Beware Phony E-Mails From Cute Blonde With Pigtails - InformationWeek
12:26 PM

Beware Phony E-Mails From Cute Blonde With Pigtails

Cybertricksters are luring unsuspecting users to click on a link to a malicious Web site by posing as a cute, long-lost friend from school.

Think you recognize that cute blonde with pigtails from high school?

Forget about it. She's just part of a new malware e-mail hoax, according to security company Sophos.

Researchers at Sophos are warning users about a new spam campaign by an attacker posing as a long-lost school friend. The e-mail tries to dupe users into clicking on a link to the phony girl's Web page, but the link actually leads to a Trojan horse designed to break into online accounts and commit identity theft.

"The lonely, the horny, or the just plain curious might be tempted to click on the link, but if they do, they risk falling straight into a trap set by hackers," said Graham Cluley, senior technology consultant for Sophos, in a written warning. "It's a pretty sad state of affairs that cyber criminals need little more than a picture of a blonde woman with pigtails to steal passwords from unwary Internet users. Everyone needs to learn to take more care over unsolicited e-mails, and ensure that they are properly defended when they open their e-mail inbox or surf the Web."

Researchers noted that the e-mails, which have been spammed out across the Internet, are set up to appear to be from a young blonde woman with pigtails. The woman, named Ann Berns, claims she went to high school with the e-mail recipient. The author even refers to fond memories of after-school walks and classroom conversations in an attempt to encourage the recipient into investigating further and clicking on the link.

Part of one e-mail reads: "Hi! I'm not sure if you remember me. I'm Ann Berns, I guess we went to high school together. It was quite a while ago but I still remember our friendship. Do you remember that walk after classes? It was really cool! I still think about you sometimes, all that fun, all whispering chats during classes. Do you want to see what I look like now? Visit my home page then"

Earlier this week, Sophos warned that cybertricksters are luring curious users to open a malicious attachment by promising nude photos of celebrity beauties. Instead of pictures, they get a Trojan downloader.

Comment  | 
Print  | 
More Insights
Newest First  |  Oldest First  |  Threaded View
How Enterprises Are Attacking the IT Security Enterprise
How Enterprises Are Attacking the IT Security Enterprise
To learn more about what organizations are doing to tackle attacks and threats we surveyed a group of 300 IT and infosec professionals to find out what their biggest IT security challenges are and what they're doing to defend against today's threats. Download the report to see what they're saying.
Register for InformationWeek Newsletters
White Papers
Current Issue
2017 State of the Cloud Report
As the use of public cloud becomes a given, IT leaders must navigate the transition and advocate for management tools or architectures that allow them to realize the benefits they seek. Download this report to explore the issues and how to best leverage the cloud moving forward.
Twitter Feed
InformationWeek Radio
Archived InformationWeek Radio
Join us for a roundup of the top stories on for the week of November 6, 2016. We'll be talking with the editors and correspondents who brought you the top stories of the week to get the "story behind the story."
Sponsored Live Streaming Video
Everything You've Been Told About Mobility Is Wrong
Attend this video symposium with Sean Wisdom, Global Director of Mobility Solutions, and learn about how you can harness powerful new products to mobilize your business potential.
Flash Poll