Advertisement
Promo

Security threats Toolkit

Story: Banks under fire as phishing attacks accelerate

  • Previous comment

Posted by: Andrew Meredith (Thursday 20 March 2008, 1:13 PM)

  • Reply

How would they know

I agree that they can indeed upload the images to the same host as the base page and that this would defeat the measures. It would also make the phishing code load on the host server that much bigger and potentially more noticeable. However, if the banks were to instrument the images on their home pages such that if they are requested by a requester that isn't on their own site, it sends an alarm to the Phishing team. The only people that would know that an alarm had been tripped would be the security folks at the bank. The phishers wouldn't know if they had been sussed by a customer who raised the alarm, or by the bank themselves.

Andrew Meredith

Andrew Meredith
IT Consultant, Chippenham, Wiltshire
Member since: January 2004

Site Activity Rating:

4

This member is ranked #50 in our top 100


  • Previous comment

  • Reply to this comment
  • Return to story
  • Report this as offensive


Full Talkback thread

Sentry Posts Blog

Civil liberties groups attack file-sha...

Civil liberties and digital rights organisations have strongly criticised Lord Mandelson's Digital Economy Bill. Liberty said in a position paper on Tuesday that the bill, part of... More

Post a comment

Authentication risks all too human

Risks to successful online banking identification and authentication using smartcards involve a mixture of human and technological factors, according to the European Network and Information... More

1 comment

Opera censors Chinese content

Opera has updated the Chinese version of its mobile browser to stop users accessing restricted content. Opera Mini was updated on Friday from an international to a Chinese version,... More

2 comments


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters