<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Tall Poppy Group &#187; Blog</title>
	<atom:link href="http://tallpoppygroup.com/blog/feed/" rel="self" type="application/rss+xml" />
	<link>http://tallpoppygroup.com</link>
	<description>Security + Technology + Startups</description>
	<lastBuildDate>Fri, 23 Nov 2012 07:35:45 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5</generator>
		<item>
		<title>If Steve Jobs had written the iOS 6 maps apology letter&#8230;</title>
		<link>http://tallpoppygroup.com/blog/if-steve-jobs-had-written-the-ios-6-apology-letter/</link>
		<comments>http://tallpoppygroup.com/blog/if-steve-jobs-had-written-the-ios-6-apology-letter/#comments</comments>
		<pubDate>Fri, 28 Sep 2012 14:13:57 +0000</pubDate>
		<dc:creator>tallpoppygroup</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://tallpoppygroup.com/?p=2545</guid>
		<description><![CDATA[For background to this post, read this. To our customers, At Apple, we strive to make world-class products that deliver the best experience possible to our customers. With the launch of our new Maps last week, we fell short on &#8230; <a href="http://tallpoppygroup.com/blog/if-steve-jobs-had-written-the-ios-6-apology-letter/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>For background to this post, read <a href="http://thenextweb.com/apple/2012/09/28/tim-cook-apologises-ios-6-maps-open-letter-suggests-users-try-google-nokia-mapping-apps/?utm_content=Tim%20Cook%20apologises%20for%20iOS%206%20Maps%20in%20open%20letter,%20suggests%20users%20try%20Google,%20Nokia%20and%20other%20mapping%20apps&amp;awesm=tnw.to_h5R8&amp;utm_campaign=social%20media&amp;utm_source=Twitter&amp;utm_medium=share%20button" target="_blank">this</a>.</p>
<blockquote><p>To our customers,</p>
<p>At Apple, we <span style="text-decoration: line-through;">strive to</span> make world-class products that deliver the best experience possible to our customers. <span style="text-decoration: line-through;">With the launch of our new Maps last week, we fell short on this commitment. We are extremely sorry for the frustration this has caused our customers and we are doing everything we can to make Maps better.</span></p>
<p>We launched Maps initially with the first version of iOS. As time progressed, we have <span style="text-decoration: line-through;">wanted to</span> provided our customers with even better Maps including features such as turn-by-turn directions, voice integration, Flyover and vector-based maps. <span style="text-decoration: line-through;">In order to do this, we had to create a new version of Maps from the ground up.</span></p>
<p>There are already more than 100 million iOS devices using the new Apple Maps, with more and more joining us every day. In just over a week, iOS users with the new Maps have already searched for nearly half a billion locations. The more our customers use our Maps the better it will get<span style="text-decoration: line-through;"> and we greatly appreciate all of the feedback we have received from you</span>.</p>
<p><span style="text-decoration: line-through;">While we’re improving Maps, you can try alternatives by downloading map apps from the <a href="http://itunes.apple.com/WebObjects/MZStore.woa/wa/viewFeature?id=566480009&amp;mt=8">App Store</a> like Bing, MapQuest and Waze, or use Google or Nokia maps by going to their websites and <a href="https://www.apple.com/ios/add-to-home-screen/">creating an icon</a> on your home screen to their web app.</span></p>
<p>Everything we do at Apple is aimed at making our products the best in the world. We know that you expect that from us, and <span style="text-decoration: line-through;">we will keep working non-stop until</span> Maps lives up to the same incredibly high standard.</p>
<p><span style="text-decoration: line-through;">Tim Cook</span> Steve Jobs<br />
Apple’s CEO</p></blockquote>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://tallpoppygroup.com/blog/if-steve-jobs-had-written-the-ios-6-apology-letter/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Your Idea Sucks</title>
		<link>http://tallpoppygroup.com/blog/your-idea-sucks/</link>
		<comments>http://tallpoppygroup.com/blog/your-idea-sucks/#comments</comments>
		<pubDate>Tue, 25 Sep 2012 02:13:30 +0000</pubDate>
		<dc:creator>tallpoppygroup</dc:creator>
				<category><![CDATA[start-ups]]></category>

		<guid isPermaLink="false">http://tallpoppygroup.com/?p=2523</guid>
		<description><![CDATA[tl;dr: I love your idea. I want to hear about your idea. Please, do not interpret this post as me stifling your idea. But an idea without a commitment to execution is useless&#8230; at best an interesting conversation over a &#8230; <a href="http://tallpoppygroup.com/blog/your-idea-sucks/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<blockquote><p>tl;dr: I love your idea. I want to hear about your idea. Please, do not interpret this post as me stifling your idea. But an idea without a commitment to execution is useless&#8230; at best an interesting conversation over a beer or a coffee. Don&#8217;t let that be your idea. Commit yourself to executing well.</p></blockquote>
<p>Your idea sucks.</p>
<p>It&#8217;s just not that great.</p>
<p>I&#8217;m sorry.</p>
<p>Someone, somewhere has already had it, and someone, somewhere is probably already working on it.</p>
<p>Most VC firms and angels WILL NOT SIGN AN NDA until a term sheet is seriously being considered.</p>
<p>Why?</p>
<p>Because they&#8217;ve already heard your idea that day, and they don&#8217;t want to give you the ability to come after them legally when they fund the other guy and not you.</p>
<p>Ideas are fun. I love them. I really, really, really love them&#8230; But if the pursuit of ideas comes at the expense of a commitment to execution you have ceased being an entrepreneur. You are a hobbyist.</p>
<p>Entrepreneurship is about actualising ideas into successful enterprises. For an enterprise to be successful it needs to be self sustaining, otherwise the enterprise (and thus the underpinning idea) will fail. Don&#8217;t be that guy/girl.</p>
<p>Some thoughts:</p>
<ul>
<li>Get a partner. Don&#8217;t do it on your own. Note: As a general rule, single founder start-ups DO NOT get funded. That&#8217;s because they are riskier. Ponder this.</li>
<li>Make a plan. Not a big, long, scary business plan that ties you down and stifles your ability to be creative or pivot, but at least one that marks out your next waypoint.</li>
<li>Work on one, maximum two, start-ups at a time. This is key, and probably the thing I find hardest. If you are working on two, make sure that they are in the same domain and can cross-pollinate.</li>
<li>Seek out people who&#8217;ve MADE IT and buy them lunch. Not people with ideas. People who have achieved the end game you&#8217;re aiming for &#8211; successful exit, successful lifestyle business, disrupted market, successful social/altruistic enterprise, etc. Listen to them. Accept their criticism. Stay close to them</li>
<li>Commit to excellence. Lean is good, but don&#8217;t ship shit. The marketplace has started to wise up to this whole &#8220;trick &#8216;em into being test guinea pigs&#8221; thing. Make it good or stop. (To be fair, you can probably get away with ignoring this one&#8230; It&#8217;s more of a personal ethic. Note the use of &#8220;probably&#8221;.)</li>
<li>Make yourself accountable. Ideally to your business partner, but also to your spouse,  significant other, best friend, etc. Keep them close to what you are doing. Let them tap you on the shoulder if they think you&#8217;ve lost your vision (I hate this, but it&#8217;s key).</li>
</ul>
<p>Thoughts?</p>
]]></content:encoded>
			<wfw:commentRss>http://tallpoppygroup.com/blog/your-idea-sucks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>iPhone 5 first impressions</title>
		<link>http://tallpoppygroup.com/blog/iphone-5-first-impressions/</link>
		<comments>http://tallpoppygroup.com/blog/iphone-5-first-impressions/#comments</comments>
		<pubDate>Fri, 21 Sep 2012 03:07:58 +0000</pubDate>
		<dc:creator>tallpoppygroup</dc:creator>
				<category><![CDATA[iphone 5]]></category>

		<guid isPermaLink="false">http://tallpoppygroup.com/?p=2516</guid>
		<description><![CDATA[My wife and I were among the hordes who queued up for an iPhone 5 this morning. First impressions on iPhone 5: Fast. Like really, really fast. Super fluid and responsive. Apps open instantly. Taller, thinner and lighter. It&#8217;s actually &#8230; <a href="http://tallpoppygroup.com/blog/iphone-5-first-impressions/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>My wife and I were among the hordes who queued up for an iPhone 5 this morning.</p>
<p>First impressions on iPhone 5:</p>
<ul>
<li>Fast. Like really, really fast. Super fluid and responsive. Apps open instantly.</li>
<li>Taller, thinner and lighter. It&#8217;s actually a bit awkward and foreign handling one for the first time, but you get used to it very quickly.</li>
<li>Lightning connector is SUPER fast. I copied 12 albums from my laptop in to the iPhone 5 in 30 seconds or so. It used to take several minutes.</li>
<li>The new earphones are awesome. Really good. Comfortable, stable in the ear, and the response is fantastic top to bottom.</li>
<li>Do Not Disturb is set to become a heavily used feature on my iPhone 5.</li>
<li>Increased Privacy options. I&#8217;ll delve into these a bit more and blog it separately, but I like what Apple have done here. The options focus on ensuring users understand what applications are doing with your data. Notably absent in Mail (I&#8217;m not sure about the developer API for email&#8230;).</li>
<li>iOS 6 maps are as bad as everyone says they are. I&#8217;m looking forward to version 2, or Google bringing out the iOS 3rd party version of their maps app (not holding my breath for this though&#8230; Apple and Google are kind of arch rivals now).</li>
<li>3D maps are neat but useless in my opinion. Tracking and guessing on location searches (e.g. Red Square&#8230; C&#8217;mon&#8230;) is pretty poor.</li>
<li>There is enough difference between iOS 5 and iOS 6 to make the user experience a bit junted&#8230;</li>
</ul>
<p>So, there you go. Should you get one?</p>
<ul>
<li>If you&#8217;re in the middle of a contract you&#8217;d need to pay out in order to upgrade &#8211; No, not worth it.</li>
<li>If you have a working iPhone 4 or 4S that&#8217;s got life left in it &#8211; No, wait a few months for Apple to iron out any hardware bugs. As a rule, this is how I usually purchase technology&#8230; let the early adopters beta test the product and then go for it once the initial broken things are sorted. I broke that rule this time around because I lost my iPhone 4 about a month and a half ago.</li>
<li>Otherwise, yes &#8211; Go for it. So far I&#8217;m quite happy with it, and I&#8217;m not easily impressed by gadgets.</li>
