Advertisement
Promo

Security threats Toolkit

Survey: Nearly all phishing from forged addresses

Staff CNET News

Published: 29 Jun 2004 12:00 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Almost 95 percent of email fraud and "phishing" reported in May emanated from forged addresses, according to new research from the Anti-Phishing Working Group, which argued that emerging email-authentication standards could take the sting out of such attacks.

Phishing attacks trick people into parting with personal information by luring them to bogus corporate Web sites. Almost 5 percent of recipients of such emails disclosed vital information such as credit card numbers, account user names and passwords, leading to identity theft and financial loss, the report said. The past few months saw phishing emails emerging as a major threat.

The study, however, conducted by the Anti-Phishing Working Group with technical help from Tumbleweed Communications, showed there was only a 6 percent increase in new phishing attacks last month. May witnessed 1,197 new cases, compared with 1,125 unique attacks in April. Of the new attacks, 848 targeted the financial services sector.

"One Achilles' heel of phishing, and other related email threats like spam and viruses, is the reliance on forged 'from' addresses to hide the sender's identity," APWG Chairman Dave Jevans said in a statement.

Despite varying specifications, several evolving technologies designed to provide verification of an email sender's identity can prevent such fraudulent mails from reaching customers.

Several top Internet providers, including Yahoo, Microsoft, EarthLink, America Online, British Telecom and Comcast, formed an alliance last week to push for new technical guidelines to fight spam mails. EarthLink is already working on putting anti-phishing software in place.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
96 out of 187 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:






Video icon

Video

Sentry Posts Blog

Opera censors Chinese content

Opera has updated the Chinese version of its mobile browser to stop users accessing restricted content. Opera Mini was updated on Friday from an international to a Chinese version,... More

2 comments

Symantec website breached

Security company Symantec has said that one of its websites was successfully breached. Romanian security researcher 'Unu' posted details of the breach in a blog post on Monday. Unu... More

Post a comment

Campaigners criticise '£10bn NHS IT ov...

The National Health Service's flagship IT project has been criticised by a tax campaign group for running billions of pounds over budget. The NHS National Programme for IT (NPfIT)... More

2 comments


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters