is in that roll-up?</em></p>
<p>(4)</p>
<p><em>Dear {Best Automatic Pool Cleaners|Best Pool Cleaners|Pool Cleaners|Pool Cleaners Reviews|Best Pool Cleaners Reviews|Best Automatic Pool Cleaners Reviews|Aquabot Turbo T4RC Robotic Pool Cleaner with Remote Control Review| Polaris Vac-Sweep 280 F5 <span style="text-decoration:underline;">Automatic Poo</span>, it was worth getting to the end of your &#8220;name&#8221; to see the frank confession at the end of what it is you&#8217;re actually peddling. </em></p>
<p>(5)</p>
<p><em>Dear public domain, yes we do have an email subscription link, cunningly disguised as an email subscription link inconspicuously placed at the top right of each blog post. If we find a comment spammer offering good deals on reading spectacles, we&#8217;ll be sure to put you in touch with each other.</em></p>
<p>(6)</p>
<p><em>Dear </em><em> atarax online without prescription, I agree, Haiti help resources was a big story. However, that was two years ago</em>.</p>
<p>(7)</p>
<p><em>On a related note, thank you bigwli moderator for adding me to your bigwli Yahoo! group. I&#8217;m a little worried, though, that I may not qualify on gender grounds. </em></p>
<p><em>Ah well, time for some tea.</em></p>
<p>Thank you, Letitia.</p>
<p>I hope the hormone treatment is going well. I&#8217;ll see you in the teashop later.</p>
<p><strong>David Harley CITP FBCS CISSP</strong><br />
<strong>Small Blue-Green World CEO</strong><br />
<strong>ESET Senior Research Fellow</strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/chainmailcheck.wordpress.com/802/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/chainmailcheck.wordpress.com/802/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/chainmailcheck.wordpress.com/802/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/chainmailcheck.wordpress.com/802/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/chainmailcheck.wordpress.com/802/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/chainmailcheck.wordpress.com/802/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/chainmailcheck.wordpress.com/802/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/chainmailcheck.wordpress.com/802/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/chainmailcheck.wordpress.com/802/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/chainmailcheck.wordpress.com/802/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/chainmailcheck.wordpress.com/802/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/chainmailcheck.wordpress.com/802/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/chainmailcheck.wordpress.com/802/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/chainmailcheck.wordpress.com/802/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=802&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://chainmailcheck.wordpress.com/2012/01/19/agony-column-for-comment-spammers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/87a00d996b23fce4539dbdd792cc5d13?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">dharley</media:title>
		</media:content>
	</item>
		<item>
		<title>Facebook Jawdrop</title>
		<link>http://chainmailcheck.wordpress.com/2011/12/06/facebook-jawdrop/</link>
		<comments>http://chainmailcheck.wordpress.com/2011/12/06/facebook-jawdrop/#comments</comments>
		<pubDate>Tue, 06 Dec 2011 13:36:22 +0000</pubDate>
		<dc:creator>David Harley</dc:creator>
				<category><![CDATA[David Harley]]></category>
		<category><![CDATA[ethics]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[Graham Cluley]]></category>
		<category><![CDATA[social media]]></category>
		<category><![CDATA[social networking]]></category>
		<category><![CDATA[Advertising]]></category>
		<category><![CDATA[Facebook friends]]></category>
		<category><![CDATA[Like Button]]></category>
		<category><![CDATA[Sponsored Stories]]></category>

		<guid isPermaLink="false">http://chainmailcheck.wordpress.com/?p=795</guid>
		<description><![CDATA[You&#8217;re probably aware that if you &#8220;like&#8221; a company or product page on Facebook, it&#8217;s possible that your name and photograph could appear in online ads for those products or companies. If you didn&#8217;t know, you might want to be careful about what you click the Like button on, as there&#8217;s no way of opting [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=795&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>You&#8217;re probably aware that if you &#8220;like&#8221; a company or product page on Facebook, it&#8217;s possible that your name and photograph could appear in online ads for those products or companies. If you didn&#8217;t know, you might want to be careful about what you click the Like button on, as there&#8217;s no way of opting out of what FB likes to call a Sponsored Story. If you wouldn&#8217;t want your friends to know too much about your taste in music or edible underwear, Facebook may not be your Friend&#8230;</p>
<p>If you want to see some of that potential embarrassment paid back, however, <a href="http://nakedsecurity.sophos.com/2011/12/06/video-awkward-facebook-vp-stumped-by-bbc-question/" target="_blank">Graham Cluley</a> has put up an edited version of an interview in which Facebook VP Elliot Shrage is put on the spot by the BBC&#8217;s Emily Maitlis.</p>
<p><strong>David Harley CITP FBCS CISSP</strong><br />
<strong>Small Blue-Green World/AVIEN</strong><br />
<strong>ESET Senior Research Fellow</strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/chainmailcheck.wordpress.com/795/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/chainmailcheck.wordpress.com/795/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/chainmailcheck.wordpress.com/795/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/chainmailcheck.wordpress.com/795/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/chainmailcheck.wordpress.com/795/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/chainmailcheck.wordpress.com/795/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/chainmailcheck.wordpress.com/795/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/chainmailcheck.wordpress.com/795/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/chainmailcheck.wordpress.com/795/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/chainmailcheck.wordpress.com/795/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/chainmailcheck.wordpress.com/795/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/chainmailcheck.wordpress.com/795/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/chainmailcheck.wordpress.com/795/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/chainmailcheck.wordpress.com/795/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=795&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://chainmailcheck.wordpress.com/2011/12/06/facebook-jawdrop/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/87a00d996b23fce4539dbdd792cc5d13?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">dharley</media:title>
		</media:content>
	</item>
		<item>
		<title>Facebook and Selective Memory</title>
		<link>http://chainmailcheck.wordpress.com/2011/12/06/facebook-and-selective-memory/</link>
		<comments>http://chainmailcheck.wordpress.com/2011/12/06/facebook-and-selective-memory/#comments</comments>
		<pubDate>Tue, 06 Dec 2011 06:45:36 +0000</pubDate>
		<dc:creator>David Harley</dc:creator>
				<category><![CDATA[David Harley]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[Randy Abrams]]></category>
		<category><![CDATA[Business Insider]]></category>
		<category><![CDATA[Mark Zuckerberg]]></category>
		<category><![CDATA[Terry Pratchett]]></category>

		<guid isPermaLink="false">http://chainmailcheck.wordpress.com/?p=791</guid>
		<description><![CDATA[I&#8217;ve been thinking that I ought to comment on Mark Zuckerberg&#8217;s blog on Facebook&#8217;s Commitment to the Facebook Community (and the perception of rather less commitment expressed by Nicholas Carlson over at Business Insider. However, it turns out that my long-time friend Randy Abrams has said pretty much everything I&#8217;d want to say, and more in [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=791&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve been thinking that I ought to comment on Mark Zuckerberg&#8217;s blog on Facebook&#8217;s <a href="https://blog.facebook.com/blog.php?post=10150378701937131" target="_blank">Commitment to the Facebook Community</a> (and the perception of rather less commitment expressed by Nicholas Carlson over at <a href="http://articles.businessinsider.com/2010-05-13/tech/30034517_1_instant-personalization-privacy-flap-privacy-policy" target="_blank">Business Insider</a>. However, it turns out that my long-time friend Randy Abrams has said pretty much everything I&#8217;d want to say, and more in his article  <a href="http://randy-abrams.blogspot.com/2011/12/mark-zuckerberg-ive-read-terry.html">Mark Zuckerberg, I’ve Read Terry Pratchett and You are no Terry Pratchett</a>.</p>
<p>Zuckerberg&#8217;s early observations on the stupidity of people who entrusted him with their data may have been meant entirely humorously, but they&#8217;ll haunt Facebook for a long time yet.</p>
<p>Good to see Randy blogging again at <a href="http://randy-abrams.blogspot.com/" target="_blank">Security Through Absurdity</a>: great name. :)</p>
<p>David Harley CITP FBCS CISSP<br />
