Reto Meier wanted to hack me?
A prominent example for account stealing and using it for social engineering…
I was really wondering when I received a PM via Twitter by Reto Meier (g+, twitter). I’m a follower of him, fine. But he doesn’t even follow me and the content was kind of mysterious:
Time to start a VM and have a closer look:
Okay, looks like the login screen of “twitter.com”. In the address line is something said about “session_timed_out”. But wait! What a weird domain name “itwiitter.com”. And didn’t I enabled the https for twitter? It’s missing as well. It’s obviously a fake site which tries to steal your twitter login. When I entered something to login. I just saw an error page.
Later the day I read a tweet by Reto Meier:
I thought this prominent victim might be a good example/warning for you folks. Stay distrustful
Cheers, mavi




Hi everybody, This blog is great quality and so is the blogging from mavi. I like a lot of the comments also nevertheless I would prefer we stay with the topic so that to add importance to the message. It will probably be moreover encouraging for the writer if we all might share it (for quite a few of us who use social networking like digg, bebo,..). Many thanks.