More Resources

Phishers target leading UK bank customers.(Security News and Products)


A fraudulent scheme targeting the online credentials of Lloyds TSB customers features in the latest E-Threats Landscape Report from BitDefender. The phishing attack features a plain, yet clever unsolicited message instructing 'customers' to follow a link and confirm their account information. The link does not lead to the e-banking portal, but to a collection of web pages that employ several visual identification components of the original web site, namely the bank logo (a bit blurry and disproportionately resized) and the general formatting elements.

The e-thieves seem to be interested only in the User ID and password, which they harvest via login.php script, and the memorable information, which they lift using login 1 .php script.

Some elements of the phishing attack are flawed, however. Even though all menu options are available, clicking any of them will return a "404 Page Not Found" message. Moreover, one can easily see that the web page address mimicking the genuine web site, actually loads from a domain registered in Brazil (.br instead of .com).

The usual security elements that you would expect to find on an e-banking site are also missing, namely SSL encryption (Secure Socket Layer) and security authentication methods (no "https" prefix and locked padlock).

www.bitdefender.co.uk

COPYRIGHT 2009 A.P. Publications Ltd. Reproduced with permission of the copyright holder. Further reproduction or distribution is prohibited without permission.

Copyright 2009 Gale, Cengage Learning. All rights reserved. Gale Group is a Thomson Corporation Company.

NOTE: All illustrations and photos have been removed from this article.


Marketplace

Learn how to distribute a press release

Try our new online printing. theupsstore.com/print
Today on Entrepreneur

Sign Up for the Latest in:
Online Business
Franchise News
Starting a Business
Sales & Marketing
Growing a Business

E-mail*

Zip Code*