Advertisement
Promo

Online business Toolkit

Fake PayPal site could lead to identity theft

Andy McCue Silicon.com

Published: 09 Jul 2003 13:54 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Russian hackers are suspected of being behind a professional-looking but fake PayPal email scam designed to steal a person's financial and personal details for identity theft.

The email, which has being doing the rounds this week, is a much more detailed and convincing version of the long-running email that asks users to confirm their PayPal account details.

One reader of ZDNet UK's sister site silicon.com, Sarah Waller, who received the email, was concerned enough to try and contact PayPal directly.

She said: "If this is not genuine then how have this company established that I have a PayPal account? Personally, I find it peculiar that PayPal are asking for such highly sensitive information to be sent without requesting that customers log into a secure server, particularly that they are asking for ATM Pin number along with credit card number, password and email address."

The fake message appears to come from the billing department at PayPal.com and asks people to click on a link taking them to a genuine-looking PayPal page and re-enter their account details.

Once there the victim is presented with a convincing version of the PayPal site with a list of fields including name, address and date of birth, social security number, driving licence number, mother's maiden name, credit card and bank account details and PIN numbers, email address and password.

In short, that's just about all the information anyone would need to commit complete identity theft and use the details to apply for credit cards and loans.

The fake site, www.paypal-billingnetwork.net, also has links to a genuine PayPal 'help' section and corporate information and press releases from the real site.

Security experts believe PayPal will be able to shut the site down almost immediately for breaching its trademark but said the perpetrators will simply find another hosting company and start again.

Chris McNab, technical director of security consultancy Matta, told silicon.com: "This comes down to the hosting companies being lax when setting up the account. They have to tackle this problem when setting up sites."

Although the account with the Web hosting company will probably have been set up using stolen credit cards and proxy addresses, McNab said the most likely culprits are Russian hackers who could be tracked down.

"Law enforcement need to monitor traffic to and from the server. If the FBI or local law enforcement could put logging and auditing on the systems and gather IP addresses of the Russian hackers when they come in to download the details they could track them."

PayPal was contacted but no-one was available for comment.


See the Net Crime News Section for the latest on fraud, crime, child protection and related issues.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?
74 out of 121 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:






Sentry Posts Blog

Met will not reopen phone hack investi...

The Metropolitan Police will not reopen its investigation into alleged phone hacking by the News of the World. In a press statement delivered outside Scotland Yard on Thursday, Assistant... More

Post a comment

FUD over ChromeOS's security already?

It hasn't taken long for the security vendors to wake to the potential of Google's new ChromeOS. The potential that is, to create FUD – fear uncertainty and doubt. In a release today,... More

Post a comment

Feds take DDoS in their stride

The US Department of Homeland Security has said that a series of distributed denial-of-service attacks began on US government networks on 4 July. However, Amy Kudwa, deputy press... More

Post a comment

Video icon

Video

Google Chrome

Roundup: Full coverage of Google Chrome

The search giant has launched a beta of its own open-source browser, sending a clear challenge to Microsoft in the way it lets users work with applications More

Blog: Google Chrome has Microsoft's code inside, says MS manager

And furthermore, he says, that's a good thing... More

Blog: Google Chrome — nine things we've found since launch

Google must be very happy with the coverage Chrome has gathered. But it's not all good news... More


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters