LinkedIn users being targeted by fake photo email

Researchers at security firm Sophos are warning LinkedIn users about a click-the-pic phishing scam delivering the BlackHole exploit kit. Graham Cluley, senior technology consultant at Sophos, said in a blog post Friday that users were redirected to a Russian website hosting the BlackHole exploit kit if they clicked “photos” that were attached in spurious emails. Victims are being targeted by emails that appear to come from a LinkedIn account for member services. The BlackHole toolkit infects computers by exploiting existing vulnerabilities.

Sign up to our newsletters

More in News

Three LulzSec members plead guilty in London

Ryan Ackroyd, 26; Jake Davis, 20; and Mustafa al-Bassam, 18, who was not named until now because of his age, all admitted their involvement in the hacktivist gang's attack spree.

WordPress tightens security with two-factor authentication

The new feature is immediately available for users and "secret" codes can be accessed via SMS or through the Google Authenticator app.

Microsoft fixes three "critical" flaws with Patch Tuesday release

The biggies are two vulnerabilities in Internet Explorer and a single weakness in Remote Desktop Connection.