Thursday, June 25, 2009

Phishing: Examples and its prevention methods

What is Phishing??? Whether the word come from "Fishing"???


"Phishing = fishing + phreaking"



Phishing is a new type of network attack where the attacker creates a replica of an existing Web page to fool users (e.g., by using specially designed e-mails or instant messages) in order to attract user's attention to update and submit their personal secret information such as financial status, password data and so on to their service provides’ Web site.

The word ‘Phishing’ is initially emerged in 1990s. The earlyhackers have used ‘ph’ to replace ‘f’ to produce a new words in the hacker’s community. Phishing is a new word produced from ‘fishing’, it refers to the act that the attacker attract users to visit a faked website by sending them faked e-mails or instant messages, and steal the victim’s personal information such as user name,password, and national security ID, and etc.

They usually will attract users to visit their website to conform or modify your account number and password through the hyperlink provided in the e-mail.












Then, you will be linked to a faked website after clicking those links. The style, the functions performed, sometimes even the URL of these faked websites are similar to the real website. It is very difficult for you to know that you are actually visiting a faked website. If you insert the account number and password, the attackers then will successfully collect the information at the server side. This will enable them to access into user account and perform the next ation with those information.




Methods To Prevent Phishing Attack (such as Maybank and Public Bank cases mentioned above)


1) Never disclose any private information via internet even if you have received those emails from the bank.


2) Never respond to any phone call/ sms requesting your bank account details.


3) Never disclose your bank account details or Internet banking username and password to anyone


4) NEVER follow instructions from unknown parties to do banking transactions or make changes to your bank account details


In conclusion, users should take those methods to prevent phishing attack. It is because "PREVENTION IS BETTER THAN CURING"


Police alert!
Don't be a victim of phishing scams! Protect yourself from identity theft today..........

No comments:

Post a Comment