Small Blue-Green World/AVIEN/Mac Virus</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/chainmailcheck.wordpress.com/791/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/chainmailcheck.wordpress.com/791/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/chainmailcheck.wordpress.com/791/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/chainmailcheck.wordpress.com/791/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/chainmailcheck.wordpress.com/791/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/chainmailcheck.wordpress.com/791/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/chainmailcheck.wordpress.com/791/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/chainmailcheck.wordpress.com/791/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/chainmailcheck.wordpress.com/791/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/chainmailcheck.wordpress.com/791/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/chainmailcheck.wordpress.com/791/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/chainmailcheck.wordpress.com/791/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/chainmailcheck.wordpress.com/791/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/chainmailcheck.wordpress.com/791/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=791&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://chainmailcheck.wordpress.com/2011/12/06/facebook-and-selective-memory/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/87a00d996b23fce4539dbdd792cc5d13?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">dharley</media:title>
		</media:content>
	</item>
		<item>
		<title>Muriel* in the Men&#8217;s Room?</title>
		<link>http://chainmailcheck.wordpress.com/2011/12/05/muriel-in-the-mens-room/</link>
		<comments>http://chainmailcheck.wordpress.com/2011/12/05/muriel-in-the-mens-room/#comments</comments>
		<pubDate>Mon, 05 Dec 2011 11:33:00 +0000</pubDate>
		<dc:creator>David Harley</dc:creator>
				<category><![CDATA[chain letter]]></category>
		<category><![CDATA[David Harley]]></category>
		<category><![CDATA[hoax]]></category>
		<category><![CDATA[semi-hoax]]></category>
		<category><![CDATA[Edge Design]]></category>
		<category><![CDATA[Hoax Slayer]]></category>
		<category><![CDATA[Men's Room Mural]]></category>
		<category><![CDATA[Perron Developments]]></category>
		<category><![CDATA[Snopes]]></category>

		<guid isPermaLink="false">http://chainmailcheck.wordpress.com/?p=781</guid>
		<description><![CDATA[Don&#8217;t panic. I haven&#8217;t been infected by some obscure blogworm. This is a hoax &#8211; well, semi-hoax &#8211; but not a particularly serious one for the world in general (except maybe for the companies whose work has been misattributed: I&#8217;ll come back to that in a minute). I received a message this morning containing a mildly [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=781&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Don&#8217;t panic. I haven&#8217;t been infected by some obscure blogworm.</p>
<p>This is a <a href="http://www.hoax-slayer.com/men-room-mural.shtml">hoax</a> &#8211; well, semi-hoax &#8211; but not a particularly serious one for the world in general (except maybe for the companies whose work has been misattributed: I&#8217;ll come back to that in a minute).</p>
<p>I received a message this morning containing a mildly amusing photograph of a mural put up behind six urinals in a men&#8217;s room. According to the message, it was designed by an all-female design team for an office in New York City. Here&#8217;s a description (from 2005) from <a href="http://www.hotelnewsresource.com/article19048.html/">Hotel Industry News</a> (what can I say, I just have very broad tastes in music and reading material!) of the &#8220;six-metre long backdrop of life-size photographs featuring local models in varying poses directly behind each of the six stands &#8211; each with a full view of the action. One has a tape measure out, one a pair of binoculars, another has a camera, a fourth is peering over her glasses and so the list goes on.&#8221; <a href="http://www.snopes.com/photos/arts/sofitel.asp" target="_blank">If you don&#8217;t find that type of humour offensive</a>, you can find a picture at either of the links above. However, both pieces also make it perfectly clear that the description in the message is an almost complete fabrication.</p>
<ul>
<li>The restroom is actually in a hotel in Queenstown, New Zealand.</li>
<li>The company behind it was Perron Developments in Auckland, not anyone called Edge Designs, as stated in the message.</li>
<li>However, according to the photographer, &#8220;We had a lot of fun with the shoot, made all the better for the fact that there weren&#8217;t any men there when we did it.&#8221; Maybe that&#8217;s what suggested the misattribution to an all-female agency?</li>
</ul>
<p>According to Hoax Slayer, the original message simply read, with perfect accuracy, &#8220;Check out the new men&#8217;s loo at the Sofitel in Queenstown NZ!&#8221; (Oddly enough, Snopes confirms the &#8220;real&#8221; message but not the semi-hoax.)</p>
<p>What do we learn from this?</p>
<ul>
<li>You can&#8217;t trust everything you read on the Internet. (Well, duh&#8230;)</li>
