<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">
<channel>
<title>Proofpoint: Email Security Blog</title>
<link>http://blog.proofpoint.com/</link>
<description>News and views from the world of email security, email archiving, encryption and data loss prevention.</description>
<language>en-US</language>
<lastBuildDate>Mon, 08 Feb 2010 10:01:00 -0800</lastBuildDate>
<generator>http://www.typepad.com/</generator>

<docs>http://www.rssboard.org/rss-specification</docs>
<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/ProofpointEmailSecurityBlog" /><feedburner:info uri="proofpointemailsecurityblog" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><item>
<title>HIPAA Compliance and Email Encryption: Crystal Run Healthcare's use of Proofpoint</title>
<link>http://feedproxy.google.com/~r/ProofpointEmailSecurityBlog/~3/zGnYMHiZLhs/hipaa-compliance-and-email-encryption-crystal-run-healthcares-use-of-proofpoint.html</link>
<guid isPermaLink="false">http://blog.proofpoint.com/2010/02/hipaa-compliance-and-email-encryption-crystal-run-healthcares-use-of-proofpoint.html</guid>
<description>The publishers of the always-informative online publication Bank Info Security are now tackling the healthcare industry with a new site called Healthcare Info Security. This site should be a great resource for HIPAA and HITECH compliance information and other technology...</description>
<content:encoded><![CDATA[<p><a href="http://bit.ly/bZucud" onclick="window.open(this.href,&#39;_blank&#39;,&#39;scrollbars=no,resizable=yes,toolbar=no,directories=no,location=no,menubar=no,status=no,left=0,top=0&#39;); return false" style="FLOAT: left"><img alt="HIPAA-Email-Security-Wisdom" border="0" class="asset asset-image at-xid-6a010535f33a5b970c01287778286e970c " src="http://blog.fortiva.com/.a/6a010535f33a5b970c01287778286e970c-800wi" style="BORDER-BOTTOM: black 1px solid; BORDER-LEFT: black 1px solid; MARGIN: 0px 5px 5px 0px; BORDER-TOP: black 1px solid; BORDER-RIGHT: black 1px solid" title="HIPAA-Email-Security-Wisdom" /></a>The publishers of the always-informative online publication Bank Info Security are now tackling the healthcare industry with a new site called <a href="http://www.healthcareinfosecurity.com" target="_blank" title="Healthcare Info Security site">Healthcare Info Security</a>. This site should be a great resource for HIPAA and HITECH compliance information and other technology issues that face the healthcare industry.</p>
<p>In one of the first articles posted to the site, Proofpoint customer Crystal Run Healthcare discusses how they solved their secure email issues and protect private health information (PHI) in email.</p>
<p>In &quot;<a href="http://www.healthcareinfosecurity.com" target="_blank" title="Case study on Crystal Run Healthcare, HIPAA and email encryption at Healthcare Info Security">Secure E-mail Cures Headaches</a>,&quot; IT director Miguel Hernandez discusses how email encryption is used to secure communication between doctors and patients, share private information with business partners including accountants and lawyers and help with ensuring HIPAA compliance.</p>
<p>&quot;Considering the cost of secure email, as opposed to the cost of litigation over a HIPAA violation,&quot; says Hernandez, &quot;It&#39;s certainly worth it.&quot;</p>
<p>The article is a good view into the real world issues that all types of healthcare organizations are facing vis-a-vis securing email. Several other Proofpoint resources related to email encryption, HIPAA compliance and the healthcare industry include the following whitepapers:</p>
<p>Whitepaper: <a href="http://www.proofpoint.com/id/HIPAA-email-whitepaper-2009/index.php" target="_blank" title="HIPPA and Beyond: An Update on Healthcare Security Regulations for Email">HIPPA and Beyond: An Update on Healthcare Security Regulations for Email</a></p>
<p>Whitepaper: <a href="http://www.proofpoint.com/id/email-encryption-wp/index.php" target="_blank" title="Email Encryption Whitepaper: Protecting Enterprise Data with Proofpoint Encryption">Protecting Enterprise Data with Proofpoint Encryption</a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=zGnYMHiZLhs:qJfZbfhXDmk:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=zGnYMHiZLhs:qJfZbfhXDmk:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?i=zGnYMHiZLhs:qJfZbfhXDmk:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=zGnYMHiZLhs:qJfZbfhXDmk:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/ProofpointEmailSecurityBlog/~4/zGnYMHiZLhs" height="1" width="1"/>]]></content:encoded>


<category>Email Encryption</category>
<category>Email Security</category>
<category>HIPAA</category>
<category>Regulatory Compliance</category>

<dc:creator>Keith R. Crosley</dc:creator>
<pubDate>Mon, 08 Feb 2010 10:01:00 -0800</pubDate>

<feedburner:origLink>http://blog.proofpoint.com/2010/02/hipaa-compliance-and-email-encryption-crystal-run-healthcares-use-of-proofpoint.html</feedburner:origLink></item>
<item>
<title>USA Today says Cybersecurity Stocks Look Hot in 2010: Proofpoint and Other Privately Held Security Vendors to Benefit</title>
<link>http://feedproxy.google.com/~r/ProofpointEmailSecurityBlog/~3/sMgYV4x_tEg/usa-today-says-cybersecurity-stocks-look-hot-in-2010-proofpoint-and-other-privately-held-security-vendors-to-benefit.html</link>
<guid isPermaLink="false">http://blog.proofpoint.com/2010/02/usa-today-says-cybersecurity-stocks-look-hot-in-2010-proofpoint-and-other-privately-held-security-vendors-to-benefit.html</guid>
<description>Byron Acohido at USA Today has an interesting article out today (see "Cybersecurity Stocks Look Hot in 2010") positing that tech security companies are "poised to become Wall Street darlings this year, thanks in part to Google's tiff with China."...</description>
<content:encoded><![CDATA[<p><a href="http://bit.ly/bGPtZJ" onclick="window.open(this.href,&#39;_blank&#39;,&#39;scrollbars=no,resizable=yes,toolbar=no,directories=no,location=no,menubar=no,status=no,left=0,top=0&#39;); return false" style="FLOAT: left"><img alt="USA Today: Cybersecurity Stocks Look Hot in 2010" border="0" class="asset asset-image at-xid-6a010535f33a5b970c0120a860ddf3970b " src="http://blog.fortiva.com/.a/6a010535f33a5b970c0120a860ddf3970b-800wi" style="MARGIN: 0px 5px 5px 0px" title="USA Today: Cybersecurity Stocks Look Hot in 2010" /></a> Byron Acohido at USA Today has an interesting article out today (see &quot;<a href="http://bit.ly/bGPtZJ" target="_blank" title="USA Today: Cybersecurity Stocks Look Hot in 2010">Cybersecurity Stocks Look Hot in 2010</a>&quot;) positing that tech security companies are &quot;poised to become Wall Street darlings this year, thanks in part to Google&#39;s tiff with China.&quot;</p>
<p>Quoting an analyst at FBR Capital Markets, he says the Google-China row has underscored the already positive outlook for stock price performance of diversified security vendors such as McAfee, Symantec and Check Point and that the security sector is underinvested. As we point out at Proofpoint quite often, IT security (including email security and data loss prevention) solutions simply aren&#39;t optional and large enterprises and&#0160;government organizations&#0160;can&#39;t delay purchases of such solutions.</p>
<p>&#0160;Statistics from IDC are also quoted, noting that worldwide spending on IT security rose 6% in 2009 and is expected to grow another 9% in 2010.</p>
<p>The article notes that prospects for privately-held security companies are also looking very positive:</p>
<blockquote dir="ltr">
<p>&quot;Meanwhile, the rising incidence — and visibility — of cyberattacks also is boosting prospects for privately held tech-security firms, says Asheem Chandna, a partner at Greylock Partners, a leading Silicon Valley venture capital firm.</p>
<p>Private firms with strong balance sheets and good growth prospects that might be viewed as viable candidates to float an initial public stock offering include Sophos, Barracuda Networks, Qualys, Proofpoint and Tripwire, Chandna says. He estimates 30 to 50 tech firms could go public this year, including three to five tech-security companies.&quot;</p></blockquote>
<p>Proofpoint&#39;s growth has been extremely strong over the past few years as Proofpoint watchers already know. We recently closed our 26th consecutive quarter of record revenue as I noted in a recent blog post (see &quot;<a href="http://proofpoint-news-this-week-another-quarter-of-record-proofpoint-revenue-updated-channel-partner-progr" title="Proofpoint reports record revenues for Q4 2009">Proofpoint News this Week: Another Quarter of Record Proofpoint Revenue, Updated Channel Partner Program</a>).</p>
<p>You can read the full USA Today story here: <a href="http://bit.ly/bGPtZJ" target="_blank" title="USA Today: Cybersecurity Stocks Look Hot in 2010">Cybersecurity Stocks Look Hot in 2010</a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=sMgYV4x_tEg:zdG5GfjK4aQ:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=sMgYV4x_tEg:zdG5GfjK4aQ:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?i=sMgYV4x_tEg:zdG5GfjK4aQ:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=sMgYV4x_tEg:zdG5GfjK4aQ:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/ProofpointEmailSecurityBlog/~4/sMgYV4x_tEg" height="1" width="1"/>]]></content:encoded>


<category>Email Security</category>
<category>Research and Surveys</category>
<category>Security</category>

<dc:creator>Keith R. Crosley</dc:creator>
<pubDate>Thu, 04 Feb 2010 10:49:32 -0800</pubDate>

<feedburner:origLink>http://blog.proofpoint.com/2010/02/usa-today-says-cybersecurity-stocks-look-hot-in-2010-proofpoint-and-other-privately-held-security-vendors-to-benefit.html</feedburner:origLink></item>
<item>
<title>Spam Sighting: Google Maps Exploit Being Used to Send Spam</title>
<link>http://feedproxy.google.com/~r/ProofpointEmailSecurityBlog/~3/zsoDvXCW4s4/spam-sighting-google-maps-exploit-being-used-to-send-spam.html</link>
<guid isPermaLink="false">http://blog.proofpoint.com/2010/02/spam-sighting-google-maps-exploit-being-used-to-send-spam.html</guid>
<description>I've seen a few reports of this from random folks on Twitter, but now the Scott Panzer over in the Proofpoint Attack Response Center has confirmed that we have samples of spam messages that appear to be exploiting Google Maps...</description>
<content:encoded><![CDATA[<p>I&#39;ve seen a few reports of this from random folks on Twitter, but now the Scott Panzer&#0160;over in the Proofpoint Attack Response Center has confirmed that we have samples of spam messages that appear to be exploiting Google Maps to send spam.</p>
<p>The messages, which have subject lines like &quot;<em>[email address] </em>sent this to you using Google Maps:&quot; followed by some additional (possibly randomized) text, don&#39;t contain a link to a Google Map, but instead have a link to a spam payload hosted at imageshack.us. </p>
<p>The image spam payloads advertise old standbys like Canadian Pharmacy (you know, in case you needed a source for &quot;cheap Viagra&quot;).</p>
<p>The messages seem to be exploiting a weakness in Google Maps (either an exploit that gets around Google Maps CAPTCHA or an automated way to break Google Maps CAPTCHA) that results in the message being sent from Google servers... Which means that the messages are also DKIM signed as valid Google email.</p>
<p>While we&#39;ve not seen very high volumes of this sort of spam (yet?), I&#39;m assured by the PARC team that <a href="http://www.proofpoint.com/products/spam.php" target="_blank" title="Product page for Proofpoint Spam Detection module">Proofpoint Spam Detection</a> now blocks any of these spam messages that may have been evading detection.</p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=zsoDvXCW4s4:eHN2zXl3KDI:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=zsoDvXCW4s4:eHN2zXl3KDI:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?i=zsoDvXCW4s4:eHN2zXl3KDI:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=zsoDvXCW4s4:eHN2zXl3KDI:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/ProofpointEmailSecurityBlog/~4/zsoDvXCW4s4" height="1" width="1"/>]]></content:encoded>


<category>Anti-spam</category>
<category>Email Security</category>

<dc:creator>Keith R. Crosley</dc:creator>
<pubDate>Tue, 02 Feb 2010 16:41:26 -0800</pubDate>

