Feeds

Spammers latch onto Ping to pump iPhone survey scams

Quick off the mark

Choosing a cloud hosting partner with confidence

Spammers have been quick off the mark in exploiting Apple's new iTunes social network to punt survey scams.

Ping only launched on Wednesday but is already being deluged with scams and spam messages, some attempting to dupe surfers into wasting their time completing online surveys under the false promise that they stand a chance of receiving a free iPhone in return for their efforts.

The service, built into the latest version of iTunes, gives users the ability to build networks of friends and share musical tastes or make suggestions. It also allows users to post comments, a facility spammers have been quick to latch onto and exploit for their own nefarious purposes.

Survey scams have become endemic on Facebook over recent months. A lack of filtering on Ping means the fraudsters have gained a new forum through which to peddle scams, net security firm Sophos warns.

"Most of the security industry has been pointing out the migration of spam from an email-only venture to blog/forum comments, Facebook, Twitter and other Web 2.0 platforms," writes Chester Wisniewski of Sophos. "But apparently Apple didn't consider this when designing Ping, as the service implements no spam or URL filtering. It is no big shock that less than 24 hours after launch, Ping is drowning in scams and spams."

Oddly, Apple seems to have anticipated a certain degree of mischief, since uploaded profile pictures only appear after approval, a move designed to prevent Ping plumbing the mucky depths of Chatroulette. Apple is likely to be filtering out other forms of offensive content, and these might be tweaks to block spam, according to Wisniewski. In the meantime, Ping users are advised to be wary, especially about suspiciously generous offers.

More details of the Ping spam attacks, including screenshots, can be found in a write-up here. ®

Remote control for virtualized desktops

More from The Register

next story
UK smart meters arrive in 2020. Hackers have ALREADY found a flaw
Energy summit bods warned of free energy bonanza
DRUPAL-OPCALYPSE! Devs say best assume your CMS is owned
SQLi hole was hit hard, fast, and before most admins knew it needed patching
Knock Knock tool makes a joke of Mac AV
Yes, we know Macs 'don't get viruses', but when they do this code'll spot 'em
Feds seek potential 'second Snowden' gov doc leaker – report
Hang on, Ed wasn't here when we compiled THIS document
Mozilla releases geolocating WiFi sniffer for Android
As if the civilians who never change access point passwords will ever opt out of this one
Why weasel words might not work for Whisper
CEO suspends editor but privacy questions remain
prev story

Whitepapers

Cloud and hybrid-cloud data protection for VMware
Learn how quick and easy it is to configure backups and perform restores for VMware environments.
Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Intelligent flash storage arrays
Tegile Intelligent Storage Arrays with IntelliFlash helps IT boost storage utilization and effciency while delivering unmatched storage savings and performance.
Website security in corporate America
Find out how you rank among other IT managers testing your website's vulnerabilities.