main
Report a problem

E-Mail Scam Dupes Linux Users

malebolgia   on 25 October 2004 - 19:07 · 23 comments & 1053 views

Advertisement (Why?)
Red Hat Inc. on Saturday warned users of an e-mail scam designed to plant malicious code on users' systems. The malicious e-mail poses as a security update from the vendor, a technique that has become familiar to Windows users, but is a novelty in the Linux world.

The e-mail, which has been circulating since late last week, says it originates from the "Red Hat Security Team" and urges users to download a patch fixing vulnerabilities in the ls and mkdir file system utilities. To add a veneer of authenticity, the scammers used an authentic-seeming domain name, fedora-redhat.com, to host the malicious download. "The Red Hat Security Team strongly advises you to immediately apply the fileutils-1.0.6 patch. This is a critical-critical update," the message says. The e-mail message and the site contained instructions for downloading, decompressing and installing the false update.

News source: eWeek

Post a comment · Send to friend Comments · There are 23 additional comments

Commenting has either been disabled on this article or you are not logged in. Click here to login or register, its free!

Note: Anonymous commenting is disabled in order to keep the quality of responses to a high standard.

Advertisement (Why?)