</ul>
<p>Overall I&#8217;m very happy with it &#8211; It&#8217;s a very nicely designed phone &#8211; but to be honest, had I not been at the end of my mobile contract, I probably would have stuck with my iPhone 4 for longer. In the end the timing was just right.</p>
<p>What do you think of the iPhone 5?</p>
]]></content:encoded>
			<wfw:commentRss>http://tallpoppygroup.com/blog/iphone-5-first-impressions/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>How To Disconnect On LinkedIn</title>
		<link>http://tallpoppygroup.com/blog/how-to-disconnect-on-linkedin/</link>
		<comments>http://tallpoppygroup.com/blog/how-to-disconnect-on-linkedin/#comments</comments>
		<pubDate>Mon, 13 Aug 2012 06:33:22 +0000</pubDate>
		<dc:creator>tallpoppygroup</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[How To Disconnect on LinkedI]]></category>
		<category><![CDATA[How To Disconnect on LinkedIn]]></category>

		<guid isPermaLink="false">http://caseyjohnellis.com/?p=2471</guid>
		<description><![CDATA[On the whole I quite like LinkedIn as a professional social networking platform, but there&#8217;s one thing in particular that irks me&#8230; Can anyone tell me How To Disconnect On LinkedIn? I get the feeling that LinkedIn make it deliberately difficult to &#8230; <a href="http://tallpoppygroup.com/blog/how-to-disconnect-on-linkedin/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>On the whole I quite like LinkedIn as a professional social networking platform, but there&#8217;s one thing in particular that irks me&#8230;</p>
<blockquote><p>Can anyone tell me <strong>How To Disconnect On LinkedIn?</strong></p></blockquote>
<p>I get the feeling that LinkedIn make it deliberately difficult to find, which sort of makes sense&#8230; A bigger and better connected social graph means more people within your &#8220;three degrees of separation&#8221; which roughly equates to a higher perceived value&#8230;</p>
<p>Right? Probably&#8230;</p>
<p>From issues of verbosity, to disagreement, to flat out not wanting to be professionally associated with a person anymore &#8211; There are lots of reasons one might want to disconnect from a fellow LinkedIn user. I can tell you now that the &#8220;normal&#8221; method via the LinkedIn website requires patience, a map, and an iron will.</p>
<p>Here&#8217;s the easier way:</p>
<ol>
<li>Make sure you&#8217;re logged into LinkedIn.</li>
<li>View the profile of the person from which you wish to part company. Your URL bar should look something like the picture below. The arrow is pointing to the spot where the LinkedIn ID should be (I&#8217;ve removed the ID to protect the innocent).
<p><div id="attachment_2473" class="wp-caption aligncenter" style="width: 1291px"><a href="http://caseyjohnellis.com/wp-content/uploads/2012/08/Screen-Shot-2012-08-13-at-4.25.13-PM.png"><img class="size-full wp-image-2473" title="How To Disconnect On LinkedIn" src="http://caseyjohnellis.com/wp-content/uploads/2012/08/Screen-Shot-2012-08-13-at-4.25.13-PM.png" alt="" width="1281" height="102" /></a><p class="wp-caption-text">How To Disconnect On LinkedIn</p></div></li>
<li>Paste their LinkedIn ID into the following link &#8211; replacing the &#8220;000000000&#8243;: http://www.linkedin.com/connections?breakConnections=&amp;connectionChooser=000000000</li>
<li>Click enter on the link and you&#8217;re done!</li>
</ol>
<p>That&#8217;s<strong> How To Disconnect On LinkedIn</strong>. Leave a comment if this helps.</p>
]]></content:encoded>
			<wfw:commentRss>http://tallpoppygroup.com/blog/how-to-disconnect-on-linkedin/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>FACEBOOK SCAM &#8211; Targets Voucher Giveaway (Limited Offer)</title>
		<link>http://tallpoppygroup.com/blog/facebook-scam-targets-voucher-giveaway-limited-offer/</link>
		<comments>http://tallpoppygroup.com/blog/facebook-scam-targets-voucher-giveaway-limited-offer/#comments</comments>
		<pubDate>Wed, 27 Jun 2012 02:46:13 +0000</pubDate>
		<dc:creator>tallpoppygroup</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[facebook scam]]></category>
		<category><![CDATA[Targets Voucher Giveaway (Limited Offer)]]></category>

		<guid isPermaLink="false">http://caseyjohnellis.com/?p=2463</guid>
		<description><![CDATA[A scam currently running wild on Facebook offering a Target Gift Voucher&#8230; Here&#8217;s what happens if you follow it through: Scam text: With almost $70 billion revenue in 2011, we at Target have decided to give away Free Vouchers to &#8230; <a href="http://tallpoppygroup.com/blog/facebook-scam-targets-voucher-giveaway-limited-offer/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>A scam currently running wild on Facebook offering a Target Gift Voucher&#8230; Here&#8217;s what happens if you follow it through:</p>
<p><iframe src="http://www.youtube.com/embed/h33Imrxusts" frameborder="0" width="640" height="480"></iframe></p>
<p>Scam text:</p>
<blockquote><p>With almost $70 billion revenue in 2011, we at Target have decided to give away Free Vouchers to our loyal customers.</p>
<p>How does this work? Follow these steps:</p>
<p>Step 1: Click on &#8220;Join&#8221; at the top of the page.<br />
&#8230; &#8230;<br />
Step 2: Click &#8220;Invite Friends&#8221; at the top of the page and select your friends and click SUBMIT. Voucher Price depends upon amount of friends you invite.</p>
<p>Invite 50 Friends = $50 Voucher<br />
Invite 100 Friends = $75 Voucher<br />
Invite 200 Friends = $100 Voucher<br />
