Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×
Privacy Security The Internet

Netcraft: 5,600 Phishing Sites Since December 181

miller60 writes "Netcraft has tracked and blocked 5,600 known phishing sites since the December launch of its anti-phishing toolbar, which it has now updated with a risk rating feature that warns users about new sites with phishy characteristics, based on trends observed in known phishing scams. It has also started a service that makes the full list available of phishing sites as a continuously updated feed for service providers and companies to use in mail servers and web proxies." One bad sign: the phishing attacks I see are getting (on average) more professional in their phrasing -- it used to be easy to toss out the trawlers based on their spelling alone.
This discussion has been archived. No new comments can be posted.

Netcraft: 5,600 Phishing Sites Since December

Comments Filter:
  • Re:Live Bait (Score:1, Informative)

    by Anonymous Coward on Monday May 02, 2005 @02:26PM (#12410230)
    The PTO doesn't enfore antything. It only grants or revokes. Enforcements take place at courts and usually only after charge by the patent/trademark holder.
  • Re:FP - Help (Score:1, Informative)

    by ArsenneLupin ( 766289 ) on Monday May 02, 2005 @02:27PM (#12410250)
    Can anyone help me? I have an account with amazing karma, that I plan to retire after the next three posts. I thought that I would perform karma suicide with it but,

    From the contents of your post, you seem to be doing quite well, but ...

    I can't figure out an effective way to do it in only three posts.

    Yes, indeed, I think you haven't figured out one very important small detail...

    What would you do?

    Hmmm, ..., maybe log in?

    Can anyone help me?

    You're welcome!

  • Re:firefox toolbar? (Score:3, Informative)

    by Rude Turnip ( 49495 ) <valuation.gmail@com> on Monday May 02, 2005 @02:30PM (#12410287)
    Firefox one-ups this already by doing 2 things:

    1. Encrypted URLS turn the address bar to a gold color to remind you that you're on an encrypted site. And, more importantly,

    2. In the lower right hand corner of the screen, Firefox tells you the name of the site to which the digital signature certificate is assigned.
  • by doofusclam ( 528746 ) <slash@seanyseansean.com> on Monday May 02, 2005 @02:31PM (#12410293) Homepage
    Anybody know what is this "reward" they mail you? I'm curious.


    Well according to this: http://news.earthweb.com/security/article.php/3454 601 [earthweb.com]:

    If a person is the first to submit a link to a new phishing site, the user receives a free prize, such as a coffee mug. Miller said other offerings are in the works as well. An e-mail appears in users' inboxes asking them to return a postal address for the prize, which takes 28 days to deliver.
  • but man, someone spent a lot of time thinking it up.

    Hint: Enable "full headers" on your e-mail. That way you won't spend a second before hitting the delete button.
  • ebay spoofs (Score:3, Informative)

    by jangobongo ( 812593 ) on Monday May 02, 2005 @03:16PM (#12410883)
    I got that ebay spoof, too, a while ago. That kinda scared me until I contacted ebay and they confirmed that, indeed, it was a spoof.

    I got a newer one just a short while ago that said:
    • Subject:*** Your eBay Bid was Cancelled ***


    • Dear eBay Community Member,

      The bid that you entered for the item ( 5569407583[original link removed] ) has been cancelled. You can view the reason provided for the cancellation by selecting the link bellow[sic].

      http://cgi.ebay.com/ws/eBayISAPI.dll?Item=55694075 83&BidCancelled=1 [ebay.com] [original link removed]

      Regards,
      eBay
    Now, if I had bid on anything at ebay within the last year, I might have panicked and started clicking on links without stopping to think about it. Fortunately, I knew I hadn't bid on anything, so I (as I've learned to do) hovered my cursor over the links and saw that they went to www.kminsectcontrol.com (insect control? interesting).

    I just forwarded it to spoof@ebay.com which, sadly, I have in my address book because I have forwarded several suspicious emails to them. They always get back to me quickly and confirm that, yes, it was a spoof and to ignore it. Then they investigate the forwarded email take any actions they can against whoever sent it.

    And every ebayer should have this page bookmarked: http://pages.ebay.com/help/policies/id-account-the ft-spoof.html [ebay.com]

    I agree, the phishers are getting better. Phishers like these try to trigger a knee-jerk emotional response and I bet it works way too often.
  • by hazzey ( 679052 ) on Monday May 02, 2005 @03:16PM (#12410892)
    I don't know how well it works, but there is always: spam@uce.gov It is the FTC's official phishing reporting address. http://www.usdoj.gov/spam.htm [usdoj.gov]
  • by Anonymous Coward on Monday May 02, 2005 @03:27PM (#12411041)
    Forward the message (with all headers -- I do this by forwarding as attachment in Thunderbird) to spoof@ebay.com. An automated service checks whether the email came from ebay. They claim to report phished emails to the proper authorities -- it's in their best interest if they do, although I don't know for sure what they do with the email. Still, forwarding an email is pretty darn easy. What have you got to lose?

The hardest part of climbing the ladder of success is getting through the crowd at the bottom.

Working...