A new tool called Facebook Hacker is drawing considerable attention of ill-intentioned people, looking for passwords and usernames that belongs to others.
The tool is said to be very intuitive and extremely simple to configure and use.
Loredana Botezatu at Help Net Security writes:
“There are only two fields that need filling in: a disposable e-mail and a password that will eventually constitute the location where the stolen information is to be delivered to,” says Loredana Botezatu, “After clicking the “build” button, a server.exe file is created and deposited into the facebook Hacker folder along with the initial files. This server.exe file is to be sent to the intended victims.”
After clicking the “build” button, a server.exe file is created and deposited into the facebook Hacker folder along with the initial files. This server.exe file is to be sent to the intended victims.
The program, unlike most malware, doesn’t monitor keystrokes to steal passwords and ids. It can extract info by just searching for key words saved by the user’s web browser.
The solution is to disable auto-remember or auto-complete features in all programs including your web browser, according Paul Ducklin, Asia Pacific head of technology at Sophos.
It is also highly advisable to keep different passwords for different accounts – social accounts, mail accounts etc. This will help in keep your other accounts safe even if one of your account is compromised.
Last but not the least, update your anti-virus program frequently and scan any attachments received via messengers or mails before running them.