Toolkit
Story: IE bug provides phishing tool
I think Patrick should revisit this topic as there have been many interests generated. Some of the earlier tools (like SpoofStick, e.g.) checks the ip address or hostname only. This kind of protection is way way too simplistic. The hacker has some new exploits including auto downloading keyboard loggers if you visit some "infested" web sites. Therefore just checking the ip address is definitely insufficient! One needs a more advanced tool to combat against this including . switching away from IE to Mozilla as a last resort.
Full Talkback thread