<li>Not all hoaxes are blatant chain letters. Lots of humorous stuff is passed on just because it&#8217;s humorous, not because the originator thought up some argument to persuade recipients to keep it going. And there&#8217;s nothing wrong with: if you don&#8217;t want your friends to forward amusing stuff to you, you can always ask them nicely not to. One friend of mine has a &#8220;jokes&#8221; list of friends to whom he sends humorous material, knowing that they&#8217;re people who are likely to find it amusing if not useful&#8230;</li>
<li>Many hoaxes have a kernel of fact among the fluff (I call these semi-hoaxes). Sometimes the content is changed to make a chain letter more dramatic and persuasive. It&#8217;s not obvious what the motivation was here, though Perron&#8217;s Peter Dallimore seems to assume in a comment <a href="http://polizeros.com/2006/03/29/mens-restroom-mural/" target="_blank">here</a> that it was a case of a company taking credit for someone else&#8217;s work. On the other hand, it might actually be intended to damage one of the real companies called Edge Design by making it look as if they&#8217;d been guilty of blatant plagiarism. Unfortunately, we can&#8217;t often trace the originator of a hoax or semi-hoax, so we may never find out.</li>
<li>Mostly, a semi-hoax, like other kinds of half-truth, is more persuasive than a downright lie. As many hoaxers and scammers know very well.</li>
</ul>
<p>Hat tip to Jude for passing on the message, which I hadn&#8217;t seen before. You&#8217;ll have to excuse me now, I need to take a comfort break.</p>
<p>*I&#8217;m sorry if the punning on the malapropism of Muriel for Mural is lost on anyone but Brits of a certain age. If the words &#8220;Hilda Ogden&#8221; and &#8220;Coronation Street&#8221; mean nothing to you and you want to know what I&#8217;m gibbering about, <a href="http://coronationstreet.wikia.com/wiki/Mural">this article</a> should clear it up. If you don&#8217;t care at all about, feel free to <a href="http://en.wikipedia.org/wiki/Can_the_Can">Can the Cans</a>&#8230;</p>
<p><strong>David Harley CITP FBCS CISSP<br />
Small Blue-Green World/AVIEN<br />
ESET Senior Research Fellow</strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/chainmailcheck.wordpress.com/781/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/chainmailcheck.wordpress.com/781/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/chainmailcheck.wordpress.com/781/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/chainmailcheck.wordpress.com/781/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/chainmailcheck.wordpress.com/781/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/chainmailcheck.wordpress.com/781/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/chainmailcheck.wordpress.com/781/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/chainmailcheck.wordpress.com/781/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/chainmailcheck.wordpress.com/781/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/chainmailcheck.wordpress.com/781/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/chainmailcheck.wordpress.com/781/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/chainmailcheck.wordpress.com/781/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/chainmailcheck.wordpress.com/781/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/chainmailcheck.wordpress.com/781/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=781&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://chainmailcheck.wordpress.com/2011/12/05/muriel-in-the-mens-room/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/87a00d996b23fce4539dbdd792cc5d13?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">dharley</media:title>
		</media:content>
	</item>
		<item>
		<title>Facebook hoax and search poisoning</title>
		<link>http://chainmailcheck.wordpress.com/2011/11/23/facebook-hoax-and-search-poisoning/</link>
		<comments>http://chainmailcheck.wordpress.com/2011/11/23/facebook-hoax-and-search-poisoning/#comments</comments>
		<pubDate>Wed, 23 Nov 2011 20:16:41 +0000</pubDate>
		<dc:creator>David Harley</dc:creator>
				<category><![CDATA[David Harley]]></category>
		<category><![CDATA[hoax]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Snopes]]></category>
		<category><![CDATA[social media]]></category>
		<category><![CDATA[Stephen Cobb]]></category>
		<category><![CDATA[Cybercrime Corner]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[fraud]]></category>
		<category><![CDATA[index poisoning]]></category>
		<category><![CDATA[Olympic Torch]]></category>
		<category><![CDATA[PIPA]]></category>
		<category><![CDATA[SC Magazine]]></category>
		<category><![CDATA[search poisoning]]></category>
		<category><![CDATA[SOPA]]></category>

		<guid isPermaLink="false">http://chainmailcheck.wordpress.com/?p=773</guid>
