|
|
On Saturday, my McAfee Labs colleague Craig Schmugar wrote about phishing sites and email scams related to the recent earthquake in Haiti. The people behind these frauds deserve to be caught by the law. I have a story that demonstrates that when several researchers join forces the bad guys run the risk of being punished.
On Sunday, among the hundreds of emails I received about Operation Aurora, I had one from Nick FitzGerald, a well-known anti-malware researcher. He asked for my opinion about a possible charity scam with a French origin.

Nick asked me to verify the details: an easy thing for a French speaker. After I tried calling the mobile phone number and got an answering machine, I contacted the town hall where the requester claimed to have his company. The official in charge did not know this company nor any local initiative in favor of the Haitian people.
Two Internet searches allowed me to identify a possible sender. First of all, I used the phone number and discovered–in the same administrative division–an individual selling a Mercedes.

As I suspected another rip-off (you pay an advance fee and you never see your car), I used the company name and discovered a professional diary with the name of the managing director: the same name as the car seller.

Finally, and just as I prepared my response to Nick, I received a call from some friends working at the French banking industry’s Computer Emergency Response Team. They had made the same discoveries, and they were also able to direct me to some court rulings related to this person. He was sentenced in 2009 after he used false insurance certificates and false bank guarantees.
Yesterday, I forwarded all these data to the authorities and hope that they will take appropriate steps. I cannot claim that this individual is once again breaking the law; in France we do enjoy the presumption of innocence. However, this story should prompt you to be vigilant and to not fall for email charity scams.
Last week the U.S. FBI released a warning on this subject. Yesterday, they renewed the message with the following guidelines:
I strongly agree with this advice!
|
|
Submit your own comments / message for this post