ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Hackers masquerade as Best Buy to steal credit-card details

Published: 20 Jun 2003 09:01 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Best Buy moved on Thursday to limit damage from an email scam that sent potential victims to a look-alike Web site in an attempt to persuade them to give up their credit-card information.

The Minneapolis-based electronics and consumer-goods chain consulted with both the Federal Trade Commission's identity-theft group and federal and state law enforcement to try and track down those responsible for an email message that apparently started circulating on Wednesday.

"The clear message we are trying to send is it is not from Best Buy," company spokeswoman Lisa Hawks said.

The email tells a recipient that an order made on BestBuy.com used the person's credit-card information, and it asks the recipient to follow a link to the company's page for its fraud department. The link actually goes to a different Web site, which masquerades as Best Buy's site and requests personal information.

Instances of the scam email, sent to CNET News.com by readers, show that different Web sites are being used to host the ploy. Two different links were found, indicating that a single perpetrator is trying to stay ahead of the Internet service providers or that a copycat has started using the message. Both sites had been taken down by their hosting providers as of Thursday morning.

The BestBuy.com disguise is new, but the scam is old. Email messages that refer recipients to Web sites that masquerade as legitimate e-commerce sites have targeted customers of PayPal, eBay, Wells Fargo Bank and others.

Employees of law firm Gray Cary have wised up to such scams, said Don Jaycox, chief technology officer for the firm. Despite dozens of employees receiving the bogus Best Buy email, none reported falling for it.

"We have trained all our people to be distrustful of things they get in email," Jaycox said. "Our advantage is that they listen to the warnings."

Best Buy's Hawks said that the company hadn't yet heard of anyone falling for the scam, but warned that Best Buy has its work cut out for it in notifying potential victims.

"It's not just Best Buy customers, necessarily, it is Joe Consumer," Hawks said. "That's why we are being proactive about getting the word out."


For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Security News Section.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
58 out of 136 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:






Related Jobs

Software Development Manager(.Net/Web) - Household name -London(65K+)

Proven experience building and supporting consumer-facing web sites. Software Development Manager(.Net/Web) My Sports and Media client are a ...

Credit Risk IT - Business Analyst - Tier 1 Banking **

Huxley Associates are currently looking for several junior, intermediate, and senior Risk Business Analysts to join a Tier 1 Banking client to work ...

Scrum QA / Senior Test Analyst - Leading Financial institution

The company specialises in credit ratings, indices, risk evaluation, investment research and data on stocks & bonds. Huxley Associates are currently ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

The Google Apple Merger: Fantasy or Fu...

The Google Apple Merger: Fantasy or Future? Author: Eric Everson, Founder MyMobiSafe.com Market research suggests that Microsoft controls upwards of 90% of the respective computer-based... More

2 comments