<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: strangers]]></title>
    <link>http://securityratty.com/tag/strangers</link>
    <description></description>
    <pubDate>Fri, 08 Feb 2008 03:31:00 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[The Good Get Conned-When Trust is Biological]]></title>
      <link>http://securityratty.com/article/3190bf9fa3c48c293c4965ef526cb117</link>
      <guid>http://securityratty.com/article/3190bf9fa3c48c293c4965ef526cb117</guid>
      <description><![CDATA[Bruce Schnier linked to an interesting article a while back, discussing how brain chemistry causes you to trust people when demonstrate that they trust you, especially when theyre relying on you and...]]></description>
      <content:encoded><![CDATA[<p>Bruce Schnier<a rel="nofollow" target="_blank" href="http://www.schneier.com/blog/archives/2008/11/the_neuroscienc.html"> linked </a>to an interesting article a while back, discussing how brain chemistry causes you to trust people when demonstrate that they trust you, especially when they&#8217;re relying on you and may be vulnerable&#8230;interesting stuff:</p>
<blockquote><p>THOMAS is a powerful brain circuit that releases the neurochemical oxytocin when we are trusted and induces a desire to reciprocate the trust we have been shown&#8211;even with strangers. The key to a con is not that you trust the conman, <em>but that he shows he trusts you</em>. Conmen ply their trade by appearing fragile or needing help, by seeming vulnerable. Because of THOMAS, the human brain makes us feel good when we help others&#8211;this is the basis for attachment to family and friends and cooperation with strangers</p></blockquote>
<p>So my question: if real-life cons can easily<a rel="nofollow" target="_blank" href="http://blogs.psychologytoday.com/blog/the-moral-molecule/200811/how-run-a-con"> scam people</a> by appearing to depend on them, how does this affect the scams we see on the Net? Clearly some online cons rely on this method &#8212; the Nigerian bank scam being a prime example. It seems like social engineering scams particularly rely on this method &#8212; but not all scams. And of course many other vulnerabilities just seem to rely on people&#8217;s habits to just click links willy-nilly online, which is an impersonal event. If the net were a more personal place, we might see many more of those kinds of scams.</p>]]></content:encoded>
      <pubDate>Mon, 01 Dec 2008 11:00:35 +0000</pubDate>
      <category domain="http://securityratty.com/tag/trust">trust</category>
      <category domain="http://securityratty.com/tag/trust people">trust people</category>
      <category domain="http://securityratty.com/tag/online cons rely">online cons rely</category>
      <category domain="http://securityratty.com/tag/rely">rely</category>
      <category domain="http://securityratty.com/tag/scams">scams</category>
      <category domain="http://securityratty.com/tag/easily scam people">easily scam people</category>
      <category domain="http://securityratty.com/tag/nigerian bank scam">nigerian bank scam</category>
      <category domain="http://securityratty.com/tag/powerful brain circuit">powerful brain circuit</category>
      <category domain="http://securityratty.com/tag/impersonal event">impersonal event</category>
      <source url="http://feeds.feedburner.com/~r/itsecurity/~3/471798036/">The Good Get Conned-When Trust is Biological</source>
    </item>
    <item>
      <title><![CDATA[Arkansas Couple Sues McDonalds for Using Private Nude Photos in Online Ads]]></title>
      <link>http://securityratty.com/article/51fc8263d6d9f3cfbdbd51da0e6e8237</link>
      <guid>http://securityratty.com/article/51fc8263d6d9f3cfbdbd51da0e6e8237</guid>
      <description><![CDATA[When an Arkansas couple visited a local McDonalds in June, they got more than just their favorite burger. The couple apparently left their cell phone at the store, and even though it was returned,...]]></description>
      <content:encoded><![CDATA[<p>When an Arkansas couple visited a local McDonald&#8217;s in June, they got more than just their favorite burger. The couple apparently left their cell phone at the store, and even though it was returned, their personal information had already been compromised&#8211;and put online along with nude photos:</p>
<blockquote><p>Staff promised to keep the phone safely until [the couple came to retrieve it].</p>
<p>However, after Philip Sherman retrieved the phone, his wife began receiving threatening calls and messages from strangers. This caused the Shermans’ to become suspicious about what had occurred with the phone.</p>
<p>Soon afterward the Shermans’ found the private photos that Tina Sherman had sent to her husband’s phone published on the Internet along with their names, address, and phone numbers. Pictures of Tina Sherman were altered to contain McDonald’s franchise logos, along with slogans such as, “I’m lovin’ it,” and “Hot as McDonald’s coffee.” The photos were located on several different sites online, but have since been removed.</p></blockquote>
<p>The Shermans are suing for over 3 million dollars in damages, along with relocation costs.</p>
<p>Read the <a rel="nofollow" target="_blank" href="http://www.ecanadanow.com/news/curiosity/couple-to-sue-mcdonalds-after-racy-photo-stolen-20081125.html">full article</a> here.</p>]]></content:encoded>
      <pubDate>Tue, 25 Nov 2008 09:38:50 +0000</pubDate>
      <category domain="http://securityratty.com/tag/arkansas couple">arkansas couple</category>
      <category domain="http://securityratty.com/tag/couple">couple</category>
      <category domain="http://securityratty.com/tag/cell phone">cell phone</category>
      <category domain="http://securityratty.com/tag/phone">phone</category>
      <category domain="http://securityratty.com/tag/nude photos">nude photos</category>
      <category domain="http://securityratty.com/tag/photos">photos</category>
      <category domain="http://securityratty.com/tag/phone safely">phone safely</category>
      <category domain="http://securityratty.com/tag/online">online</category>
      <category domain="http://securityratty.com/tag/husbands phone">husbands phone</category>
      <source url="http://feeds.feedburner.com/~r/itsecurity/~3/465465087/">Arkansas Couple Sues McDonalds for Using Private Nude Photos in Online Ads</source>
    </item>
    <item>
      <title><![CDATA[The Neuroscience of Cons]]></title>
      <link>http://securityratty.com/article/1612b3705bc2d5e59aa4c3d5c4ee99ae</link>
      <guid>http://securityratty.com/article/1612b3705bc2d5e59aa4c3d5c4ee99ae</guid>
      <description><![CDATA[Fascinating : The key to a con is not that you trust the conman, but that he shows he trusts you . Conmen ply their trade by appearing fragile or needing help, by seeming vulnerable. Because of THOMAS...]]></description>
      <content:encoded><![CDATA[<p><a href="http://blogs.psychologytoday.com/blog/the-moral-molecule/200811/how-run-a-con">Fascinating</a>: </p>

<blockquote>The key to a con is not that you trust the conman, <i>but that he shows he trusts you</i>. Conmen ply their trade by appearing fragile or needing help, by seeming vulnerable. Because of THOMAS [The Human Oxytocin Mediated Attachment System], the human brain makes us feel good when we help others--this is the basis for attachment to family and friends and cooperation with strangers. "I need your help" is a potent stimulus for action.</blockquote>

<p>This is interesting.  They say that all cons rely on the mark's greed to work. But this short essay implies that greed is only a secondary factor.</p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=xsRHN"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=xsRHN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=7DDsN"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=7DDsN" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Tue, 18 Nov 2008 03:32:42 +0000</pubDate>
      <category domain="http://securityratty.com/tag/attachment system">attachment system</category>
      <category domain="http://securityratty.com/tag/attachment">attachment</category>
      <category domain="http://securityratty.com/tag/short essay implies">short essay implies</category>
      <category domain="http://securityratty.com/tag/cons rely">cons rely</category>
      <category domain="http://securityratty.com/tag/human oxytocin">human oxytocin</category>
      <category domain="http://securityratty.com/tag/greed">greed</category>
      <category domain="http://securityratty.com/tag/secondary factor">secondary factor</category>
      <category domain="http://securityratty.com/tag/human brain">human brain</category>
      <category domain="http://securityratty.com/tag/potent stimulus">potent stimulus</category>
      <source url="http://www.schneier.com/blog/archives/2008/11/the_neuroscienc.html">The Neuroscience of Cons</source>
    </item>
    <item>
      <title><![CDATA[Terrorists and Child Porn, Oh My!]]></title>
      <link>http://securityratty.com/article/9aba933602066f28498b9028fb513efc</link>
      <guid>http://securityratty.com/article/9aba933602066f28498b9028fb513efc</guid>
      <description><![CDATA[It's the ultimate movie-plot threat: terrorists using child porn : It is thought Islamist extremists are concealing messages in digital images and audio, video or other files
Police are now...]]></description>
      <content:encoded><![CDATA[<p>It's the ultimate movie-plot threat: <a href="http://www.telegraph.co.uk/news/uknews/3215115/Terrorists-use-child-porn-to-exchange-information.html">terrorists</a> <a href="http://www.timesonline.co.uk/tol/news/uk/crime/article4959002.ece">using</a> <a href="http://www.foxnews.com/story/0,2933,439641,00.html">child porn</a>:</p>

<blockquote>It is thought Islamist extremists are concealing messages in digital images and audio, video or other files.

<p>Police are now investigating the link between terrorists and paedophilia in an attempt to unravel the system.</p>

<p>It could lead to the training of child welfare experts to identify signs of terrorist involvement as they monitor pornographic websites.</blockquote></p>

<p>Of course, terrorists and strangers preying on our children are two of the things that cause the most fear in people.  Put them together, and there's no limit to what sorts of laws you can get passed.</p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=NHbHM"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=NHbHM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=i9l7M"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=i9l7M" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Wed, 22 Oct 2008 08:57:17 +0000</pubDate>
      <category domain="http://securityratty.com/tag/terrorists">terrorists</category>
      <category domain="http://securityratty.com/tag/child porn">child porn</category>
      <category domain="http://securityratty.com/tag/child welfare experts">child welfare experts</category>
      <category domain="http://securityratty.com/tag/monitor pornographic websites">monitor pornographic websites</category>
      <category domain="http://securityratty.com/tag/islamist extremists">islamist extremists</category>
      <category domain="http://securityratty.com/tag/movie-plot threat">movie-plot threat</category>
      <category domain="http://securityratty.com/tag/digital images">digital images</category>
      <category domain="http://securityratty.com/tag/terrorist involvement">terrorist involvement</category>
      <category domain="http://securityratty.com/tag/signs">signs</category>
      <source url="http://www.schneier.com/blog/archives/2008/10/terrorists_and_2.html">Terrorists and Child Porn, Oh My!</source>
    </item>
    <item>
      <title><![CDATA[Random Killing on a Canadian Greyhound Bus]]></title>
      <link>http://securityratty.com/article/bc4696b6a26761ebc94ae2e2e488c3b0</link>
      <guid>http://securityratty.com/article/bc4696b6a26761ebc94ae2e2e488c3b0</guid>
      <description><![CDATA[After a random and horrific knife decapitation on a Greyhound bus last week
does this surprise anyone
A grisly slaying on a Greyhound bus has prompted calls for tighter security on Canadian bus lines,...]]></description>
      <content:encoded><![CDATA[<p>After a <a href="http://www.saskatoonhomepage.ca/index.php?option=com_content&task=view&id=13065&Itemid=374">random and horrific knife decapitation</a> on a Greyhound bus last week, <blockquote><br />
does <a href="http://www.cbc.ca/canada/story/2008/08/01/bus-slaying-security.html">this</a> surprise anyone:</p>

<p><bockquote>A grisly slaying on a Greyhound bus has prompted calls for tighter security on Canadian bus lines, despite the company and Canada's transport agency calling the stabbing death a tragic but isolated incident.</p>

<p>Greyhound spokeswoman Abby Wambaugh said bus travel is the safest mode of transportation, even though bus stations do not have metal detectors and other security measures used at airports.</blockquote></p>

<p>Despite editorials telling people <a href="http://lfpress.ca/newsstand/Opinion/Editorials/2008/08/02/6337056-sun.html">not to overreact</a>, it's <a href="http://thechronicleherald.ca/Canada/1070711.html">easy to</a>:</p>

<blockquote>"Hearing about this incident really worries me," said Donna Ryder, 56, who was waiting Thursday at the bus depot in Toronto.

<p>"I’m in a wheelchair and what would I be able to do to defend myself? Probably nothing. So that’s really scary."</p>

<p>Ryder, who was heading to Kitchener, Ont., said buses are essentially the only way she can get around the province, as her wheelchair won’t fit on Via Rail trains. As it is her main option for travel, a lack of security is troubling, she said.</p>

<p>"I guess we’re going to have to go the airline way, maybe have a search and baggage check, X-ray maybe," she said.</p>

<p>"Really, I don’t know what you can do about security anymore."</blockquote></p>

<p>Of course, airplane security <a href="http://www.sindark.com/2008/08/01/greyhound-bus-security/">won't work on busses</a>.</p>

<p>But -- more to the point -- <a href="http://www.schneier.com/blog/archives/2007/05/rare_risk_and_o_1.html">this essay</a> I wrote on overreacting to rare risks applies here:</p>

<blockquote>People tend to base risk analysis more on personal story than on data, despite the old joke that "the plural of anecdote is not data." If a friend gets mugged in a foreign country, that story is more likely to affect how safe you feel traveling to that country than abstract crime statistics. 

<p>We give storytellers we have a relationship with more credibility than strangers, and stories that are close to us more weight than stories from foreign lands. In other words, proximity of relationship affects our risk assessment. And who is everyone's major storyteller these days? Television.</blockquote></p>

<p>Which is why Canadians are talking about increasing security on long-haul busses, and not Americans.</p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=GUhTfK"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=GUhTfK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=pwQX0K"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=pwQX0K" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Mon, 04 Aug 2008 02:19:40 +0000</pubDate>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/tighter security">tighter security</category>
      <category domain="http://securityratty.com/tag/airplane security">airplane security</category>
      <category domain="http://securityratty.com/tag/greyhound bus">greyhound bus</category>
      <category domain="http://securityratty.com/tag/security measures">security measures</category>
      <category domain="http://securityratty.com/tag/security anymore">security anymore</category>
      <category domain="http://securityratty.com/tag/abstract crime statistics">abstract crime statistics</category>
      <category domain="http://securityratty.com/tag/travel">travel</category>
      <category domain="http://securityratty.com/tag/rare risks applies">rare risks applies</category>
      <source url="http://www.schneier.com/blog/archives/2008/08/random_killing.html">Random Killing on a Canadian Greyhound Bus</source>
    </item>
    <item>
      <title><![CDATA[Nasal Spray Increases Trust for Strangers]]></title>
      <link>http://securityratty.com/article/3c6eeefa3e8117c3e54f8f7cdca6a0cf</link>
      <guid>http://securityratty.com/article/3c6eeefa3e8117c3e54f8f7cdca6a0cf</guid>
      <description><![CDATA[Okay; this'll be fun. What's the most creative abuse for this that you can think of ? Previous studies have shown that participants in &quot;trust games&quot; took greater risks with their money after inhaling...]]></description>
      <content:encoded><![CDATA[<p>Okay; this'll be fun.  What's the most creative abuse for <a href="http://news.bbc.co.uk/1/hi/health/7412438.stm">this</a> that you can think of ?</p>

<blockquote>Previous studies have shown that participants in "trust games" took greater risks with their money after inhaling the hormone via a nasal spray.

<p>In this latest experiment, published in the journal Neuron, the researchers asked volunteer subjects to take part in a similar game.</p>

<p>They were each asked to contribute money to a human trustee, with the understanding that the trustee would invest the money and decide whether to return the profits, or betray the subject's trust by keeping the profit.</p>

<p>The subjects also received doses of oxytocin or a placebo via a nasal spray.</p>

<p>After investing, the participants were given feedback on the trustees. When their trust was abused, the placebo group became less willing to invest. But the players who had been given oxytocin continued to trust their money with a broker.</p>

<p>"We can see that oxytocin has a very powerful effect," said Dr Baumgartner.</p>

<p>"The subjects who received oxytocin demonstrated no change in their trust behaviour, even though they were informed that their trust was not honoured in roughly 50% of cases."</p>

<p>In a second game, where the human trustees were replaced by a computer which gave random returns, the hormone made no difference to the players' investment behaviour.</p>

<p>"It appears that oxytocin affects social responses specifically related to trust," Dr Baumgartner said.</blockquote></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=GGpDTH"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=GGpDTH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=ROmiJH"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=ROmiJH" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Mon, 26 May 2008 09:30:04 +0000</pubDate>
      <category domain="http://securityratty.com/tag/trust">trust</category>
      <category domain="http://securityratty.com/tag/trust games">trust games</category>
      <category domain="http://securityratty.com/tag/nasal spray">nasal spray</category>
      <category domain="http://securityratty.com/tag/trust behaviour">trust behaviour</category>
      <category domain="http://securityratty.com/tag/money">money</category>
      <category domain="http://securityratty.com/tag/contribute money">contribute money</category>
      <category domain="http://securityratty.com/tag/oxytocin">oxytocin</category>
      <category domain="http://securityratty.com/tag/subjects">subjects</category>
      <category domain="http://securityratty.com/tag/volunteer subjects">volunteer subjects</category>
      <source url="http://www.schneier.com/blog/archives/2008/05/nasal_spray_inc.html">Nasal Spray Increases Trust for Strangers</source>
    </item>
    <item>
      <title><![CDATA[What to Worry About]]></title>
      <link>http://securityratty.com/article/32db3042c5b10c3af3dd773d7a57c8ff</link>
      <guid>http://securityratty.com/article/32db3042c5b10c3af3dd773d7a57c8ff</guid>
      <description><![CDATA[Snarky, but basically correct : 3. Male Family Members and Friends (Especially if they are drunk and you are young foreign born
Its the strange man we fear -- the footsteps in the dark -- the unlocked...]]></description>
      <content:encoded><![CDATA[<p>Snarky, but <a href="http://tencartrain.com/?p=627">basically correct</a>:</p>

<blockquote><strong>3. Male Family Members and Friends  (Especially if they are drunk and you are young foreign born.)</strong>

<p>It’s the strange man we fear -- the footsteps in the dark -- the unlocked back door. The correct part of the constant American crime fantasy is that it is usually a man hunting us. Approximately 90% of all murders are committed males. But stop worrying so much about strangers you don't know and think about the strangers you know. Too often, we invite our predators in and offer them a drink. The leading cause of death for black women from 18-45 is domestic violence. The New York Health Department found that lovers committed 60% of all murders of women. Young foreign-born women were 87% more likely to be killed by a lover than a stranger. Females are much more likely to be victimized by someone they know. Strangers committed about 14% of all murders in 2002 while a family member or an acquaintance committed 43%. Family members commit two-thirds of murders of children under five. Two-thirds of violent crimes committed by acquaintances involved alcohol. Think about that at your next dinner party.</p>

<p><strong>3. People of Your Own So-called Race</strong></p>

<p>An extension of our narcissism is the belief that people who are like us are sane. But it’s the people who are most like us who are mostly likely to kill us. Blacks murdered more than 90% black murder victims. White criminals murdered more than 80% of white murder victims. I'm not saying strangers are safer than the people we know; I'm just saying they might be.</blockquote></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=GDBbkH"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=GDBbkH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=M5lOTH"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=M5lOTH" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Thu, 01 May 2008 10:43:53 +0000</pubDate>
      <category domain="http://securityratty.com/tag/black murder victims">black murder victims</category>
      <category domain="http://securityratty.com/tag/people">people</category>
      <category domain="http://securityratty.com/tag/black">black</category>
      <category domain="http://securityratty.com/tag/family">family</category>
      <category domain="http://securityratty.com/tag/murders">murders</category>
      <category domain="http://securityratty.com/tag/strangers">strangers</category>
      <category domain="http://securityratty.com/tag/male family">male family</category>
      <category domain="http://securityratty.com/tag/york health department">york health department</category>
      <category domain="http://securityratty.com/tag/commit two-thirds">commit two-thirds</category>
      <source url="http://www.schneier.com/blog/archives/2008/05/what_to_worry_a.html">What to Worry About</source>
    </item>
    <item>
      <title><![CDATA[Four ways to fight off strangers with candy ]]></title>
      <link>http://securityratty.com/article/a4933969822fb74f42209cfe33b91c62</link>
      <guid>http://securityratty.com/article/a4933969822fb74f42209cfe33b91c62</guid>
      <description><![CDATA[Users aren't naïve, they are willfully ignorant and the latest installment of a experiment shows just how easily users can undermine IT security. Here's a summary of the survey and four ways to...]]></description>
      <content:encoded><![CDATA[Users aren't naïve, they are willfully ignorant and the latest installment of a experiment shows just how easily users can undermine IT security. Here's a summary of the survey and four ways to reduce the impact of user ignorance. ]]></content:encoded>
      <pubDate>Wed, 16 Apr 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/users">users</category>
      <category domain="http://securityratty.com/tag/easily users">easily users</category>
      <category domain="http://securityratty.com/tag/user ignorance">user ignorance</category>
      <category domain="http://securityratty.com/tag/experiment">experiment</category>
      <category domain="http://securityratty.com/tag/ignorant">ignorant</category>
      <category domain="http://securityratty.com/tag/nave">nave</category>
      <category domain="http://securityratty.com/tag/survey">survey</category>
      <category domain="http://securityratty.com/tag/undermine">undermine</category>
      <category domain="http://securityratty.com/tag/summary">summary</category>
      <source url="http://www.networkworld.com/columnists/2008/041708-backspin.html?fsrc=rss-security">Four ways to fight off strangers with candy </source>
    </item>
    <item>
      <title><![CDATA[Fear of Internet Predators Largely Unfounded]]></title>
      <link>http://securityratty.com/article/ca4557b642fe33e2dc24491bfd24920b</link>
      <guid>http://securityratty.com/article/ca4557b642fe33e2dc24491bfd24920b</guid>
      <description><![CDATA[Does this really come as a surprise? &quot;There's been some overreaction to the new technology, especially when it comes to the danger that strangers represent,&quot; said Janis Wolak, a sociologist at the...]]></description>
      <content:encoded><![CDATA[<p>Does <a href="http://www.mcclatchydc.com/homepage/story/28029.html">this</a> really come as a surprise?</p>

<blockquote>"There's been some overreaction to the new technology, especially when it comes to the danger that strangers represent," said Janis Wolak, a sociologist at the Crimes against Children Research Center at the University of New Hampshire in Durham.

<p>"Actually, Internet-related sex crimes are a pretty small proportion of sex crimes that adolescents suffer," Wolak added, based on three nationwide surveys conducted by the center.</p>

<p>[...]</p>

<p>In an article titled "Online 'Predators' and Their Victims," which appears Tuesday in American Psychologist, the journal of the American Psychological Association, Wolak and co-researchers examined several fears that they concluded are myths:</p>

<ul><li>Internet predators are driving up child sex crime rates.

<p>Finding: Sex assaults on teens fell 52 percent from 1993 to 2005, according to the Justice Department's National Crime Victimization Survey, the best measure of U.S. crime trends. "The Internet may not be as risky as a lot of other things that parents do without concern, such as driving kids to the mall and leaving them there for two hours," Wolak said.</p>

<p><li>Internet predators are pedophiles.</p>

<p>Finding: Internet predators don't hit on the prepubescent children whom pedophiles target. They target adolescents, who have more access to computers, more privacy and more interest in sex and romance, Wolak's team determined from interviews with investigators.</p>

<p><li>Internet predators represent a new dimension of child sexual abuse.</p>

<p>Finding: The means of communication is new, according to Wolak, but most Internet-linked offenses are essentially statutory rape: nonforcible sex crimes against minors too young to consent to sexual relationships with adults.</p>

<p><li>Internet predators trick or abduct their victims.</p>

<p>Finding: Most victims meet online offenders face-to-face and go to those meetings expecting to engage in sex. Nearly three-quarters have sex with partners they met on the Internet more than once.</p>

<p><li>Internet predators meet their victims by posing online as other teens.</p>

<p>Finding: Only 5 percent of predators did that, according to the survey of investigators.</p>

<p><li>Online interactions with strangers are risky.</p>

<p>Finding: Many teens interact online all the time with people they don't know. What's risky, according to Wolak, is giving out names, phone numbers and pictures to strangers and talking online with them about sex.</p>

<p><li>Internet predators go after any child.</p>

<p>Finding: Usually their targets are adolescent girls or adolescent boys of uncertain sexual orientation, according to Wolak. Youths with histories of sexual abuse, sexual orientation concerns and patterns of off- and online risk-taking are especially at risk.</ul></blockquote></p>

<p>In January, I <a href="http://www.schneier.com/blog/archives/2008/01/myspace_and_us_1.html">said this</a>:</p>

<blockquote>...there isn't really any problem with child predators -- just a tiny handful of highly publicized stories -- on MySpace. It's just security theater against a movie-plot threat. But we humans have a well-established cognitive bias that overestimates threats against our children, so it all makes sense.</blockquote><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=qAHWiBE"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=qAHWiBE" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=iQ9vV1E"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=iQ9vV1E" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Tue, 26 Feb 2008 03:30:10 +0000</pubDate>
      <category domain="http://securityratty.com/tag/internet">internet</category>
      <category domain="http://securityratty.com/tag/internet predators">internet predators</category>
      <category domain="http://securityratty.com/tag/internet predators represent">internet predators represent</category>
      <category domain="http://securityratty.com/tag/predators">predators</category>
      <category domain="http://securityratty.com/tag/sex crimes">sex crimes</category>
      <category domain="http://securityratty.com/tag/sex">sex</category>
      <category domain="http://securityratty.com/tag/child">child</category>
      <category domain="http://securityratty.com/tag/child predators">child predators</category>
      <category domain="http://securityratty.com/tag/internet predators trick">internet predators trick</category>
      <source url="http://www.schneier.com/blog/archives/2008/02/fear_of_interne.html">Fear of Internet Predators Largely Unfounded</source>
    </item>
    <item>
      <title><![CDATA[Mike Rothman - The 419]]></title>
      <link>http://securityratty.com/article/cf6cf72068f89700ac14e97f4b73e3b5</link>
      <guid>http://securityratty.com/article/cf6cf72068f89700ac14e97f4b73e3b5</guid>
      <description><![CDATA[I do get some random stuff in my email, but this one takes the cake. Evidently, someone calling themselves Mike Rothman is running a 419 scam . Here is the message, then we can decompose it to see the...]]></description>
      <content:encoded><![CDATA[<a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://bp3.blogger.com/_hafMI9V8sC8/R6xBqe-somI/AAAAAAAAAFE/uIC8Fkuplxw/s1600-h/scam-truck.jpg"><img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer;" src="http://bp3.blogger.com/_hafMI9V8sC8/R6xBqe-somI/AAAAAAAAAFE/uIC8Fkuplxw/s400/scam-truck.jpg" alt="" id="BLOGGER_PHOTO_ID_5164575070813463138" border="0" /></a><br />I do get some random stuff in my email, but this one takes the cake. Evidently, someone calling themselves Mike Rothman is running a <a href="http://en.wikipedia.org/wiki/Advance_fee_fraud">419 scam</a>. Here is the message, then we can decompose it to see the typical "tells" that indicate that there is a REALLY high likelihood the message is bogus.<br /><br /><blockquote> From: XXXXX<br />To: mike_rothman@XXXXXX<br />Subject: RE: Att.<br />Date: Thu, 7 Feb 2008 22:36:52 +0100<br /><br /><br />Dear mr Rothman,<br /><br />I do not know you either, so I will send you some pictures of my estate in Germany, you can look at it at google earth from above. Sended you the adress before.<br /><br />XXXXXX<br />Barendorf<br />Germany<br /><br />#############<br /><br />My age is 50, married with a German Lady, having two Sons.<br /><br /><br />Further, I 'am not interested in the company you are working for, only how to get the money to Germany. <strong>BUSINESS</strong> ! ! !<br /><br />Now it's your turn.<br /><br /><br />Sincerely<br /><br />XXXXXXXXXXX<br /><br /><br /><br /><hr /> From: mike_rothman@XXXXXX<br />To:<span style="text-decoration: underline;"> XXXXXXXXX</span><a href="mailto:multimodis_hoeksema@hotmail.com" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"></a><br />Subject: Att.<br />Date: Thu, 7 Feb 2008 21:25:38 +0100<br /><br />Att. XXXXX,<br />I received your quick response to my proposal. To formally introduce my self to you, I am an old top banker and have worked with Scottish Investment Trust for so many as one of their fund manager. I am an international staff, presently in Scotland office.<br />Scottish Investment Company is registered in Scotland number 1651. I started work with SIT 2004 and I am responsible for the European Jurisdiction Equity. I was with Abbey National Asset mangers before I moved to SIT, and a member of CFA institute.<br />I graduated from University of Dundee and Edinburgh where I got my BSc and MBA in civil engineering respectively.<br />First, I believe it is necessary for me to express my profound gratitude to you for even responding to my email with interest. I am obliged to you for your gracious concern and I hope your assistance is really genuine, although through your email I would know if I could count on you at least to an extent. <script><!-- D(["mb","\u003cbr\u003eI sincerely, appreciate your interest to assist me in this project. I need a reliable foreigner who would be of assistance to me in order to have the funds transferred. \u003cbr\u003eHowever, I would like to be convinced of your willingness, commitment and most of all your trustworthiness to execute this deal with me. I certainly cannot compromise any of these virtues, you know what I mean, and I have my principles.\u003cbr\u003eWithout doubt, you will eventually earn the benefits or our partnership if we are able to work things out and have the funds relocated within couple of weeks or thereabout and thereafter disbursed to your other respective accounts. \u003cbr\u003eIndeed, it is necessary for me to be certain of the person to whom I will be entrusting this deal, my trust will definitely not be given out lightly, I need to be fully convinced that you are a matured person with some integrity, we should at least have respect for each other, this I would say is very essential. \u003cbr\u003e\u003cbr\u003eScottish Investment Trust (SIT) was founded in 1887; The Scottish Investment Trust (SIT) today is one of the world’s oldest and largest independent, self-managed investment trusts with assets of over £45 billion at 30 September 2007.\u003cbr\u003eWe have been working to provide solid returns for investors for over 115 years - through a number of bull and bear markets and the most volatile conditions. Our approach has generated real long term growth in both capital and income.\u003cbr\u003eWhen you invest in SIT you are buying shares in a company that invests in the stocks and shares of companies on the world\u0026#39;s major stockmarkets. Your investment has the potential to grow both through incomes from dividends and through capital growth from increases in share price.\u003cbr\u003eSIT has a diversified equity portfolio and invests in a broad spread of international equities. Although there is always an element of risk involved in any stockmarket investment, we aim to lower this by spreading investment over numerous companies and sectors around the world, while actively searching for opportunities to benefit our investors and maximise returns.",1] );  //--></script><br />I sincerely, appreciate your interest to assist me in this project. I need a reliable foreigner who would be of assistance to me in order to have the funds transferred.<br />However, I would like to be convinced of your willingness, commitment and most of all your trustworthiness to execute this deal with me. I certainly cannot compromise any of these virtues, you know what I mean, and I have my principles.<br />Without doubt, you will eventually earn the benefits or our partnership if we are able to work things out and have the funds relocated within couple of weeks or thereabout and thereafter disbursed to your other respective accounts.<br />Indeed, it is necessary for me to be certain of the person to whom I will be entrusting this deal, my trust will definitely not be given out lightly, I need to be fully convinced that you are a matured person with some integrity, we should at least have respect for each other, this I would say is very essential.<br /><br />Scottish Investment Trust (SIT) was founded in 1887; The Scottish Investment Trust (SIT) today is one of the world’s oldest and largest independent, self-managed investment trusts with assets of over £45 billion at 30 September 2007.<br />We have been working to provide solid returns for investors for over 115 years - through a number of bull and bear markets and the most volatile conditions. Our approach has generated real long term growth in both capital and income.<br />When you invest in SIT you are buying shares in a company that invests in the stocks and shares of companies on the world's major stockmarkets. Your investment has the potential to grow both through incomes from dividends and through capital growth from increases in share price.<br />SIT has a diversified equity portfolio and invests in a broad spread of international equities. Although there is always an element of risk involved in any stockmarket investment, we aim to lower this by spreading investment over numerous companies and sectors around the world, while actively searching for opportunities to benefit our investors and maximise returns.<script><!-- D(["mb","\u003cbr\u003eWe aim to provide steady growth in both capital and income, whilst prudently spreading investment risk. We consider these to be the key requirements for anyone seeking a solid core holding for their investment planning. \u003cbr\u003e\u003cbr\u003eHowever, in my First Email Proposal to you, I stated that the said funds came out as a result of the following: \u003cbr\u003e\u0026quot;\u0026quot;I handle all our Investor\u0026#39;s Direct Capital Funds and secretly extract 1.3% Excess Maximum Return Capital Profit (EMRCP) per annum on each of the Investor\u0026#39;s Magellan Capital Funds. \u003cbr\u003eAs an expert, I have made over £27.4m from the Investor\u0026#39;s EMRCP and hereby looking\u003cbr\u003efor someone to trust who will stand as an Investor to receive the funds as Annual Investment Proceeds from Scottish Magellan Capital Funds. \u003cbr\u003e\u003cbr\u003eEXPLANATION: I have more than 158 Corporate Investors attached to my PORTFOLIO who’s Capital Investment Funds are been managed and administered by me alone.\u003cbr\u003eThis Capital Investment Funds has a value of US$5.4Billion FIXED. The $5.4billion is been used for trading in Stock Market, Crude Oil and Lending with Profit Returns. \u003cbr\u003eEvery Year, each Corporate Investor is expected to receive 20% interest from his total Investment Capital Funds which is paid to the Investor annually as their Excess Maximum Return Capital Profit (EMRCP). However, I made average of 21.3% from the Investor\u0026#39;s Investment Capital Funds annually, which have exceeded our targeted 20% of Total Investment Capital Funds. On this note, I retained the extra 1.3% from the 21.3% as my personal profits for managing the Capital Investment which is this £27.4m. On the other hands, I cannot claim this funds without presenting someone to stand as an Investor otherwise our Establishment will convert the funds into the Company\u0026#39;s Treasury. This is why I came to you for the deal to take place. \u003cbr\u003eDURATION: If you are very serious as I am, we will have this transaction concluded with 25 Banking days from the date of start. \u003cbr\u003eHowever, for such a business of lofty magnitude, I think the most important thing is for us to build a strong association between each other so that I can be able to trust you because I have been betrayed by so many people even by my co workers that I have now decided to play my cards very close to my chest. I will like this deal to be secret and confidential. No third party. Just between you and me. Do not discuss it with any Scottish Investment staff to avoid jeopardizing my work and position.",1] );  //--></script><br />We aim to provide steady growth in both capital and income, whilst prudently spreading investment risk. We consider these to be the key requirements for anyone seeking a solid core holding for their investment planning.<br /><br />However, in my First Email Proposal to you, I stated that the said funds came out as a result of the following:<br />""I handle all our Investor's Direct Capital Funds and secretly extract 1.3% Excess Maximum Return Capital Profit (EMRCP) per annum on each of the Investor's Magellan Capital Funds.<br />As an expert, I have made over £27.4m from the Investor's EMRCP and hereby looking<br />for someone to trust who will stand as an Investor to receive the funds as Annual Investment Proceeds from Scottish Magellan Capital Funds.<br /><br />EXPLANATION: I have more than 158 Corporate Investors attached to my PORTFOLIO who’s Capital Investment Funds are been managed and administered by me alone.<br />This Capital Investment Funds has a value of US$5.4Billion FIXED. The $5.4billion is been used for trading in Stock Market, Crude Oil and Lending with Profit Returns.<br />Every Year, each Corporate Investor is expected to receive 20% interest from his total Investment Capital Funds which is paid to the Investor annually as their Excess Maximum Return Capital Profit (EMRCP). However, I made average of 21.3% from the Investor's Investment Capital Funds annually, which have exceeded our targeted 20% of Total Investment Capital Funds. On this note, I retained the extra 1.3% from the 21.3% as my personal profits for managing the Capital Investment which is this £27.4m. On the other hands, I cannot claim this funds without presenting someone to stand as an Investor otherwise our Establishment will convert the funds into the Company's Treasury. This is why I came to you for the deal to take place.<br />DURATION: If you are very serious as I am, we will have this transaction concluded with 25 Banking days from the date of start.<br />However, for such a business of lofty magnitude, I think the most important thing is for us to build a strong association between each other so that I can be able to trust you because I have been betrayed by so many people even by my co workers that I have now decided to play my cards very close to my chest. I will like this deal to be secret and confidential. No third party. Just between you and me. Do not discuss it with any Scottish Investment staff to avoid jeopardizing my work and position.<script><!-- D(["mb","\u003cbr\u003e\u003cbr\u003eBefore we go into this deal, I will like to know about you.\u003cbr\u003eFollowing this mail, send me your telephone number so I can call you to discuss on the modalities of the transaction. You may as well call me on my number +44 704 571 0649 so that we can discuss on the modalities of the transaction. \u003cbr\u003eSincerely \u003cbr\u003eMike Rothman\u003cbr\u003e\u003cbr\u003e\u003cbr\u003e\n\u003cblockquote\u003e\n\u003chr\u003e\nFrom: \u003ca href\u003d\"mailto:multimodis_hoeksema@hotmail.com\" target\u003d\"_blank\" onclick\u003d\"return top.js.OpenExtLink(window,event,this)\"\u003emultimodis_hoeksema@hotmail.com\u003c/a\u003e\u003cbr\u003eTo: \u003ca href\u003d\"mailto:mike_rothman@live.com.au\" target\u003d\"_blank\" onclick\u003d\"return top.js.OpenExtLink(window,event,this)\"\u003emike_rothman@live.com.au\u003c/a\u003e\u003cbr\u003eSubject: \u003cbr\u003eDate: Thu, 7 Feb 2008 13:09:36 +0100\u003cbr\u003e\u003cbr\u003e\n\n \u003cbr\u003e \u003cbr\u003eDear mr. Rothman,\u003cbr\u003e \u003cbr\u003eI\u0026#39;am a businessman, Dutch, living and working in Germany have several companies.\u003cbr\u003e \u003cbr\u003eoff course I\u0026#39;am interested for the 30%.\u003cbr\u003e \u003cbr\u003eWhen this is phishing I\u0026#39;am not interested and can you better try to find someone else.\u003cbr\u003eI will not pay any money for taxes, transport, lawyers, barristers or others.\u003cbr\u003e \u003cbr\u003e \u003cbr\u003eSincerely\u003cbr\u003e \u003cbr\u003e \u003cbr\u003edrs. J.Hoeksema\u003cbr\u003e0049 173 2433 759\u003cbr\u003e\u003cbr\u003e\n\u003chr\u003e\nBlijf onderweg online met Windows Live for Mobile! \u003ca href\u003d\"http://www.windowslivemobile.msn.com/nl/\" target\u003d\"_blank\" onclick\u003d\"return top.js.OpenExtLink(window,event,this)\"\u003eDownload \u0026#39;t nu op jouw mobiele telefoon.\u003c/a\u003e \u003c/blockquote\u003e\u003cbr\u003e\n\u003chr\u003e\nExpress yourself instantly with MSN Messenger! \u003ca href\u003d\"http://clk.atdmt.com/AVE/go/onm00200471ave/direct/01/\" target\u003d\"_blank\" onclick\u003d\"return top.js.OpenExtLink(window,event,this)\"\u003eMSN Messenger\u003c/a\u003e \u003c/blockquote\u003e\u003cbr\u003e\n\u003chr\u003e\nIn 2 tellen je eigen webpagina voor al je foto\u0026#39;s! \u003ca href\u003d\"http://spaces.live.com/\" target\u003d\"_blank\" onclick\u003d\"return top.js.OpenExtLink(window,event,this)\"\u003eMakkelijk en gratis met Windows Live Spaces\u003c/a\u003e \u003c/blockquote\u003e\u003cbr\u003e\u003chr\u003eExpress yourself instantly with MSN Messenger! \u003ca href\u003d\"http://clk.atdmt.com/AVE/go/onm00200471ave/direct/01/\" target\u003d\"_blank\" onclick\u003d\"return top.js.OpenExtLink(window,event,this)\"\u003e",1] );  //--></script><br /><br />Before we go into this deal, I will like to know about you.<br />Following this mail, send me your telephone number so I can call you to discuss on the modalities of the transaction. You may as well call me on my number +4XXXX so that we can discuss on the modalities of the transaction.<br />Sincerely<br />Mike Rothman<br /><br /><br /><hr /> From: XXXX<br />To: <a href="mailto:mike_rothman@live.com.au" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">mike_rothman@XXXXX</a><br />Subject:<br />Date: Thu, 7 Feb 2008 13:09:36 +0100<br /><br /><br /><br />Dear mr. Rothman,<br /><br />I'am a businessman, Dutch, living and working in Germany have several companies.<br /><br />off course I'am interested for the 30%.<br /><br />When this is phishing I'am not interested and can you better try to find someone else.<br />I will not pay any money for taxes, transport, lawyers, barristers or others.<br /><br /><br />Sincerely<br /><br /><br />XXXXXXX</blockquote>To be clear, I haven't called the numbers to truly verify it's a phishing scheme. Who has time for that? But this message would have been on the express train to the circular bin for a couple of reasons:<br /><ol><li><span style="font-weight: bold;">The complicated story</span> - The scammer uses a fairly complicated story, which would really require an investment professional to figure out whether it's kosher or not. But all that complicated vernacular contributes to building a credible front in the form of the Scottish Investment Trust, which is a global and well known investment house.<br /><br /></li><li><span style="font-weight: bold;">The request for "confidentiality"</span> - The fact that this guy is claiming that he's got some additional funds because he "out-performed" sound like a hoax to me. Also the fact that he's requested confidentiality, even from other SIT personnel means this is a ruse.<br /><br /></li><li><span style="font-weight: bold;">The fact that he needs a "foreigner" to place the money</span> - Again, this just sounds funky. If he outperformed the expectation, I'm sure he'd be due a nice bonus from SIT. Not an illicit $35 million dollar payout that he needs to get out of the country.<br /><br /></li><li><span style="font-weight: bold;">Other inconsistencies</span> - You can't see the domain (I removed it), but it's a public email service in Australia. Yet the phone number he provided (I removed that also) is in the UK. These are inconsistencies that you need to catch.</li></ol>But most of all USE YOUR HEAD. Seriously. Even if you play the lottery, you need to take action to buy the ticket. Beware of strangers offering gifts in the millions of dollars. If it sounds too good to be true, it pretty much is.<br /><br />Instead the victim shared information about his life and family. He attached pictures of his house and put in addresses and phone numbers (which I removed to protect the idiotic). It's just ridiculous.<br /><br />As Barnum said, there is a sucker born every minute. Don't you be one of them.<br /><br /><span style="font-size:78%;">Photo credit: <a href="http://www.flickr.com/photos/jepoirrier/2046188221/">http://www.flickr.com/photos/jepoirrier/2046188221/</a></span><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/SecurityMike?a=60MjZyE"><img src="http://feeds.feedburner.com/~f/SecurityMike?i=60MjZyE" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/SecurityMike?a=5Eii5Ie"><img src="http://feeds.feedburner.com/~f/SecurityMike?i=5Eii5Ie" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/SecurityMike?a=W3C8LSe"><img src="http://feeds.feedburner.com/~f/SecurityMike?i=W3C8LSe" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/SecurityMike/~4/231561418" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 08 Feb 2008 03:31:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/capital investment funds">capital investment funds</category>
      <category domain="http://securityratty.com/tag/capital investment">capital investment</category>
      <category domain="http://securityratty.com/tag/funds">funds</category>
      <category domain="http://securityratty.com/tag/capital">capital</category>
      <category domain="http://securityratty.com/tag/magellan capital funds">magellan capital funds</category>
      <category domain="http://securityratty.com/tag/direct capital funds">direct capital funds</category>
      <category domain="http://securityratty.com/tag/investment">investment</category>
      <category domain="http://securityratty.com/tag/stockmarket investment">stockmarket investment</category>
      <category domain="http://securityratty.com/tag/scottish investment staff">scottish investment staff</category>
      <source url="http://feeds.feedburner.com/~r/SecurityMike/~3/231561418/mike-rothman-419.html">Mike Rothman - The 419</source>
    </item>
  </channel>
</rss>
