[2958] in WWW Security List Archive
Re: Can you say "fraud"? (fwd)
daemon@ATHENA.MIT.EDU (Steven Bellovin)
Tue Sep 17 15:14:52 1996
To: Mary Irene Wise <auntyem@umich.edu>
cc: www-security@ns2.rutgers.edu
Date: Tue, 17 Sep 1996 12:52:13 -0400
From: Steven Bellovin <smb@research.att.com>
Errors-To: owner-www-security@ns2.rutgers.edu
This is probably a bit off-topic; if so I apologize.
Can anybody comment on the item forwarded below my sig file? It claims
there's a database w/ people's credit card no's etc on it and you have
to
give your name and social security number to get off of it. This stri
kes
me as being a scam to get your ssn, but this went around at work and
people are actually calling and giving it out. I know ssn's aren't re
ally
as secure as they're supposed to be, but still...
So, does anybody know if this database is for real or if it's just a s
cam?
It's very real. See the last few issues of RISKS Digest (archives
are at ftp://ftp.sri.com/risks for more details.