A nice way to phish

Warning: there’s a random message from your Facebook friend list with a link to a site with the keyword “picoband” on the url. It’s a phising site that design to steal you account password.

fish hook

Remember how Gmail or Yahoo automatically changes words or transform it into a link if the word resemble an address of a site. Well the idea behind this scheme uses this trick to capture a mass of facebook account to click the message in their email inbox. Well i did click it too :) the message wouldn’t work if it’s open from the facebook itself.
but i didn’t enter my account info though, because when i was trying to unblock noscript in my Firefox, the link doesn’t forbid Facebook but forbid picoband. So lucky me for using noscript :)

Pic by slayer23

Doin It Wrong?

i found it odd that facebook has a double breadcrumb that leads to the same page, even thought the links is different, the page where its headed is the same, its been a long time but no one seems to bother to wrote it. Here is a couple of navigation that i found linking the same page. the first one is

The home page, clicking the home button and the facebook button leads to the same page, why? seeing that it use “ref” keyword on the string of the link, at first i was thinking maybe it’s for surveys or something, but after a year using facebook, does it still need survey for that function?

The second one is, the breadcrumb on the view all friends page, using see all and clicking the amount of your friends lead to the same page too, i dont know why it bother to use two link that leads to the same page (and positioned damn near too).

There are maybe more of this on other page, but i never intended to research about it, i use facebook only to connect with my friends and never intended to use it other than that. It just bother me, seeing it every time i use facebook.