Monday, March 5, 2012

Swatting, Phone pranking and it's disruptions

Swatting is an attempt to prank an Emergency services and dispatching the Emergency Prepared team to the fake addresses. Word Swatting is derived from (Special weapons and Tactic)
Swatting has its foot prints from Caller ID Spoofing, Social Engineering, prank call & Phone Phreaking.
Prankster uses the phone number of a victim and calls Emergency services, police and media pretends there is a hostage situation.
Prankster’s signup for internet based VoIP service in the victim’s area code and signs on the website of the VOIP Provider, and register the victim’s address as a their ,s for emergency services, then calls a Emergency service and misleads the team that there is an hostage situation. Emergency prepared team arrives to the fake address and come to know they have been misled. There are situations in which SWAT teams arrived with weapons and opened the doors of innocent people who even don’t know that their number is used for pranking.

It can be used in getting confidential information with in the corporates by phone pranking in which a prankster with in the company has all the information about the victim’s from where the information has to be retrieved, Prankster can register a service with service providers and initiates a call from spoofed number of internal authority/co worker and acts as a authorized person or a coworker to retrieve the confidential data or information which he wants , Even he can use a email spoofing further to get a confidential files by sending a spoofed mail address and conveys the victim to reply the mail with the confidential documents, victim by assuming the prankster as a authorized person sends all confidential documents which leads to disruptions.

By using social networks like Facebook, Linked in pranksters from outside the company will get information of the victim and duplicating themselves with a fake Id’s of interesting to the victim get involved through some serious discussion and business interests to know the victim’s important details and interested group members. On top of it they use caller ID Spoofing and email spoofing to retrieve the vital information.
Recently job scams are hitting the news in which prankster’s acts as a HR People/Placement Agents pranks a call by bridging the organization’s contact number which normally published in websites and visiting cards and gains a victim’s reliance. Once a victim gets trusted they ask for depositing money as a registration fee or some other process fees.
Even there are incidents such as ordering pizza and sending it to the victim’s addresses. Rival companies can effectively use the phone pranking to mislead and orders with different fake numbers to befall in losses.
Phone pranking in crime can be used for criminal activities like after attempting crime, criminal calls to the known numbers of victims to mislead the investigations.
To use phone pranking service, a customer registers himself by paying fess in advance for a PIN allowing them to make a call. To initiate, the customer dials from any phone of the toll free number specified to them by the company and enters their PIN. They are then requested to enter the number they wish to call and the number they wish to appear on the caller ID. Once the "customer" selects the options, the call is then linked.

Many Caller ID spoofing service providers also permit customers to initiate spoofed calls from a web-based interface in addition to calling a toll free number and entering the ten digit number you want to display followed by the ten digit number you want to call. Some providers allow you to enter the name you would like to display along with the spoofed Caller ID number
Creating an account for phone pranking with a service provider is a 3 step process, logging in to their website and completing a form. Most companies require the following basic fields:
A. Source number
B. Destination number
C. Caller ID number
Once the user completes this form and clicks a button to initiate the call, the source number is first called. Once the source number line is picked up, the destination is then called and bridged together.
Please Ensure the identity before sharing information on mobiles and mails. be cautious on sharing the information in public social networking site's.

No comments:

Post a Comment