		<description><![CDATA[A couple of blogs have gone up on the ESET blog today that might be of interest to readers of this blog. My article on Facebook Invitation and the Olympic Torch describes at some length how the old but unkillable Olympic Torch hoax is not only being used (again) to waste everyone&#8217;s time, but with an [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=773&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>A couple of blogs have gone up on the ESET blog today that might be of interest to readers of this blog.</p>
<p>My article on <a href="http://blog.eset.com/2011/11/23/facebook-invitation-and-the-olympic-torch" target="_blank">Facebook Invitation and the Olympic Torch</a> describes at some length how the old but unkillable Olympic Torch hoax is not only being used (again) to waste everyone&#8217;s time, but with an added Facebook twist. As if the needless panic and useless mailstorm isn&#8217;t bad enough, this turns out to be another example of articles at snopes.com - an excellent information resource where many a hoax is documented &#8211; being misused to provide spurious &#8220;corroboration&#8221; of a hoax.</p>
<p>Meanwhile, Stephen Cobb&#8217;s article <a href="http://blog.eset.com/2011/11/23/breaking-dawn-taylor-swift-image-search-poisoning-survey-scams-on-the-rise" target="_blank">Breaking Dawn, Taylor Swift, Image Search: Poisoning, survey scams on the rise</a> looks at developments in search poisoning of trending topics, with particular reference to misdirection to adult sites and survey scams.</p>
<p>We&#8217;ve also contributed articles to SC Magazine&#8217;s Cybercrime Corner: <a title="Privacy, identity, and the Nym of the Rose" href="http://www.scmagazineus.com/privacy-identity-and-the-nym-of-the-rose/article/217334/">Privacy, identity, and the Nym of the Rose</a> is about the conflict between privacy and the Department of Justice espousal of vested interests in social media. In <a title="A wild week in cybercrime" href="http://www.scmagazineus.com/a-wild-week-in-cybercrime/article/217339/">A wild week in cybercrime</a> Stephen looks at some developments in cybercrime-related legislation that also includes espousal of vested interests, notably with reference to SOPA and PIPA, an issue I also addressed for (ISC)2&#8242;s blog in <a href="http://blog.isc2.org/isc2_blog/2011/11/dnssec-sopa-and-pipa.html" target="_blank">DNSSEC, SOPA, and PIPA</a>.</p>
<p><strong>David Harley CITP FBCS CISSP</strong><br />
<strong>Small Blue-Green World/AVIEN</strong><br />
<strong>ESET Senior Research Fellow</strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/chainmailcheck.wordpress.com/773/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/chainmailcheck.wordpress.com/773/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/chainmailcheck.wordpress.com/773/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/chainmailcheck.wordpress.com/773/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/chainmailcheck.wordpress.com/773/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/chainmailcheck.wordpress.com/773/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/chainmailcheck.wordpress.com/773/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/chainmailcheck.wordpress.com/773/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/chainmailcheck.wordpress.com/773/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/chainmailcheck.wordpress.com/773/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/chainmailcheck.wordpress.com/773/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/chainmailcheck.wordpress.com/773/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/chainmailcheck.wordpress.com/773/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/chainmailcheck.wordpress.com/773/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=773&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://chainmailcheck.wordpress.com/2011/11/23/facebook-hoax-and-search-poisoning/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/87a00d996b23fce4539dbdd792cc5d13?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">dharley</media:title>
		</media:content>
	</item>
		<item>
		<title>Safe online shopping</title>
		<link>http://chainmailcheck.wordpress.com/2011/11/21/safe-online-shopping/</link>
		<comments>http://chainmailcheck.wordpress.com/2011/11/21/safe-online-shopping/#comments</comments>
		<pubDate>Mon, 21 Nov 2011 22:18:29 +0000</pubDate>
		<dc:creator>David Harley</dc:creator>
				<category><![CDATA[David Harley]]></category>
		<category><![CDATA[online shopping]]></category>
		<category><![CDATA[Stephen Cobb]]></category>
		<category><![CDATA[Cyber Monday]]></category>

		<guid isPermaLink="false">http://chainmailcheck.wordpress.com/?p=769</guid>
		<description><![CDATA[A blog by Stephen Cobb, my colleague at ESET: Cyber Monday Safety: 10 tips for safer holiday shopping online. Good advice worth keeping long after Cyber Monday. David Harley CITP FBCS CISSP Small Blue-Green World/AVIEN ESET Senior Research Fellow<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=769&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>A blog by Stephen Cobb, my colleague at ESET: <a href="http://blog.eset.com/2011/11/18/cyber-monday-safety-10-tips-for-safer-holiday-shopping-online">Cyber Monday Safety: 10 tips for safer holiday shopping online</a>.</p>
