Most Read

Most Read

Setting up Team Discussion Board

SharePoint 2007 has a Team Discussion Board that is used to initiate discussion and get replies on topics of interest. This article outlines the steps required to setup a discussion board, managing...
+ Full Article

More Popular Articles

Recent Articles

Recent Articles

Repeating Excel Header Rows

If your worksheet has several pages, it will be useful to have the header row repeat in all the pages. This will improve productivity as the user need not flip to the first page to view the header...
+ Full Article

More Recent Articles
Phishing PDF Print
User Rating: / 0
PoorBest 
Computing - Security
Written by Administrator   

Phishing (as in Fishing) is sending spam emails to large number of users with the intention of collecting sensitive information such as credit card numbers, social security numbers etc. The emails are faked so it appears to come from a legitimate enterprise such as a Bank, Broking Firm, or an online Auction house etc.


The email prompts the users to click on the provided link to update their personal information or prompts them to take action on their account. The provided link directs the user to a fake page that looks similar to the web page of a legitimate company and collects sensitive information from the user such as their Credit Card numbers, Social Security numbers etc.

How does the schemer know that the user has an account with a particular bank or broking firm? They do not. They send the email to thousands of users and hope that a percentage of them will have an account with the mentioned company. They are basically 'fishing' for information. The Schemer relies on common banking institutions such as Citi Bank, EBay etc. The email lures the user with phrases such as 'Your Account is about to expire. Please click on the link to update' or 'Your credit card details have expired and unless it is updated you will not be able to carry out further transactions. Please click the provided link to update the information immediately'.

Here is another variation of a phishing email - "Technical Services of your Bank are carrying out a planned software upgrade. We earnestly ask you to visit the following link to start the procedure of confirmation"

Precautions

If you receive such an email exercise caution. {mostip tooltip=0 image=alert}Do not click on the provided link{/mostip} if you happen to have an account with the mentioned Financial Institution, Broking Firm, or other referenced firm visit their website directly (by typing the Bank's address in the browser) to check your account details or better still, call them directly. Generally, companies will not provide a link if they need updated information. Rather, they will request you to visit their website and update your account information. Do not give any personal information over email; generally no legitimate company will ask for emailing them sensitive information.

Resources to Help You

There are several Federal and Private Organizations that provides a wealth of information relating to Phishing:


Netcraft's Anti-Phishing Toolbar - Features

Netcraft's toolbar gives a good source of protection against Phishing sites. Once installed, the toolbar provides information about the URL (company website) you are browsing that is quite informative and helps to be on the alert for suspicious URLs. Netcraft's toolbar provides information about the company such as its online date, hosting location, IP Address, DNS and Reverse DNS entries etc. Applying basic logic one can easily deduce whether the site is genuine or fradulent. The toolbar also displays an alert box if you are visiting a page that has been classified as fradulent. Internet users can also report 'Phishing' sites from the toolbar menu and help build the database on suspicious sites to make the Internet a better place. Netcraft's website also includes a tutorial on installing and using the toolbar. This is a toolbar that is worthy of download. The current version of Netcraft's toolbar supports Internet Explorer. A Toolbar to support Firefox browser is under way. Firefox or other broser users can report suspicious sites from here.
Trackback(0)
Comments (0)add
Write comment

security image
Write the displayed characters


busy
Last Updated on Sunday, 28 October 2007 20:24
 

now browsing!

We have 36 guests online

Training

UPK Training

UPK Developer Training Course Description  Overview Understanding Developer menu and toolbar itemsSetting Developer PreferencesManaging FoldersManaging DocumentsCreating Views
+ Full Article

More on Training

Featured

Track Changes in Word 2003

Track Changes, as the term suggests, is a feature in Microsoft Word that helps keep track of the revisions made to a document. This feature is commonly used when two or more users work on the same...
+ Full Article

More Featured Articles

Sharepoint

Setting up an Workflow

Workflow can be used to initiate action on a document or item. For example, one can collect feedback on a document or route it for approval etc. Workflow can also be associated with a list. The...
+ Full Article

More on Sharepoint

Windows

Windows XP Backup

Windows XP Professional Edition has a Backup utility that helps to backup and restore data. The program can be automated to run at scheduled intervals which is a nice and desirable feature. The...
+ Full Article

More on Windows
 

Sedo - Buy and Sell Domain Names and Websites project info: referpages.com Statistics for project referpages.com etracker® web controlling instead of log file analysis