<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Brunga.at Facebook Phish</title>
	<atom:link href="http://blog.threatfire.com/2009/05/brungaat-facebook-phish.html/feed" rel="self" type="application/rss+xml" />
	<link>http://blog.threatfire.com/2009/05/brungaat-facebook-phish.html</link>
	<description>ThreatFire™ AntiVirus protects when others can&#039;t</description>
	<lastBuildDate>Fri, 06 Nov 2009 17:43:38 -0600</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: ThreatFire Blogger</title>
		<link>http://blog.threatfire.com/2009/05/brungaat-facebook-phish.html/comment-page-1#comment-171</link>
		<dc:creator>ThreatFire Blogger</dc:creator>
		<pubDate>Fri, 22 May 2009 04:11:13 +0000</pubDate>
		<guid isPermaLink="false">http://newblog.threatfire.com/2009/05/brungaat-facebook-phish.html#comment-171</guid>
		<description>Hi Beatrice-&lt;br /&gt;&lt;br /&gt;We&#039;re trying to figure out what, if anything, was successfully compromised from that LuckySploit server redirect, in addition to the authentication theft.&lt;br /&gt;&lt;br /&gt;The brunga site resulted in a straightforward facebook user/pass theft. Luckysploit most often results in much more malicious activity (banking pass theft) or the all too common Fakealert installs.</description>
		<content:encoded><![CDATA[<p>Hi Beatrice-</p>
<p>We&#8217;re trying to figure out what, if anything, was successfully compromised from that LuckySploit server redirect, in addition to the authentication theft.</p>
<p>The brunga site resulted in a straightforward facebook user/pass theft. Luckysploit most often results in much more malicious activity (banking pass theft) or the all too common Fakealert installs.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Beatrice</title>
		<link>http://blog.threatfire.com/2009/05/brungaat-facebook-phish.html/comment-page-1#comment-170</link>
		<dc:creator>Beatrice</dc:creator>
		<pubDate>Thu, 21 May 2009 22:13:39 +0000</pubDate>
		<guid isPermaLink="false">http://newblog.threatfire.com/2009/05/brungaat-facebook-phish.html#comment-170</guid>
		<description>So does it just hack our account and send the link to our friends? or does it do more?&lt;br /&gt;&lt;br /&gt;thanks!</description>
		<content:encoded><![CDATA[<p>So does it just hack our account and send the link to our friends? or does it do more?</p>
<p>thanks!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Linda Armstrong</title>
		<link>http://blog.threatfire.com/2009/05/brungaat-facebook-phish.html/comment-page-1#comment-169</link>
		<dc:creator>Linda Armstrong</dc:creator>
		<pubDate>Thu, 21 May 2009 19:44:00 +0000</pubDate>
		<guid isPermaLink="false">http://newblog.threatfire.com/2009/05/brungaat-facebook-phish.html#comment-169</guid>
		<description>Good advice!</description>
		<content:encoded><![CDATA[<p>Good advice!</p>
]]></content:encoded>
	</item>
</channel>
</rss>