<feedburner:origLink>http://blog.proofpoint.com/2010/02/spam-sighting-google-maps-exploit-being-used-to-send-spam.html</feedburner:origLink></item>
<item>
<title>Gartner: Social Networking Services to Replace Email by 2014... Sort of... and Other Social Media Predictions</title>
<link>http://feedproxy.google.com/~r/ProofpointEmailSecurityBlog/~3/9TGvLfh3ncM/gartner-social-networking-services-to-replace-email-by-2014-sort-of-and-other-social-media-predictions.html</link>
<guid isPermaLink="false">http://blog.proofpoint.com/2010/02/gartner-social-networking-services-to-replace-email-by-2014-sort-of-and-other-social-media-predictions.html</guid>
<description>Clever press release out today from our friends at analyst firm Gartner promoting their upcoming "Gartner Portals, Content and Collaboration Summit" with five interesting predictions about social media and social software in the enterprise. The one that most caught my...</description>
<content:encoded><![CDATA[<p>Clever <a href="http://www.gartner.com/it/page.jsp?id=1293114" target="_blank" title="Press release: &quot;Gartner Reveals Five Social Software Predictions for 2010 and Beyond&quot;">press release out today from our friends at analyst firm Gartner</a>&#0160;promoting their upcoming &quot;Gartner Portals, Content and Collaboration Summit&quot; with five interesting predictions about social media and social software in the enterprise.</p>
<p>The one that most caught my eye was a prediction that, by 2014, social networking services will replace email as the primary vehicle for interpersonal communications... for 20% of business users. By way of explanation, Gartner notes greater access to social networking services in the enterprise, along with organizational culture and demographic shifts will lead 20% of users to make a social network &quot;the hub of their business communications.&quot;</p>
<p>I wouldn&#39;t dispute that claim. Gartner goes on to note that over the next few years, most companies will either build out their own internal social networks and/or allow business users access to personal social networking accounts. Social networking, they say, &quot;will prove to be more effective than email for certain business activities such as status updates and expertise location.&quot;</p>
<p>Analyst Matt Cain (who covers email, collaboration and related topics at Gartner) says:</p>
<p>&quot;The rigid distinction between email and social networks will erode. Email will take on many social attributes, such as contact brokering while social networks will develop richer email capabilities. While email is already almost fully penetrated in the corporate space, we expect to see steep growth rates for sale of premises- and cloud-based social networking services.&quot;</p>
<p>Hard to argue with that. For some related commentary, see some of my earlier posts including:<a href="http://blog.proofpoint.com/2010/01/facebook-has-enabled-replying-to-comments-through-email-see-facebooks-blog-post-on-replying-to-comments-through-email-at-htt.html" title="Blog Post: Facebook Enables Commenting by Replying to Notification Emails: Will this be Exploited to Harvest Email Addresses?"></a></p>
<ul>
<li>Facebook Enables Commenting by Replying to Notification Emails: Will this be Exploited to Harvest Email Addresses? </li>
<li>Should Bosses &quot;Friend&quot; their Employees? Social Media Statistics, Risks and Policy Suggestions </li>
<li>Facebook Fired: 8% of US Companies Sacked Social Media Miscreants</li>
</ul>
<p>Amongst Gartner&#39;s other predictions for social media:</p>
<ul>
<li>By 2012, over 50 percent of enterprises will use activity streams that include microblogging (i.e., public services like Twitter), but stand-alone enterprise microblogging (i.e., services like Yammer) will have less than 5 percent penetration.</li>