Invite 500 Friends = $250 Voucher</p>
<p>[NOTE: To select friends faster, press TAB and SPACE repeatedly.]</p>
<p>Step 3 : http:// bit.ly/ LLYkRh &lt; Go here after completing above two steps to get your Gift Card</p></blockquote>
<p>Some interesting stats:</p>
<ul>
<li>Since I first started looking at the scam about 30 minutes ago the number of attendees to the fake event has gone from 60 to 250.</li>
<li>More interestingly, in this time the number of people invited by those who&#8217;ve fallen for the scam has jumped from 3,000 to over 15,000.</li>
<li>The click rate on the &#8220;take page&#8221; (i.e. the page when the scammers actually start to make some money) is has roughly tracked Australian AEST working hours. I&#8217;ve included a picture below.</li>
<li>
<p><div id="attachment_2465" class="wp-caption aligncenter" style="width: 940px"><a href="http://caseyjohnellis.com/wp-content/uploads/2012/06/Screen-Shot-2012-06-27-at-12.41.40-PM.png"><img class="size-full wp-image-2465" title="Targets Voucher Giveaway (Limited Offer)" src="http://caseyjohnellis.com/wp-content/uploads/2012/06/Screen-Shot-2012-06-27-at-12.41.40-PM.png" alt="" width="930" height="314" /></a><p class="wp-caption-text">Targets Voucher Giveaway (Limited Offer) &#8211; Clicks to the take page of the scam.</p></div></li>
<li>53% of clicks to the &#8220;take page&#8221; are from Australia, indicating that the scam was seeded here.</li>
<li>
<p><div id="attachment_2466" class="wp-caption aligncenter" style="width: 477px"><a href="http://caseyjohnellis.com/wp-content/uploads/2012/06/Screen-Shot-2012-06-27-at-12.41.54-PM.png"><img class="size-full wp-image-2466" title="Targets Voucher Giveaway (Limited Offer)" src="http://caseyjohnellis.com/wp-content/uploads/2012/06/Screen-Shot-2012-06-27-at-12.41.54-PM.png" alt="" width="467" height="436" /></a><p class="wp-caption-text">Targets Voucher Giveaway (Limited Offer) &#8211; Click geography breakdown</p></div></li>
</ul>
<p>I&#8217;ll update this post as I find out more.</p>
<p><strong>UPDATE 1pm AEST:</strong> There are now 412 going to the &#8220;event&#8221; and 18,090 invited to the &#8220;event&#8221;.</p>
<p><strong>UPDATE 1.05pm AEST:</strong> Tracing back through the bit.ly link indicates that this guy http://bitly.com/u/jeress is the one who first shortened the link to the &#8220;take page&#8221;.</p>
<p><strong>UPDATE 2pm AEST:</strong> There are now 919 going to the &#8220;event&#8221; and 34,462 invited to the &#8220;event&#8221;.</p>
]]></content:encoded>
			<wfw:commentRss>http://tallpoppygroup.com/blog/facebook-scam-targets-voucher-giveaway-limited-offer/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>FACEBOOK SCAM &#8211; Target Gift Voucher $250 &#8211; Round 1</title>
		<link>http://tallpoppygroup.com/blog/facebook-scam-target-gift-voucher-250/</link>
		<comments>http://tallpoppygroup.com/blog/facebook-scam-target-gift-voucher-250/#comments</comments>
		<pubDate>Wed, 27 Jun 2012 12:18:20 +0000</pubDate>
		<dc:creator>tallpoppygroup</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[facebook hoax]]></category>
		<category><![CDATA[facebook scam]]></category>
		<category><![CDATA[scamvids]]></category>
		<category><![CDATA[Target Gift Voucher $250]]></category>

		<guid isPermaLink="false">http://caseyjohnellis.com/?p=2461</guid>
		<description><![CDATA[A couple of Facebook hoaxes  are doing the rounds today for a $250 Target Gift Voucher. What happens if you click it? We did. This part of the hoax turns out to be fairly benign. Clicking the link will take &#8230; <a href="http://tallpoppygroup.com/blog/facebook-scam-target-gift-voucher-250/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>A couple of Facebook hoaxes  are doing the rounds today for a $250 Target Gift Voucher. What happens if you click it? We did.</p>
<p>This part of the hoax turns out to be fairly benign. Clicking the link will take you to a Facebook community page which has been set up. That&#8217;s it.</p>
<p>There were no surveys or download with this particular hoax when we went through it&#8230; That said, once you &#8220;Like&#8221; a Facebook page you give the owner of that page the ability to contact you so there is always the possibility that this may evolve over time.</p>
<p>Have you seen any other version of this scam? Share them on the Scamvids.com Facebook page or in the comments below and we&#8217;ll check them out.</p>
<p>NOTE: We do NOT recommend following scams or hoaxes to find out where they lead unless you are a security professional working in a controlled environment.</p>
]]></content:encoded>
			<wfw:commentRss>http://tallpoppygroup.com/blog/facebook-scam-target-gift-voucher-250/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>SMS SCAMS &#8211; What Can Be Done?</title>
		<link>http://tallpoppygroup.com/blog/sms-scams-what-can-be-done/</link>
		<comments>http://tallpoppygroup.com/blog/sms-scams-what-can-be-done/#comments</comments>
		<pubDate>Sun, 17 Jun 2012 10:23:55 +0000</pubDate>
		<dc:creator>tallpoppygroup</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://caseyjohnellis.com/?p=2458</guid>
		<description><![CDATA[First things first&#8230; If you receive a spam SMS you should forward the message to the Australian Media and Communications Authority Spam SMS service on 0429 999 888. I recommend doing it a few times. This is the proper way to deal &#8230; <a href="http://tallpoppygroup.com/blog/sms-scams-what-can-be-done/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>First things first&#8230; If you receive a spam SMS you should forward the message to the Australian Media and Communications Authority Spam SMS service on 0429 999 888.</p>
<p>I recommend doing it a few times. This is the proper way to deal with this issue.</p>
<p>Now&#8230; for those of you who are the &#8220;direct action&#8221; type&#8230;</p>
<p><em><strong>Here&#8217;s a few things I&#8217;ve noticed about the recent SMS scam circulating Australia (and I&#8217;ve no doubt the world)&#8230;</strong></em></p>
<ul>
<li>The domain hosting the initial spam SMS link has always been recently registered &#8211; The Macbook Air SMS spam domain used today in Australia was bkadn.com which was registered on the 22 May 2012.</li>
<li>The domains are registered with privacy enabled &#8211; bkadn.com was protected by protecteddomainservices.com.</li>
<li>The domain is difficult to link to the legitimate content provider with whom a victim ends up signing up &#8211; In todays case the content provider was <strong>Yamoja</strong> aka <strong>Txt-services.com</strong> aka <strong>TMG</strong>.</li>
<li>The Terms &amp; Conditions used by the Yamoja appear legally discouraging enough to dissuade telcos from pursuing a refund.</li>
<li>Txt-services.com, which is either the same as or a service provider to Yamoja, reference two service desk numbers in the Yamoja signup page Terms &amp; Conditions - 1800057154 and 1300650521 &#8211; and a service email address of support@txt-services.com.</li>
</ul>
<p><em><strong>So, based on what we can find out, a few reasonably strong presumptions can be made&#8230;</strong></em></p>
<ul>
<li>The financial motive for the SMS spam campaign is an affiliate payment or other kickback from Yamoja to the spammer &#8211; otherwise there would be no spam.</li>
<li>Whoever has this SMS spam campaign set up WOULD KNOW that it&#8217;s illegal &#8211; otherwise it&#8217;s less likely they&#8217;d use a nonsensical domain name registered 2 weeks ago with privacy protection&#8230;</li>
<li>Yamoja would DEFINITELY KNOW that it&#8217;s illegal but, I assume, still pay the spammer &#8211; otherwise the spam would stop.</li>
<li>Despite the implications of this hypothesis, Yamoja have taken efforts to run a legally defensible business &#8211; they can&#8217;t be proven as the ones directly responsible for running the campaign and have T&amp;C&#8217;s set up to protect their take.</li>
<li>If Txt-services.com is a service provider to Yamoja then they PROBABLY KNOW that all of this dodgy-ness is going&#8230; OR DO THEY?</li>
</ul>
<p><em><strong>So how do we either&#8230;</strong></em></p>
<ol>
<li>Get Txt-services.com&#8217;s attention that illegal, intrusive and predatory spamming is going on or</li>
<li>Reduce the profitability of the scam to the point where they are forced to reconsider if paying dodgy affiliates is a good idea&#8230;?</li>
</ol>
<p><em><strong>AN IDEA&#8230;</strong></em></p>
<p>Their support number, 1800057154, is a toll-free number. This means that THEY PAY FOR THE CALL. If it&#8217;s long distance THEY PAY A BIT MORE. Their other support number, 1300650521, is partial pay&#8230; i.e. THEY PAY FOR SOME OF THE CALL.</p>
<ul>
<li>Call either of the two numbers between 9 and 5 AEST and ask for an operator. Complain about the spam you and you friends have been receiving. Tell them their little SMS scam is all over the Internet. Keep the operator on the line for as long as possible. The goal is to stretch out the call as long as possible and INCREASE THE COST of being the named support channel for this scam.</li>
<li>When the call ends pick up the phone and call again.</li>
<li>Lather rinse repeat.</li>
</ul>
<p>They make $10 a month off every person scammed by these SMS messages&#8230; I reckon it would not be too hard to at least make them pay some attention.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://tallpoppygroup.com/blog/sms-scams-what-can-be-done/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>SCAM REDUX &#8211; Congratulations! You are Australia’s WINNER OF THE DAY! (Macbook Air Version)</title>
		<link>http://tallpoppygroup.com/blog/scam-redux-congratulations-you-are-australias-winner-of-the-day-macbook-air-version/</link>
		<comments>http://tallpoppygroup.com/blog/scam-redux-congratulations-you-are-australias-winner-of-the-day-macbook-air-version/#comments</comments>
		<pubDate>Sun, 17 Jun 2012 09:25:19 +0000</pubDate>
		<dc:creator>tallpoppygroup</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://caseyjohnellis.com/?p=2456</guid>
		<description><![CDATA[Another SMS scam doing the rounds today. The scammer&#8217;s endgame is for you to subscribe to a premium SMS service with wallpapers, ringtones and such&#8230; Except they tell you that you&#8217;re going in the draw for a Macbook Air. Is &#8230; <a href="http://tallpoppygroup.com/blog/scam-redux-congratulations-you-are-australias-winner-of-the-day-macbook-air-version/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>Another SMS scam doing the rounds today.</p>
<p>The scammer&#8217;s endgame is for you to subscribe to a premium SMS service with wallpapers, ringtones and such&#8230; Except they tell you that you&#8217;re going in the draw for a Macbook Air. Is there a Macbook Air draw? There could be&#8230; Except they DON&#8217;T tell you that they&#8217;ll charge you $10 a week for their content until you opt-out. Don&#8217;t know how to opt out? Not their problem&#8230;</p>
<p>The URL they are asking people to visit is http://www.apple.com.au.bkadn.com. Note how it LOOKS like an Apple URL&#8230; That last part is behind a dot, but a dot is the same as a slash, right? (Answer: No. Very much no.)</p>
<p>Also interesting &#8211; if the URL is visited with a non-mobile browser, redirects you to survey and ad sites. Nice to see the scammers covering all of their bases.</p>
<p>Here&#8217;s a video walkthrough of the scam through the trusty iPhone simulator:</p>
<p><iframe src="http://www.youtube.com/embed/uvbFzclEI_A" frameborder="0" width="560" height="315"></iframe></p>
<p>Here&#8217;s the fine print of the scam:</p>
<blockquote><p>Subscription, 2msgs/wk, $10/wk + $5 to join Cancel: text STOP to 194422, Helpdesk: 1800057154 Data fees may apply<br />
YAMOJA content includes 4 games, 4 ringtones, 4 wallpapers, 4 funny sounds and 1 fun quiz | Age: 15+ only &#8211; Persons under the age of 18 years must ask for bill payer&#8217;s permission before using this service | Competition ends: 30-06-2012, Prize draw: 01-07-2012 | This service operates according to the Australian code of conduct for SMS services. By sending a sms to 194422, you acknowledge that you have read and understood and agree to be bound by these &#8216;Terms &amp; Conditions&#8217;.</p>
<p>&nbsp;</p></blockquote>
<p>Notice that the STOP number in the above text (194422) is A DIFFERENT NUMBER to the STOP number in the below text (194433). Mistake? On purpose? Not sure&#8230; But it looks suss.</p>
<div>Here are the Terms and Conditions. Note the stunted English and poor grammar. It&#8217;s not the worst I&#8217;ve seen but it looks translated. I&#8217;ve highlighted some of what I consider to be the more interesting parts&#8230;</div>
<blockquote>
<div></div>
<div>Contact &amp; FAQs Yamoja is a service of <strong>TMG 1 B.V. Address: Singel 540, 1017 AZ Amsterdam, The Netherlands</strong> 1. How to enter this service To subscribe to the service send the service keyword to the shortcode. You will then receive a free message explaining the price and frequency of the service and a description of how to opt out of the service.  <strong>Once subscribed to the service you will then receive mobile content messages at a subscription charge of $10/week plus $5 one off joining fee.</strong> 2. I did not send the keyword of the service after filling in my mobile number. Please send the keyword to the service number in order to activate your subscription. 3. What are the costs of the subscription service? This is a subscription-based mobile content service. You will be charged a $5 one off joining fee plus $10 per week incl. GST The costs will be charged directly to your mobile phone account as you send and receive each SMS text message. For further details, please read the full Terms &amp; Conditions listed on this website. 4. How do I unsubscribe from the service? There are three ways to stop the service: 1: <strong>Via text/sms: You can opt-out at any time by sending &#8216;STOP&#8217; to 194433.</strong> You will be unsubscribed immediately. 2: Via e-mail: You can send an e-mail containing the mobile number that needs to be unsubscribed to support@txt-services.com. You will be unsubscribed within 24-hours (between business hours, otherwise on Monday after the weekend). 3: Via telephone: You can call the live help line number 1300 650 521 (standard rate, during business hours). You will be unsubscribed within 24-hours (on business days). 4: Via the unsubscription form 5. How long will I be subscribed? This is a subscription service. You can end this subscription at any time by sending STOP to 194433. 6. I have never subscribed myself to your service, but I do receive text messages. The only way to subscribe to our service, is by sending in a confirmation text message to 194433. After you have confirmed your subscription, the service will be activated. 7. According to which legislation do you work? <strong>This is a premium text service, and is regulated via the Premium Services Determination of the Australian Communications and Media Authority.</strong> 8. I receive Spam, how can I stop this? Yamoja does not send out emails. Our affiliate networks refer to our products in their promotional material, which are distributed through various mediums including email. If you have signed up with such a network to receive promotional material via email, you could therefore receive a Yamoja offer. If you do not wish to receive these emails, you should contact the sender of the email and state your request. In most cases, there will be an unsubscription button within these emails that will allow you to block further communication from a particular party. Alternatively, you can block the sender of this email with a function within your own email application (Hotmail, Outlook, Gmail etc). 9. <strong>How can I stop pop-ups?</strong> Some computer software is offered free of charge and comes with integrated advertising. Such advertising allow the software developers to offer the software for free, and can be present in many applications including download accelerators, weather forecast tools, and music download applications. <strong>Our affiliate networks can promote Yamoja services via these applications, which will appear as a pop-up in screen.</strong> Also, some websites generate their own pop-ups. Most of the time, this is done to enable them to continue to offer their products/information free of charge. <strong>Your can compare this situation to free to air television, where commercials are broadcasted during shows to cover the cost of broadcasting those shows. Pop-ups are harmless and can be closed in the same way as every other window.</strong> If however, you wish to stop these pop-ups, you can either uninstall the application causing them, or install a pop-up blocker such as AdAware. 10. Contact If you have any further questions, please contact us. The best way to contact us is via email. The e-mail address for 194433 services is: support@txt-services.com Alternatively, you can call us on our helpline on: 1300 650 521. Please don&#8217;t forget to mention your mobile phone number.</div>
</blockquote>
]]></content:encoded>
			<wfw:commentRss>http://tallpoppygroup.com/blog/scam-redux-congratulations-you-are-australias-winner-of-the-day-macbook-air-version/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>MySQLCheck.com &#8211; In ur MySQL, checking ur&#8230; MySQL</title>
		<link>http://tallpoppygroup.com/blog/mysqlcheck-com-in-ur-mysql-checking-ur-mysql/</link>
		<comments>http://tallpoppygroup.com/blog/mysqlcheck-com-in-ur-mysql-checking-ur-mysql/#comments</comments>
		<pubDate>Tue, 12 Jun 2012 07:53:40 +0000</pubDate>
		<dc:creator>tallpoppygroup</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://caseyjohnellis.com/?p=2453</guid>
		<description><![CDATA[Check out this website by Mark Wickendam. Let it be said first up that I think this site is awesome. I lol&#8217;d hard, visited it again, lol&#8217;d hard again, and so on. As one of the guys behind http://rdpcheck.com (a legit &#8230; <a href="http://tallpoppygroup.com/blog/mysqlcheck-com-in-ur-mysql-checking-ur-mysql/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>Check out <a href="http://mysqlcheck.com/" target="_blank">this website</a> by <a href="http://blog.offensivecoder.com/" target="_blank">Mark Wickendam</a>.</p>
<p>Let it be said first up that I think this site is awesome. I lol&#8217;d hard, visited it again, lol&#8217;d hard again, and so on.</p>
<p>As one of the guys behind <a href="http://rdpcheck.com" target="_blank">http://rdpcheck.com</a> (a legit site and I suspect one of the butts of the joke made by MySQLCheck) I&#8217;d like to offer a brief counterpoint&#8230; I&#8217;m going to assume that this post will mostly get read by security folks so that is my intended audience (although I encourage your to read on even if you&#8217;re not&#8230;):</p>
<p>Here&#8217;s the deal&#8230; If your daemon/service/vulnerable-thingy is exposed to the public Internet the bad guys and their evil bots already know it&#8217;s there.</p>
<p>If for some reason the bad guys don&#8217;t know its there they are able to <em>(and going to, especially after a juicy vulnerability like CVE-2012-2122 comes out)</em> find it &#8211; and that without going to the hassle of building a malicious &#8220;test-thyself&#8221; website to harvest details. Sure, there is extra data that can be harvested and used to prfioritize targeting (think: a correlated .mil email with a vulnerability might receive special attention), but with it comes the extra effort of the build and a greatly multiplied risk of being caught.</p>
<p>There are much quicker way to collect targets&#8230; and you&#8217;ve saved yourself the hassle of marketing your damn website which you&#8217;ve built but no-one seems to be visiting.</p>
<p>If you have MySQL open to the public Internet you&#8217;ve automatically failed Infrastructure Security 101 and by extension you are likely not to fare too well in Patching 101.  If, as an admin, you hear about a bug like this and your first response is to visit an untrusted third party website that you saw someone tweet about to assess your security posture then you are probably in need of some help&#8230; Right?</p>
<p>That&#8217;s why I think these types of self-serve security audit sites are useful and have their place for &#8216;getting the word out to the admin who has no idea how big his problem is&#8217;.<strong> </strong></p>
<p><strong>These sites generate publicity around an issue that would otherwise stay inside the security echo chamber&#8230; <strong>mostly because they offer something for nothing (which, not coincidentally, is the same social phenomenon that scammers have learnt to leverage with great effect).</strong></strong></p>
<p><strong>THAT SAID&#8230;</strong> I absolutely agree with Mark that there needs to be a better way to get this information into the hands of people who need it. <a href="http://rdpcheck.com" target="_blank">RDPCheck</a> was helped along with &#8216;attributed trust&#8217; from the the spruiking it got from the tech media in .au and some reasonably credible Twitter types &#8211; but the simple fact is we could have been doing ANYTHING with that data&#8230;</p>
<p>Food for thought. Any suggestions on how to better this are welcomed.</p>
<p>Trackback: <a href="http://blog.offensivecoder.com/2012/06/11/mysqlcheck-com-its-so-wrong-but-so-right/" target="_blank">http://blog.offensivecoder.com/2012/06/11/mysqlcheck-com-its-so-wrong-but-so-right/</a></p>
]]></content:encoded>
			<wfw:commentRss>http://tallpoppygroup.com/blog/mysqlcheck-com-in-ur-mysql-checking-ur-mysql/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>SMS SCAM WALKTHROUGH &#8211; Congratulations! You are Australia&#8217;s WINNER OF THE DAY!</title>
