2009-06-26

Phishing: Example and its prevention method

'Phishing' (pronounced 'fishing') is exactly for fishing information which included personal information such as credit card, bank account and social security numbers. It is a high-tech scam that used spoofed e-mail spam or pop-up messages to deceive users.The fraudsters can steal the identity and run up bills or commit crimes in your name.


Example of Phishing Email

  • Scammer sends out phishing emails to claims the recipients account has been suspended.They need to verify some information to return their account to normal status.When the user clicks on a link and submits their information,then scammer compromises the user account.
Bank Phishing Spam


PayPal Phishing Spam



Example of Phishing Website


  • This method supports the phishing email which is designed to reflect the legitimate web site and it is purporting to be. The fraudsters use multiple methods such as genuine looking images and text, disguising the URL in the address bar or totally removing the address ba

















No Phishing Allowed: Prevention is better than cure.


1) Do not click on embedded link or unexpected e-mail.

If you initially don’t trust the sender of the e-mail message containing the link, don’t click the presented URL address or enter any confidential information. Instead of clicking the link, try manually typing the address in the URL bar to log directly the website’s home page.


2) Always look for "https" and padlock on website

The https:// (Hypertext Transfer Protocol over Secure Socket Layer )is used to implement a security method in website. There is an extra encryption and authentication layer standing between your protocol and the Internet provider. When loading an https:// or looked padlock on the internet browser’s status bar for doing a sensitive financial and personal transaction, you can also check the certificate of security scheme.


3) Password Protection

Although some phishes are good at knowing details and facts about the profile, but you are still the master of virtual household. Learn to use several passwords instead of just one. If a phished gains access to, for instant the blogging account and get the e-mail address. They cannot access more sensitive account with your blog account password simply because the phishes knows the wrong password to the right account if you have different passwords between blog account and e-mail account.


4) Use Specialized Domain Name System (DNS) service.

DNS service acts like a firewall when it filters phishing sites from the website you visit or have visited. It works with any type of browsers.Some security measures require outsiders to monitor and check around if the company is a target of phishes.


Resource Link:


http://www.fraudwatchinternational.com/phishing-fraud/phishing-protection/
http://www.dailybits.com/what-is-phishing-the-lessons-to-learn/
http://knowledge.epictouch.com/index.php?page=index_v2&id=151&c=25

1 comments:

Janice said...

Dear yhi,
hey,you really do well in your blog.Actually, i always afraid to use internet for e-banking or online purchase because i dont know what is the prevention ways,haha...now i know the website of bank https:// is security website, always update our password,and how to protect our information from phishes.

Post a Comment