Recently I have received email from my bank/credit Card Company, eBay & pay pal saying that my account has possibly been compromised and I need to confirm my details and password in order to get continued access.
Spam email now has a new and more frightening variant, it's called phishing and it has been made by criminals and hackers who aim at getting unwitting consumers to reveal account numbers and passwords.
Usually after getting an email like the ones mentioned above from reputable companies, most of us would race to respond as quickly as possible. However, in most cases you will find that you won't be helping anyone other then the criminal who wrote that email and who has nothing to do with the actual organizations.
What is Phishing?
It is when someone creates false email that pretends to be from a bank or other authority, but which is actually designed to collect sensitive information such as passwords. This process of stealing information used for fraudulent purposes is the latest problem to plague Internet users. It is a phenomenon know as phishing i.e. emails 'fishing' for important information.
Just like Spam, phishing mails are sent to the widest possible audience so it's not unusual to receive a message asking you to confirm account details from an organization you do not actually deal with. You may be asked to fix up your eBay account when you haven't even got one!
In addition to collecting sensitive information many phishing messages try to install spy ware, Trojans etc. allowing hackers to gain backdoor entry into computers.
Types of Phishing Emails:
Some phishing emails ask for a response by email.
Some emails include a form for collecting details that you are told to fill out.
Some even include a link to a web site that resembles the actual site you expect to visit, but is actually a clone of the original site.
Number of active phishing sites reported in March, 2005: 2870
Number of brands hijacked by phishing campaigns: 78
Contains some form of target name in URL: 31%
Country hosting the most number of phishing sites: United States of America
Source: http://www.antiphishing.org
Phishing attacks can be really sophisticated. Some time ago a flaw in Internet Explorer allowed hackers to display a false address while redirecting the user to an entirely different site making it almost impossible to distinguish a phishing attack from a legitimate email.
Possible solutions:
New technologies can provide a better means of countering phishers. One option being explored by a lot of banks is the use of a secure token, a small electronic gadget that generates a unique password to be entered each time a user logs onto the web site. This would make a phishing attack useless because without the physical possession of a token it is impossible to access the account. This approach is somewhat similar to what is used at Automated Teller Machines around the world where you need to have both the card and the Pin number in order to use the machine.
One option is to use a technology popularly knows as PassMarks that effectively acts as a second password. After entering the user name a unique image pre selected by the user is displayed before s/he is asked for the password. If the proper image is not displayed the user will come to know that s/he is not on the authentic site. Another option that a lot of organizations are exploring is using text messages instead of email messages. Text messages cost money to send, so Spammers are less likely to partake in the process making it easier to distinguish between legitimate messages and fakes.
Ashish Jain
M6.Net Web Helpers http://www.m6.net
![]() |
|
![]() |
|
![]() |
|
![]() |
You and I are a lot alike. We are both... Read More
On December 8, 2004 Webroot, an award winning anti-spyware solution... Read More
From the "Ask Booster" column in the June 17, 2005... Read More
History and BackgroundThe virus was one of the first ever... Read More
Can You Prevent Spyware, Worms, Trojans, Viruses, ... To Work... Read More
Every now and then you can read about a new... Read More
These six ways to prevent identity theft offer you valuable... Read More
Industrial Espionage. These methodologies are being used on a daily... Read More
During the release of a new software product specialized to... Read More
If you have used a Windows machine for a while,... Read More
Nobody wants to pay to remove spyware. At the very... Read More
A few nights ago I received an email from "2CO"... Read More
Monday morning, 6am; the electric rooster is telling you it's... Read More
Electronic Fraud and Identity Theft Human beings are pretty... Read More
Remember the television show about the nosy neighbor Mrs. Kravitz... Read More
No longer are viruses the only threat on the internet.... Read More
Abstract Homogeneous symmetries and congestion control have garnered limited interest... Read More
First off I should explain what phishing is. Phishing is... Read More
Credit card fraud is a growing problem for online businesses... Read More
When we think of adware, what comes to mind are... Read More
Spyware symptoms happen when your computer gets bogged down with... Read More
Did you know...? 1 in 5 children who use computer... Read More
Every single time you access a website, you leave tracks.... Read More
What is Phishing? Phishing is a relatively newly coined term... Read More
A little bit of time invested into learning about internet... Read More
Do you know what "phishing" is?No, it doesn't mean you... Read More
According to the Anti-Phishing Working Group (APWG) email scams also... Read More
May. 16th 2005 - MicroWorld has reported the discovery of... Read More
Identity theft is one of the most common criminal acts... Read More
When it comes to a secure website and passwords it... Read More
File sharing on p2p is soaring despite the music and... Read More
Over £5 billion pounds was spent on online shopping in... Read More
Phishing in its "classic" variant is relatively well-known. Actually, 43.4... Read More
The money being spent online is steadily growing. With billions... Read More
The trash folder in my main inbox hit 4000 today.... Read More
Despite the current wave of identity theft and corporate security... Read More
Paypal is a great site and is used by many... Read More
There are several basic concepts to keep in mind when... Read More
A firewall is a system or gateway that prevents unauthorized... Read More
There you are busily typing away on your PC or... Read More
If you run any type of Internet business, Adware and... Read More
A week or so ago, I received an inquiry from... Read More
Have you ever bought a product or service from the... Read More
Ebay is a great site and is used by many... Read More
Computer viruses infect millions of computers every day. Viruses can... Read More
Let us take the example of scrambling an egg. First,... Read More
Viruses, Bugs, Worms, Dataminers, Spybots, and Trojan horses. The Internet... Read More
Sooner or later everyone with an email account will receive... Read More
Ok, you've got a computer, and you get online. You... Read More
Nobody wants to pay to remove spyware. At the very... Read More
Huge number of spyware software applications are available in the... Read More
In the past I've never really paid much attention to... Read More
The Internet offers a global marketplace for consumers and businesses.... Read More
Over £5 billion pounds was spent on online shopping in... Read More
The words Corporate Security may conjure up images of a... Read More
Electronic Fraud and Identity Theft Human beings are pretty... Read More
Imagine this ? you open up your email box and... Read More
Manual Spy Bot Removal > BookedSpaceBookedSpace is an Internet Explorer... Read More
Have you seen the web site, www.freestuff.com? Or have you... Read More
Spyware symptoms happen when your computer gets bogged down with... Read More
Viruses are, however, not the only malicious software programs out... Read More
Long gone are the days that we could feel secure... Read More
I got a virus the other day, Thursday I believe... Read More
Internet scams and frauds are on the rise! The quantity... Read More
I am in the midst of Oscar Wilde's The Picture... Read More
If you are wondering how to fight spyware for safe... Read More
Internet Security |