Club Cobra

Club Cobra (http://www.clubcobra.com/forums/)
-   Australian Cobra Club (http://www.clubcobra.com/forums/australian-cobra-club/)
-   -   Be very careful with Tracking parcels online from Auspost (http://www.clubcobra.com/forums/australian-cobra-club/134053-very-careful-tracking-parcels-online-auspost.html)

gjkrv8 07-13-2015 09:19 PM

Be very careful with Tracking parcels online from Auspost
 
Hi Guys,

Excuse the long post.

Knowing you guys get little Cobra parcels like me I thought I’d give you a heads up.

Essentially when you get an ePost parcel delivered you can track it via their Auspost website.

All good so far.

There is an option to enable them to send you emails to alert you of the various stages of delivery etc.

Once I enabled this coincidentally within an hour I received an official looking Auspost email from “afp@delivery.com/xxxxx” saying “Nobody was home – click on the label link below to printout your label and take it to the post office and get your parcel etc”

My guard was up as I was getting the parcel delivered to my office and someone is always home there.

When I hovered over the graphic link for the label printout it was some xxxx.kz or xxxx.ru link (Russia or Kazakhstan)

My National IT Security Manager sits right next to me and I got him over to have a look and he said “don’t click on that, you have been the subject of a “targeted spear phishing attack””. (Google it :-) )

He said this is pretty sophisticated as it means someone is tracking people registering for Auspost parcel tracking emails and then sending the bogus email to attack their machines – he said if I had of clicked on the link it would have locked my machine where they ask for ransom money to unlock etc.

There is an alert (auscert) out about the bogus emails – but not about them somehow figuring out you are expecting a parcel (this is the sophisticated bit).

Moral of the story – be very careful of stuff looking like it comes from Auspost – and try and hover over the links and if they are not auspost.com etc then delete immediately.

If unsure delete immediately.


Cheers

Gregg

sambo 07-13-2015 09:45 PM

Thanks for the heads up Gregg, I use the AusPost email service quite often. I would report this to AusPost because they have an obligation to protect your privacy and it's very simple for them to do so (install SSL).

The AusPost tracking page (below) is not using HTTPS (secure HTTP), meaning scammers can eavesdrop on traffic between your web browser and the AusPost website. When you enter your email address and click "Subscribe", your email address is sent to the AusPost website and it is not encrypted. Anyone scanning the network will be able to read that information if they know what they're doing.

Track your item - Australia Post

General rule - if you don't see a padlock icon next to the URL or down the bottom of the page, any data you send to the website is open for attack.

If you're on a desktop you can always right-click inside the browser and select "view page info". Google Chrome will tell you "your connection to this site is not private".

gjkrv8 07-13-2015 10:07 PM

Hi Paul, Yes our IT Security Manager is reporting it to Auspost and Auscert etc.

Pretty crazy how they don't use HTTPs/SSL encryption etc

cheers Gregg

Krait 07-14-2015 12:03 AM

Thanks Gregg,

Was just reading your post to my wife, she said she got such an email this morning. Fortunately our antivirus flagged it and she deleted it immediately.

Cheers

Geoff

750hp 07-14-2015 08:03 AM

Virus emails have gone nuts lately. The company I work for has received more than 80,000 emails supposedly from Aust Post, ATO and Westpac just in the last week. Crazy!

gjkrv8 07-14-2015 04:12 PM

You're right Craig, Chatting to my peer who consults on IT Security yesterday, he said its got to the point where "bad guys" can subscribe to a "online Service" that does it for them. Scary stuff.

Theres two places I always use when I am a bit suss:

Hoax-slayer - website for low level hoax emails etc
auscert.org.au - a bit techy though

Be careful out there.

Its much safer working and driving our Cobra's :-)

Cheers Gregg


All times are GMT -7. The time now is 10:52 AM.

Powered by vBulletin® Version 3.8.0
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.6.0
The representations expressed are the representations and opinions of the clubcobra.com forum members and do not necessarily reflect the opinions and viewpoints of the site owners, moderators, Shelby American, any other replica manufacturer, Ford Motor Company. This website has been planned and developed by clubcobra.com and its forum members and should not be construed as being endorsed by Ford Motor Company, or Shelby American or any other manufacturer unless expressly noted by that entity. "Cobra" and the Cobra logo are registered trademarks for Ford Motor Co., Inc. clubcobra.com forum members agree not to post any copyrighted material unless the copyrighted material is owned by you. Although we do not and cannot review the messages posted and are not responsible for the content of any of these messages, we reserve the right to delete any message for any reason whatsoever. You remain solely responsible for the content of your messages, and you agree to indemnify and hold us harmless with respect to any claim based upon transmission of your message(s). Thank you for visiting clubcobra.com. For full policy documentation refer to the following link: