ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Phishing growing exponentially

Munir Kotadia ZDNet Australia

Published: 12 Oct 2004 10:45 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

The number of phishing Web sites is increasing by 50 percent every month and fraudsters are using increasingly sophisticated techniques to fool Internet users into revealing personal information, according to the Anti-Phishing Working Group's (APWG) latest figures.

Phishing sites are usually doctored versions of an organisation's legitimate Web site. Victims are often lured to the sites using sophisticated socially engineered emails and many are fooled into disclosing online passwords, user names and other personal information.

However, according to research by the APWG throughout July, there has been an increase in the number of generic e-commerce Web sites where victims believe they are ordering products or services from an "independent" reseller.

The APWG found that the most common fraud-based sites seen during July were fake loan scams, mortgage frauds, online pharmacy frauds, and fake online banking institutions.

"As phishing sites continue to grow exponentially, this newer breed of advanced fraud-based websites is also proliferating, raising the stakes of Internet scams," the report said.

Rob Forsyth, managing director of anti-virus firm Sophos in Australia and New Zealand, said that phishers are modifying their methods to extract as much information -- and cash -- as possible.

Forsyth said a prime example was during the Olympic Games in Athens when a fraudulent Web site was asking for donations to help disabled athletes participate in the Paralympic games.

"It was a fraudulent site, but well-meaning people dumped money directly into the fraudsters account. They are looking for every opportunity to defraud," said Forsyth.

Graham Connolly, Australia and New Zealand manager at Internet security firm Websense said the problem will get worse as long as the fraudsters continue to make money.

"We predict this problem will worsen. New techniques to dupe users are being developed and the accuracy, creativity, and sophistication is increasing -- proof that there is money to be made," said Connolly.

Mike Bosch, Australia and New Zealand managing director of email security firm Ironport Systems, said there is a possible technological solution on the horizon but it will require the continuing co-operation of service providers, vendors and targeted companies.

"ISPs have to work hand in hand with technology vendors and the banks to effectively block these types of attacks. We are probably at least five to six months away from being able to do that," said Bosch.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
65 out of 136 people found this useful


Full Talkback thread

0 comments

Related Jobs

Games Developer - South West

Would you like to work for a hugely successful client and help them to develop award-winning games? Huxley Associates Client is looking for a Flash ...

C++ Developer - 35,000 - Games experience

A C++ Games Developer is required to join a market leader in Games Development. The client is ideally searching for candidates with any C++ or ...

Fraud Portfolio Manager - Midlands

Working as a Portfolio Manager in a Fraud Policy team you will be responsible for Fraud Strategy Definition, 3rd party Fraud Performance Tracking ...

Sentry Posts Blog

Mobile Linux Better For Mobile Busines...

Mobile Linux Better For Mobile Business Apps? Author: Eric Everson, MyMobiSafe.com As mobile Linux is carving it’s footprint on the future of mobile application development, the... More

Post a comment

DWP downplays security breach

The Department for Work and Pensions (DWP) has admitted that some of its staff have been forwarding passwords with password protected material. An email that was leaked on the 'Dizzy... More

Post a comment

How many headshots does one chairperso...

We got a strange request last week from the head of PR from Russian security experts Kaspersky. It seems although the company was very happy with the interview we recently carried with... More

Post a comment

Featured Talkback

On the contrary, if vendors were forced to stand behind their products it should increase innovation. It would force more, and better , testing before hitting the sales floor, resulting in fewer updates and less downtime for the consumer. At present the EULA removes responsibility from the vendor, and moves it to the user, which is a step backward. Make the vendor responsibility for their code.

By: ator1940

Read full story:
RSA: Vendor liability may stifle innovation