📜 ⬆️ ⬇️

Yandex will fight with sites that use social phishing and How to legally get a visitor account in social networks

image

Let's take a detailed look at the social phishing process, explain why this is an ordinary scam, how Yandex will punish such services and how legally you can automatically get social profiles of users.

December 30, 2015, Yandex published the news that sites that use social phishing will be omitted in the results of search results.

I really wanted to finish this article)))), but we decided to tell you again how exactly this fraud works so that there is no doubt about it. Once we told that it was categorically against social phishing on our blog on spark.ru.
“Social phishing is something else evil”

image
Image from b2bblogger.com
')

The essence of the social phishing method is very simple. When a user enters the site, an invisible layer (frame) is loaded, on which the Like button from the social button is located. Vkontakte network. Therefore, instead of the usual cursor, you see a finger. Here is this: 1451779195_024 This is a sign that you hover over a button or link.

When you click anywhere on the site, you will find yourself in the invisible Like button. Thus, your profile is determined in Vkontakte and your data is transferred to the “gray” service.

The idea that you can get data without the consent of the visitor, says a lot about this method.


We communicated with the representatives of Vkontakte on the topic of social phishing. They claim that they will block access to sites that use this technology. Now Yandex has joined the fight against social phishing. We fully support this.



How Carrot Quest defines soc. user profiles?


Carrot Quest is a service that knows all the information about each user on your site and with this knowledge allows you to increase the conversion to the first and repeated sale (via chat, pop-up or email).

When a user enters an email on a site, we do what any Internet user can do - we search for this email in open sources. Just do it automatically and sooo fast.

For example, if you received a request from the site, you can take the user's email and enter it in the search on Facebook. He will show you a user profile with this email:

image



We do this automatically and load the data into the user card.
image



If the user does not make a targeted action (does not indicate his email address), then neither you nor Carrot Quest will know anything about this user from public sources.

And yes, alas (or fortunately), in such a way not to find users who have banned access to their data. We are convinced that this is correct.


Here is one of our reactions to social phishing.


image


The official position of Yandex


How clickjacking affects ranking

“Recently, the number of sites using clickjacking technology has increased - a mechanism of fraud related to the placement of invisible elements on the site, the interaction with which the user performs without suspecting it.

A typical example of clickjacking is the creation of invisible elements on the site over buttons, forms, videos, etc. You can also use the movement of these invisible elements after the cursor on the page. Any click on the page, for example, to play an attractive video, leads to an imperceptible for the user to perform any action on an external site. That is, the user, without knowing it, performs the action that the attacker needs.

Cheating users with the help of clickjacking, fraudsters often try to cheat likes and subscriptions on social networks. Worse, such a mechanism, if its work is not blocked by means of a browser or a website, is also used to obtain confidential personal data from social networks and then use them to the detriment of the user.

For example, a user unwittingly can add to the group an attacker in the social network. After that, the attacker will automatically determine the user account and be able to use the data from it (for example, phone) for their own purposes. This is how intrusive ads appear when a site manager unexpectedly calls you, on which you did not leave your contact details.

We are convinced that such methods of cheating users do not correspond to their interests, therefore sites using clickjacking can be ranked lower. ”


Be careful. With pleasure, the team of Carrot Quest service, who knows all the information about each user on your site and with this knowledge in mind, allows you to increase the conversion to the first and repeated sale (via chat, pop-up or email).

Source: https://habr.com/ru/post/298072/


All Articles