"Phishing" identity theft is gaining popularity

Friday, 21 November 2003, 12:53 PM EST

Most of us know by now not to give out our passwords, ATM PINs, or other secret information when requested by e-mail. But an increasing number of people are giving out that information, even those of us who should know better. What makes this doubly annoying is that the scam is an old one, and it has nothing to do with technology per se.

The technique is called phishing, and some very clever crooks use it. Here's how it works. You put together a bunch of HTML-formatted e-mail messages asking people to reconfirm their account information. The messages look like the real McCoy, including corporate logos and from what at first glance looks like a legitimate e-mail address. The two scams that I got recently were from sites that had the eBay and Citibank logos. Both asked me to "verify my personal information" by clicking on a link in the message that took me to the phished site.

[ Read more ]

Related items




Spotlight

Operation Pawn Storm: Varied targets and attack vectors, next-level spear-phishing tactics

Posted on 23 October 2014.  |  Targets of the spear phishing emails included staff at the Ministry of Defense in France, in the Vatican Embassy in Iraq, military officials from a number of countries, and more.


Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.
  



Daily digest

Receive a daily digest of the latest security news.
  

DON'T
MISS

Fri, Oct 24th
    COPYRIGHT 1998-2014 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //