Media releases are provided as is by companies and have not been edited or checked for accuracy. Any queries should be directed to the company itself.
  • 1 July 2011 11:01

AVG (AU/NZ) Warns Skype Users: Beware of New Combined Voice and Text Attacks.

AVG (AU/NZ) Pty Ltd, the distributor of the award-winning AVG anti-virus and Internet security software in Australia, New Zealand and South Pacific, is warning of newly emerging social engineering attacks on users of the popular Skype phone and messaging service.

Local reports are increasing of Skype users being targeted by so-called ‘vishing’ (or voice phishing) attacks — a new variation of e-mail-based spear phishing. This new kind of attack is particularly insidious in that it combines both voice and text to try and dupe users into thinking they are receiving legitimate calls.

While online, users are receiving automated voice messages via Skype saying their PCs have been checked for viruses, that a ‘fatal virus’ was found and advising them to repair the problem with a lure which is actually to a malicious web site.

The aim of the cyber criminals is to get their victims to download malicious software disguised as security updates or rogue antivirus programs onto their computers. Or to scam users into providing personal information that can be used to break into their financial, social networking and other online accounts.

Lloyd Borrett, Security Evangelist at AVG (AU/NZ), advises: “While Skype works hard to prevent these kinds of attacks, users need to be vigilant. Although many users have learnt how to spot and resist suspect e-mails and Internet chat messages, we aren’t conditioned to be as wary of phone calls.

“With land lines and mobile phone calls, all contact with unwanted callers can be cut simply by hanging up. But because Skype calls are placed over an Internet connection, once the digital connection is established, it can be used as an open conduit regardless of whether you’re participating in an online call or not.”

Borrett’s advice is to hang up immediately on the Skype call, block the user and report the user for abuse. “By reporting abuse by the user, Skype's automated systems for blocking malicious users will be updated and you’ll be helping to protect the greater Skype community.

“As a general rule, don’t accept calls from sources you aren’t familiar with. Certainly don't follow any instructions from unknown parties, just as you wouldn't click on or visit unknown URLs, or download attachments that seem suspicious.”

As a preventative measure AVG (AU/NZ) suggests changing your Skype account settings as follows:

• Open Skype and click on the ‘Skype’ tab to view the drop down menu

• Click on the ‘Privacy’ option and the ‘Skype – Options’ panel should pop-up

• The ‘Privacy settings’ tab should already be open, but if not click on it

• Click on the ‘Show advanced options’ button

• Under ‘Allow calls from…’ click on the ‘People in my Contact list only’ radio button

• Under ‘Automatically receive video and screen shots from…’ click on the ‘People in my Contact list only’ or ‘No one’ radio buttons

• Under ‘Show that I have video to…’ click on the ‘People in my Contact list only’ or ‘No one’ radio buttons

• Click on the ‘Calls’ tab

• Click on the ‘Show advanced options’ button

• Under ‘Allow calls from…’ click on the ‘People in my Contact list only’ radio button

• Make sure the ‘Answer incoming calls automatically’ check box is unchecked

• Click on the ‘IM & SMS’ tab

• Click on the ‘Show advanced options’ button

• Under ‘Allow IMs from…’ click on the ‘People in my Contact list only’ radio button

• Click on the ‘Save’ button at the bottom right of the panel

If you give out your Skype number frequently, or it is not otherwise practical to only accept calls from known contacts, ensure the ‘Answer incoming calls automatically’ option is not selected, as described above, to retain the option of denying calls from suspicious sources.

AVG (AU/NZ) has a comprehensive range of security tips on its web site at http://www.avg.com.au/resources/security-tips/. For video tips from AVG (AU/NZ), see http://www.youtube.com/user/avgaunz.

Keep in touch with AVG (AU/NZ)

• For breaking news, follow AVG (AU/NZ) on Twitter at www.twitter.com/avgaunz

• Join our Facebook community at www.facebook.com/avgaunz

### ENDS ###

About AVG (AU/NZ) Pty Ltd — www.avg.com.au

Based in Melbourne, AVG (AU/NZ) Pty Ltd distributes the AVG range of anti-virus and Internet Security products in Australia, New Zealand and the South Pacific. AVG software solutions provide complete real-time protection against the malware, viruses, spam, spyware, adware, worms, Trojans, phishing and exploits used by cyber-criminals, hackers, scammers and identity thieves. AVG protects everything important and personal inside computers — documents, account details and passwords, music, photos and more — all while allowing users to work, bank, shop and play games online in safety. AVG provides outstanding technical solutions and exceptional value for consumers, small to medium business and enterprise clients. AVG delivers always-on, always up-to-date protection across desktop, and notebook PCs, plus file and e-mail servers in the home and at work in SMBs, corporations, government agencies and educational institutions.

Talk to Us

Media Contacts:

Lloyd Borrett AVG (AU/NZ) 03 9581 0807

Shuna Boyd BoydPR 02 9418 8100