		<link>http://tallpoppygroup.com/blog/sms-scam-walkthrough-congratulations-you-are-australias-winner-of-the-day/</link>
		<comments>http://tallpoppygroup.com/blog/sms-scam-walkthrough-congratulations-you-are-australias-winner-of-the-day/#comments</comments>
		<pubDate>Thu, 31 May 2012 13:43:33 +0000</pubDate>
		<dc:creator>tallpoppygroup</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[+1 (516) 448-0749]]></category>
		<category><![CDATA[Congratulations! You are Australia's WINNER OF THE DAY!]]></category>
		<category><![CDATA[scam video]]></category>
		<category><![CDATA[scamvids]]></category>
		<category><![CDATA[SMS SCAM WALKTHROUGH - Congratulations! You are Australia's WINNER OF THE DAY!]]></category>
		<category><![CDATA[www.apple.au.mobilegiveawayinsanity.com]]></category>
		<category><![CDATA[www.apple.com.au.wonacontest.com]]></category>

		<guid isPermaLink="false">http://caseyjohnellis.com/?p=2450</guid>
		<description><![CDATA[UPDATE 17th JUNE 2012: There is a fresh round of this scam going on in Australia right now. If you receive the text message and would like to help out please paste the content of the text in the comments &#8230; <a href="http://tallpoppygroup.com/blog/sms-scam-walkthrough-congratulations-you-are-australias-winner-of-the-day/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p><strong>UPDATE 17th JUNE 2012:</strong> There is a fresh round of this scam going on in Australia right now. If you receive the text message and would like to help out please paste the content of the text in the comments below or email it to cje@tllppy.gp. Thanks!</p>
<p>UPDATE 18th JUNE 2012: I&#8217;ve posted a new video and walkthrough of the current Macbook Air scam going around in Australia <a href="http://caseyjohnellis.com/scam-redux-congratulations-you-are-australias-winner-of-the-day-macbook-air-version/" target="_blank">here</a> and some ideas on how citizens can combat the scammers <a href="http://caseyjohnellis.com/sms-scams-what-can-be-done/" target="_blank">here</a>.</p>
<p>This one comes courtesy of my mum who received this SMS message today, became suspicious, and forwarded it through to me.</p>
<blockquote><p>Congratulations! You are Australia&#8217;s WINNER OF THE DAY! Go to http://www.apple.au.mobilegiveawayinsanity.com to claim your prize. Must claim within 24 hrs.</p></blockquote>
<p>Sure enough, it is a Premium SMS scam. I ran through the scam on an iPhone simulator and recorded it for your curiosity abatement.</p>
<p>The message was sent from +1 (516) 448-0749, which is probably some poor schmuck&#8217;s internet enabled PABX that has been compromised &#8211; they&#8217;re in for a bad time when the phone bill rolls around next month.</p>
<p><iframe src="http://www.youtube.com/embed/MQXQoVWgj68" frameborder="0" width="560" height="360"></iframe></p>
<p>Here&#8217;s the breakdown:</p>
<ul>
<li>If you visit the link via an iPhone or other mobile platform it will take you through to an iPhone 4S giveaway page.</li>
<li>There you will be asked for your mobile phone number.</li>
<li>If you provide your number a confirmation message will be sent to your mobile.</li>
<li>If you respond to this message you&#8217;ll &#8220;go in the draw&#8221; for an iPhone 4S.</li>
</ul>
<p>The bit that gets left to the fine print is that you&#8217;ll ALSO be subscribed to a premium SMS service for an initial charge of $13.20 then $13.20 every 2 days until you opt-out. Note that when you get to the &#8220;ooo shiny free iPhone&#8221; screen these details are conveniently hidden from view&#8230;</p>
<p>Here is said fine print&#8230;</p>
<blockquote><p>© 2012 WOW Interactive all rights reserved Terms &amp; Conditions, Info &amp; Costs and Privacy Policy * Terms and conditions: By signing up for this service and replying with a confirmation message sent to your mobile handset, you acknowledge that you are subscribing to our service. Telstra, Optus, Vodafone and Virgin users will receive billed messages from 19712121 every 2 days. Hutchison users will receive billed messages from 19712121 every 7 days. By opting in, Telstra, Optus, Vodafone and Virgin users agree to join a subscription service charged at $13.20 every 2days + $13.20 to join. 25c per message sent. Hutchinson users will be charged $13.20 every 7 days + $13.20 to join.. Data charges may apply based on the mobile plan. Please check with the carriers for data charges. You may stop this subscription and optout from marketing messages send stop to 19900321 or 19712121. Alternatively you can call the Helpline number 1300366702. You must be the owner of this device and be at least 18 years old. Standard/other text messaging rates may apply. Service promoted by WOW Interactive.Please check if your handset is Compatible before subscribing.</p></blockquote>
<p>Note that the monthly cost of this service works out to be about $211.20&#8230; You might as well sign up for a new iPhone on a mobile plan like normal people&#8230;</p>
<p>Crooks. Trying to scam my mum with this bollocks.</p>
<p>IF THIS IS HELPFUL TO YOU PLEASE SHARE AND LIKE THE VIDEO AND THE POST. IT HELPS GET THE WORD OUT. THANKS!</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://tallpoppygroup.com/blog/sms-scam-walkthrough-congratulations-you-are-australias-winner-of-the-day/feed/</wfw:commentRss>
		<slash:comments>163</slash:comments>
		</item>
	</channel>
</rss>