<p>Good advice worth keeping long after Cyber Monday.</p>
<p><strong>David Harley CITP FBCS CISSP</strong><br />
<strong>Small Blue-Green World/AVIEN</strong><br />
<strong>ESET Senior Research Fellow</strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/chainmailcheck.wordpress.com/769/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/chainmailcheck.wordpress.com/769/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/chainmailcheck.wordpress.com/769/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/chainmailcheck.wordpress.com/769/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/chainmailcheck.wordpress.com/769/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/chainmailcheck.wordpress.com/769/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/chainmailcheck.wordpress.com/769/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/chainmailcheck.wordpress.com/769/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/chainmailcheck.wordpress.com/769/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/chainmailcheck.wordpress.com/769/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/chainmailcheck.wordpress.com/769/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/chainmailcheck.wordpress.com/769/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/chainmailcheck.wordpress.com/769/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/chainmailcheck.wordpress.com/769/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=769&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://chainmailcheck.wordpress.com/2011/11/21/safe-online-shopping/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/87a00d996b23fce4539dbdd792cc5d13?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">dharley</media:title>
		</media:content>
	</item>
		<item>
		<title>Facebook, what&#8217;s a &#8220;self-XSS vulnerability&#8221;?</title>
		<link>http://chainmailcheck.wordpress.com/2011/11/17/facebook-whats-a-self-xss-vulnerability/</link>
		<comments>http://chainmailcheck.wordpress.com/2011/11/17/facebook-whats-a-self-xss-vulnerability/#comments</comments>
		<pubDate>Thu, 17 Nov 2011 21:46:17 +0000</pubDate>
		<dc:creator>David Harley</dc:creator>
				<category><![CDATA[David Harley]]></category>
		<category><![CDATA[ESET]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[social media]]></category>
		<category><![CDATA[Aryeh Goretsky]]></category>
		<category><![CDATA[javascript]]></category>
		<category><![CDATA[XSS]]></category>

		<guid isPermaLink="false">http://chainmailcheck.wordpress.com/?p=760</guid>
		<description><![CDATA[My friend and colleague at ESET, Aryeh Goretsky, has followed up on his earlier post Much Ado About Facebook, on Facebook, the Fawkes virus, and the recent epidemic of offensive material, with a Part II post in which he reminded me of an interesting point. (Actually, several interesting points, but this one struck a particular chord with [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=760&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>My friend and colleague at ESET, Aryeh Goretsky, has followed up on his earlier post <a href="http://blog.eset.com/2011/11/15/much-ado-about-facebook">Much Ado About Facebook</a>, on Facebook, the Fawkes virus, and the recent epidemic of offensive material, with a<a href="http://blog.eset.com/2011/11/17/much-ado-about-facebook-part-ii" target="_blank"> Part II post</a> in which he <a href="http://blog.eset.com/2011/11/2011/11/16/facebook-responds-sort-of" target="_blank">reminded</a> me of an interesting point. (Actually, several interesting points, but this one struck a particular chord with me.)</p>
<p>Facebook have described the root cause of the problem as:</p>
<p style="padding-left:30px;"> a “self-XSS vulnerability” caused by their users pasting malicious JavaScript into their web browsers’ address bars. </p>
<p>I&#8217;m not convinced that Facebook&#8217;s rather sparse information to date is the whole of the story. But there is an indication of how that <a href="http://chainmailcheck.wordpress.com/2011/04/11/more-facebook-scams/" target="_blank">might have been accomplished</a> on a Sophos blog <a href="http://nakedsecurity.sophos.com/2011/04/11/facebook-scam-social-tagging-worldwide/" target="_blank">here</a>. </p>
<p>Which is slightly ironic, given <a href="http://chainmailcheck.wordpress.com/2011/01/18/trust-me-im-facebook/" target="_blank">Facebook’s attempts</a> to counter Sophos criticism of FB&#8217;s inconsistent performance at dealing with Facebook-specific threats. </p>
<p>And we&#8217;re still waiting to see Facebook talk directly to its users about all this, if only through the <a href="http://www.facebook.com/security" target="_blank">Facebook Security page</a>&#8230;</p>
<p><strong>David Harley CITP FBCS CISSP</strong><br />
<strong>Small Blue-Green World/AVIEN</strong><br />
<strong>ESET Senior Research Fellow</strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/chainmailcheck.wordpress.com/760/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/chainmailcheck.wordpress.com/760/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/chainmailcheck.wordpress.com/760/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/chainmailcheck.wordpress.com/760/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/chainmailcheck.wordpress.com/760/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/chainmailcheck.wordpress.com/760/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/chainmailcheck.wordpress.com/760/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/chainmailcheck.wordpress.com/760/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/chainmailcheck.wordpress.com/760/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/chainmailcheck.wordpress.com/760/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/chainmailcheck.wordpress.com/760/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/chainmailcheck.wordpress.com/760/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/chainmailcheck.wordpress.com/760/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/chainmailcheck.wordpress.com/760/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=760&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://chainmailcheck.wordpress.com/2011/11/17/facebook-whats-a-self-xss-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/87a00d996b23fce4539dbdd792cc5d13?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">dharley</media:title>
		</media:content>
	</item>
		<item>
		<title>Fawkes Virus Still Smouldering?</title>
		<link>http://chainmailcheck.wordpress.com/2011/11/15/fawkes-virus-still-smouldering/</link>
		<comments>http://chainmailcheck.wordpress.com/2011/11/15/fawkes-virus-still-smouldering/#comments</comments>
		<pubDate>Tue, 15 Nov 2011 21:41:58 +0000</pubDate>
		<dc:creator>David Harley</dc:creator>
				<category><![CDATA[David Harley]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[Fawkes virus]]></category>
		<category><![CDATA[SC Magazine]]></category>

		<guid isPermaLink="false">http://chainmailcheck.wordpress.com/?p=754</guid>
		<description><![CDATA[If you found my earlier blog Facebook and the Fawkes Virus: smoke or fire? at all interesting, you might find this follow-up of interest, too: Facebook: Is the Fawkes virus still smoldering? It refers to Sophos&#8217; blog on the tsunami of obscene content currently afflicting Facebook users, and the link suggested by the Register with the alleged Fawkes virus, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=754&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>If you found my earlier blog <a href="http://chainmailcheck.wordpress.com/2011/11/13/facebook-and-the-fawkes-virus-smoke-or-fire/" rel="bookmark">Facebook and the Fawkes Virus: smoke or fire?</a> at all interesting, you might find this follow-up of interest, too: <a title="Facebook Is the Fawkes virus still smoldering" href="http://www.scmagazineus.com/facebook-is-the-fawkes-virus-still-smoldering/article/216840/">Facebook: Is the Fawkes virus still smoldering?</a> It refers to Sophos&#8217; blog on the tsunami of obscene content currently afflicting Facebook users, and the link suggested by the Register with the alleged Fawkes virus, allegedly written by Anonymous&#8230;</p>
<p>David Harley CITP FBCS CISSP<br />
Small Blue-Green World/AVIEN<br />
ESET Senior Research Fellow</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/chainmailcheck.wordpress.com/754/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/chainmailcheck.wordpress.com/754/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/chainmailcheck.wordpress.com/754/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/chainmailcheck.wordpress.com/754/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/chainmailcheck.wordpress.com/754/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/chainmailcheck.wordpress.com/754/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/chainmailcheck.wordpress.com/754/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/chainmailcheck.wordpress.com/754/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/chainmailcheck.wordpress.com/754/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/chainmailcheck.wordpress.com/754/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/chainmailcheck.wordpress.com/754/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/chainmailcheck.wordpress.com/754/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/chainmailcheck.wordpress.com/754/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/chainmailcheck.wordpress.com/754/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=754&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://chainmailcheck.wordpress.com/2011/11/15/fawkes-virus-still-smouldering/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/87a00d996b23fce4539dbdd792cc5d13?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">dharley</media:title>