<li>Through 2012, over 70 percent of IT-dominated social media initiatives will fail. Gartner says that, &quot;Enterprises will need to develop entirely new skill sets around designing and delivering social media solutions. Until this happens, failure rates will remain high. A dearth of methods, technologies and tools will impede the design and delivery of social media solutions in the near term.&quot;</li>
<li>Within five years, 70 percent of collaboration and communications applications designed on PCs will be modeled after user experience lessons from smartphone collaboration applications. Gartner explains, &quot;Just as the iPhone impacted user interface design on the desktop, the lessons in the mobile phone collaboration space will dramatically affect PC applications, many of which are derivatives of decades-old platforms based on the PBX or other older collaboration paradigm.&quot;</li>
<li>Through 2015, only 25 percent of enterprises will routinely utilize social network analysis to improve performance and productivity. This one is really interesting as well. Gartner notes that &quot;social network&#0160;analysis&quot; may be useful for understanding the interaction patterns and information flows among the people and groups working in an organization (in addition to interactions with business partners and customers). But care must be taken to address issues of privacy and confidentiality regarding how such analyses will be used and communicated. &quot;Establishing the ground rules upfront will encourage more open and honest participation and reduce the resistance to ongoing relationship monitoring,&quot; they say.</li>
</ul>
<p>You can read Gartner&#39;s entire press release, &quot;<a href="http://www.gartner.com/it/page.jsp?id=1293114" target="_blank" title="Gartner Reveals Five Social Software Predictions for 2010 and Beyond">Gartner Reveals Five Social Software Predictions for 2010 and Beyond</a>&quot; at the following URL:</p>
<p><a href="http://www.gartner.com/it/page.jsp?id=1293114">http://www.gartner.com/it/page.jsp?id=1293114</a></p>
<br />
<p><em>Update:</em> Analyst Mike Osterman (of Osterman Research fame, follow him on Twitter <a href="http://www.twitter.com/mosterman" target="_blank" title="Mike Osterman, Osterman Research on Twitter">@mosterman</a>) pointed me toward a similar article he wrote for NetworkWorld way back in July 2008! Worth a read as he has reposted it today. See: &quot;<a href="http://www.ostermanresearch.com/blog/2010/02/what-will-truly-unified-communication.html" target="_blank" title="The Osterman Research Blog: &quot;What will truly unified communication be like?&quot;">What will truly unified communication be like?</a>&quot; Excerpt:</p>
<p>&quot;Instead of having multiple email addresses, instant messaging handles, phone numbers, etc., each of us would have just a single address – either an email address as we have today or a phone number. To support this, we would have a powerful directory system that would be populated with information on all of our various modes of communication – published and unlisted phone numbers, email addresses, instant messaging handles, etc. – as well as detailed information on our preferred methods of communication based on time of day, day of the week, presence status, travel status and, perhaps, even our current mood based on biometric sensors at our desk or on our mobile device.&quot;</p>
<p>Interesting stuff from Mike, as always!</p>
<br /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=9TGvLfh3ncM:dXt1n3lO3SI:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=9TGvLfh3ncM:dXt1n3lO3SI:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?i=9TGvLfh3ncM:dXt1n3lO3SI:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=9TGvLfh3ncM:dXt1n3lO3SI:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/ProofpointEmailSecurityBlog/~4/9TGvLfh3ncM" height="1" width="1"/>]]></content:encoded>


<category>Cultural Aspects of Email</category>
<category>Research and Surveys</category>
<category>Social Media</category>

<dc:creator>Keith R. Crosley</dc:creator>
<pubDate>Tue, 02 Feb 2010 12:00:02 -0800</pubDate>

<feedburner:origLink>http://blog.proofpoint.com/2010/02/gartner-social-networking-services-to-replace-email-by-2014-sort-of-and-other-social-media-predictions.html</feedburner:origLink></item>
<item>
<title>Email most Common Scam Vector: British Office of Fair Trading (OFT) Reports that Scams Affect One Out of Ten Britons</title>
<link>http://feedproxy.google.com/~r/ProofpointEmailSecurityBlog/~3/ndtoluTGylM/email-is-most-common-scam-vector-british-office-of-fair-trading-oft-reports-that-scams-affect-one-out-of-ten-britons.html</link>
<guid isPermaLink="false">http://blog.proofpoint.com/2010/02/email-is-most-common-scam-vector-british-office-of-fair-trading-oft-reports-that-scams-affect-one-out-of-ten-britons.html</guid>
<description>Must be "scams on the rise" day here at the email security blog. Moments after my previous post on rises in phishing and vishing, one of my colleagues alerted me to a BBC story (see "Scams Affect One in 10...</description>
<content:encoded><![CDATA[<p>Must be &quot;scams on the rise&quot; day here at the email security blog. Moments after my previous post on <a href="http://blog.proofpoint.com/2010/02/phishing-and-vishing-trends-both-on-the-rise-according-to-bankinfosecurity.html" title="Phishing and Vishing Trends: Both on the Rise According to BankInfoSecurity">rises in phishing and vishing</a>,&#0160;one of my colleagues alerted me to a BBC story (see <a href="http://news.bbc.co.uk/2/hi/business/8490275.stm" target="_blank" title="BBC reports on Office of Fair Trading&#39;s Scams Statistics">&quot;Scams Affect One in 10 Britons, Says OFT&quot;</a>) with some interesting statistics about how often consumers are victimized by scams.</p>
<p>Britain&#39;s Office of Fair Trading (OFT) issued some new statistics about scams as part of their annual &quot;Scams Awareness Month&quot; campaign for 2010. New research by the OFT reveals that mass-marketed scams that &quot;mislead people to part with their cash&quot; and may arrive by regular postal mail, text message, telephone or online (e.g., email and web) vectors have affected nearly 10% of British citizens.</p>
<p>Among the OFT&#0160;report&#39;s findings:</p><span>
<ul>
<li><strong>Email is now the most common scam approach:</strong> 73% of British adults have received a scam email in the past year. This is followed by scams via a letter (21%) and via text message (12%). </li>
<li><strong>Social media sites appear to be emerging as a new route for scammers:</strong> 9% of adults received an approach this way. </li>
<li><strong>Being victimized by a scam is not rare:</strong> Around one in 11 (just over 4 million) British adults say they have responded to a scam at some time in their life, of whom nearly a third lost money. And about 4% of Britons (1 in 25 or 2 million people) have responded to a scam in just the last 12 months. </li>
<li><strong>Losses from scams are substantial:</strong> Around half (49%) of those scammed have lost more than £50 (about $80) in total, with 5% losing more than £5000 (about $8000).</li>
</ul>
</span>
<p>You can find the OFT&#39;s original press release at the following link:</p>
<p><a href="http://www.oft.gov.uk/news/press/2010/07-10" target="_blank" title="Press Release: OFT Launches &quot;Scamnesty&quot; as New Figures Reveal Scale of Problem and Rise of Online Scams">OFT Launches &quot;Scamnesty&quot; as New Figures Reveal Scale of Problem and Rise of Online Scams</a><br /><a href="http://www.oft.gov.uk/news/press/2010/07-10" target="_blank">http://www.oft.gov.uk/news/press/2010/07-10</a></p>
<p>Just as we&#39;ve done here on numerous occasions, the Office of Fair Trade issued a good list of tips for avoiding being victimized by a scam. Says the press release:</p>
<p>To help protect yourself and those you care about, the OFT is encouraging people to remember the following tips:</p>
<ul>
<li>Stop, think and be sceptical. If something sounds too good to be true it probably is.&#0160;&#0160;&#0160;</li>
<li>Do not be rushed into sending off money to someone you do not know, however plausible they might sound and even where an approach is personalised.&#0160;</li>
<li>Ask yourself how likely it is that you have been especially chosen for this offer - thousands of other people will probably have received the same offer.</li>
<li>Think about how much money you could lose from replying to a potential scam - it&#39;s not a gamble worth taking.</li>
</ul>
<p>For Proofpoint&#39;s own tips on staying safe from online scams, see our latest such press release with <a href="http://www.proofpoint.com/news-and-events/press-releases/pressdetail.php?PressReleaseID=253" target="_blank" title="Email security vendor Proofpoint&#39;s &quot;Seven Simple Rules for Staying Safe Online.&quot;">seven simple rules for staying safe online</a>.</p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=ndtoluTGylM:fH2Z3Ctdqqs:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=ndtoluTGylM:fH2Z3Ctdqqs:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?i=ndtoluTGylM:fH2Z3Ctdqqs:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=ndtoluTGylM:fH2Z3Ctdqqs:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/ProofpointEmailSecurityBlog/~4/ndtoluTGylM" height="1" width="1"/>]]></content:encoded>


<category>Data Loss Prevention</category>
<category>Email Security</category>
<category>Research and Surveys</category>

<dc:creator>Keith R. Crosley</dc:creator>
<pubDate>Mon, 01 Feb 2010 15:21:52 -0800</pubDate>

<feedburner:origLink>http://blog.proofpoint.com/2010/02/email-is-most-common-scam-vector-british-office-of-fair-trading-oft-reports-that-scams-affect-one-out-of-ten-britons.html</feedburner:origLink></item>
<item>
<title>Phishing and Vishing Trends: Both on the Rise According to BankInfoSecurity</title>
<link>http://feedproxy.google.com/~r/ProofpointEmailSecurityBlog/~3/n0snWLGE5c8/phishing-and-vishing-trends-both-on-the-rise-according-to-bankinfosecurity.html</link>
<guid isPermaLink="false">http://blog.proofpoint.com/2010/02/phishing-and-vishing-trends-both-on-the-rise-according-to-bankinfosecurity.html</guid>
<description>A couple of interesting articles from the always awesome Bank Info Security today, noting that various forms of phishing are on the rise. First up, the Anti-Phishing Working Group (APWG) reported that all types of phishing are on the rise....</description>
<content:encoded><![CDATA[<p>A couple of interesting articles from the always awesome Bank Info Security today, noting that various forms of phishing are on the rise. First up, the Anti-Phishing Working Group (APWG) reported that all types of phishing are on the rise. In the <a href="http://www.antiphishing.org/reports/apwg_report_Q3_2009.pdf" title="Download Anti-Phishing Working Group Phishing Activity Trends Report for Q3, 2009 (PDF format)">APWG&#39;s report for the third quarter of 2009</a>, phishing reports to the organization rose to a record 40,621 (in August 2009). More, including some quotes form the APWG&#39;s chairman, Dave Jeavans, here:</p>
<p>BankInfoSecurity: <a href="http://www.bankinfosecurity.com/articles.php?art_id=2119&amp;rf=013010eb" target="_blank" title="Phishing Trends: Numbers up, Corporate Accounts Targeted">Phishing Trends: Numbers up, Corporate Accounts Targeted</a></p>
<p>Phone-based phishing scams (often called &quot;vishing&quot; - for VOIP or voice phishing) have also surged recently. In an article out today (<a href="http://www.bankinfosecurity.com/articles.php?art_id=2138" target="_blank" title="BankInfoSecurity: Vishing Scam: Four More States Struck, Five Institutions Say Customers Received Fraudulent Calls">Vishing Scam: Four More States Struck, Five Institutions Say Customers Received Fraudulent Calls</a>) Linda McGlasson at BankInfoSecurity reports that:</p>
<p>&quot;Financial institutions in Michigan, Wisconsin, Minnesota and Mississippi report being hit by these &quot;vishing&quot; attacks in the past two weeks. Five different institutions -- three credit unions and two banks - say their customers have received vishing calls from fraudsters.&quot;</p>
<p>The article includes details of the various attacks.</p>
<p><strong>Links:</strong></p>
<p>Phishing Trends: <a href="http://www.bankinfosecurity.com/articles.php?art_id=2119&amp;rf=013010eb">http://www.bankinfosecurity.com/articles.php?art_id=2119&amp;rf=013010eb</a></p>
<p>APWG Report: <a href="http://www.antiphishing.org/reports/apwg_report_Q3_2009.pdf">http://www.antiphishing.org/reports/apwg_report_Q3_2009.pdf</a></p>
<p>New Vishing Attacks: <a href="http://www.bankinfosecurity.com/articles.php?art_id=2138">http://www.bankinfosecurity.com/articles.php?art_id=2138</a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=n0snWLGE5c8:RP2jijHVYNE:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=n0snWLGE5c8:RP2jijHVYNE:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?i=n0snWLGE5c8:RP2jijHVYNE:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?a=n0snWLGE5c8:RP2jijHVYNE:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/ProofpointEmailSecurityBlog?d=qj6IDK7rITs" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/ProofpointEmailSecurityBlog/~4/n0snWLGE5c8" height="1" width="1"/>]]></content:encoded>


<category>Anti-spam</category>
<category>Anti-virus</category>
<category>Email Security</category>
<category>Phishing</category>

<dc:creator>Keith R. Crosley</dc:creator>
<pubDate>Mon, 01 Feb 2010 11:52:56 -0800</pubDate>

<feedburner:origLink>http://blog.proofpoint.com/2010/02/phishing-and-vishing-trends-both-on-the-rise-according-to-bankinfosecurity.html</feedburner:origLink></item>

</channel>
</rss><!-- ph=1 --><!-- nhm:from_kauri -->
