This site uses cookies. By continuing to browse this site you are agreeing to our use of cookies. Find out more.X

New Facebook malware promises to reveal identities in a users 'Honesty Box'

Share this article:

Warnings have been made about a new Facebook attack that promises to display hidden messages.

An application on the social networking site, named ‘Honesty Box', allows users to send and receive ‘anonymous messages and discover what people really think of you' with all of the users friends and network members allowed to write in it.

Part of the selling point is that the messages are anonymous. The application writers claim that they ‘will never reveal who sent messages on Honesty Box, unless, in our sole judgment, the content of a message violates our Terms of Use and/or Privacy Policy'.

However Christopher Boyd, director of research at FaceTime security labs claimed that a group of individuals are spamming a fake program to the walls of unsuspecting Facebook users, which promises to reveal who left them messages in their Honesty Box.

Boyd said: “The program claims it will strip out the hidden data from your honesty box, then convert it into a name so you know who left the message. Of course, it's all nonsense; the program is bound with a random Keylogger /Trojan/virus of the attackers' choosing, which means your day could take a very random and unfortunate turn depending on what they have in store for you.

“This could be a perfect setup for scammers to phish accounts, then use those compromised accounts to spam the application onto more Facebook walls where new victims can be attracted by the lure of ‘really secret stuff'.”

Share this article:

SC webcasts on demand

This is how to secure data in the cloud


Exclusive video webcast & Q&A sponsored by Vormetric


As enterprises look to take advantage of the cloud, they need to understand the importance of safeguarding their confidential and sensitive data in cloud environments. With the appropriate security safeguards, such as fine-grained access policies, a move to the cloud is as, or more, secure than an on-premise data storage.


View the webcast here to find out more

More in News

WorldPay hacker sentenced to 11 years for role in £6 million scheme

WorldPay hacker sentenced to 11 years for role ...

An Estonian man, who helped hack payment processor RBS WorldPay in 2008, has now been sentenced to 11 years in prison for his involvement in the £5.9 (US$ 9.4 million) ...

'Sophisticated' Chinese hackers launched attacks against 43,000 computer systems

'Sophisticated' Chinese hackers launched attacks against 43,000 computer ...

A new report reveals that a Chinese cyber-espionage group is closely affiliated with government and carried out attacks against the likes of Fortune 500 companies and government agencies.

Hackers smuggle out stolen data disguised as videos

Hackers smuggle out stolen data disguised as videos

Around a dozen organisations, including at least one financial sector company, have been hit by a new form of hacking where attackers hide stolen corporate data inside video files that ...