		</media:content>
	</item>
		<item>
		<title>Facebook and chain messages</title>
		<link>http://chainmailcheck.wordpress.com/2011/11/14/facebook-and-chain-messages/</link>
		<comments>http://chainmailcheck.wordpress.com/2011/11/14/facebook-and-chain-messages/#comments</comments>
		<pubDate>Mon, 14 Nov 2011 17:30:10 +0000</pubDate>
		<dc:creator>David Harley</dc:creator>
				<category><![CDATA[chain letter]]></category>
		<category><![CDATA[David Harley]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[Graham Cluley]]></category>
		<category><![CDATA[Sympathy hoaxes]]></category>

		<guid isPermaLink="false">http://chainmailcheck.wordpress.com/?p=750</guid>
		<description><![CDATA[200,000 people can&#8217;t be wrong? Actually, they can, if they believe this message: A 14 years old boy got beaten half dead by his stepfather.He only tried to protect his little sister from being raped.Now he's struggling for his life,but doctors say he won't make it without a surgery.His mother doesn't have money to pay [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=750&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>200,000 people can&#8217;t be wrong? Actually, they can, if they believe <a href="http://nakedsecurity.sophos.com/2011/11/14/hoax-facebook-donates-45-cents-per-share-for-beaten-boys-surgery/" target="_blank">this message</a>:</p>
<p style="padding-left:30px;"><tt>A 14 years old boy got beaten half dead by his stepfather.He only tried to protect his little sister from being raped.Now he's struggling for his life,but doctors say he won't make it without a surgery.His mother doesn't have money to pay it.Facebook donates 45cents for every sharing or reposting.Please help</tt></p>
<p> It makes no sense that Facebook would offer to pay for surgery conditional on shares and reposts. This is a variation on a classic ploy for getting people to pass on a useless and deceptive message by persuading them that they can achieve a warm fuzzy feeling of having done something charitable by doing something that costs them no money and virtually no effort (rather like the story <a href="http://blog.eset.com/2011/10/31/facebook-sympathy-hoax-no-surprises" target="_blank">I blogged about here</a>). Well, I guess that might be the case sometimes: remember that <a href="http://chainmailcheck.wordpress.com/2011/03/12/faith-hope-charity-and-manipulation/" target="_blank">gauche ploy by Bing</a>, offering to give a dollar to Japanese disaster relief each time a URL was retweeted?</p>
<p>Hat tip to Graham Cluley for <a href="http://nakedsecurity.sophos.com/2011/11/14/hoax-facebook-donates-45-cents-per-share-for-beaten-boys-surgery/" target="_blank">flagging</a> this chainletter.</p>
<p><strong>David Harley CITP FBCS CISSP</strong><br />
<strong>Small Blue-Green World/AVIEN</strong><br />
<strong>ESET Senior Research Fellow</strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/chainmailcheck.wordpress.com/750/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/chainmailcheck.wordpress.com/750/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/chainmailcheck.wordpress.com/750/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/chainmailcheck.wordpress.com/750/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/chainmailcheck.wordpress.com/750/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/chainmailcheck.wordpress.com/750/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/chainmailcheck.wordpress.com/750/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/chainmailcheck.wordpress.com/750/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/chainmailcheck.wordpress.com/750/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/chainmailcheck.wordpress.com/750/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/chainmailcheck.wordpress.com/750/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/chainmailcheck.wordpress.com/750/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/chainmailcheck.wordpress.com/750/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/chainmailcheck.wordpress.com/750/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=chainmailcheck.wordpress.com&amp;blog=12104458&amp;post=750&amp;subd=chainmailcheck&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://chainmailcheck.wordpress.com/2011/11/14/facebook-and-chain-messages/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/87a00d996b23fce4539dbdd792cc5d13?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">dharley</media:title>
		</media:content>
	</item>
	</channel>
</rss>
