New Skype Vulnerability Discovered

588
vote

A new phishing attack demonstrated by the folks over at Secure Science allows hackers to gain access to a user’s Skype client and then pose as a financial institution or proxy outbond calls. The technique is called “SkypeSkrayping” and is similar to a phishing attacking only a bit more interactive:

According to the report, attackers would only have to do the following:

[SkypeSkrayper: Hello, I apologize for the disruption, but this is a friendly reminder that Skype is having a special today. We are offering $25.00 extra credit in your SkypeOut account if you do "X". We will never ask you for your username or password over Skype Instant Messaging.
Continue reading here....