Blog Homepage
Newer Entries «
Older Entries »

Enter the Dragon

Recollections, treasures, and oddities. Things too valuable, interesting or weird to go unnoticed.

Latest Phishing Attempts 22nd February 2005, 15:08
Average Score: (0 votes)

I get phishing emails in comforting regularity. For those unfamiliar with the term, "phishing" is the act of luring an unsuspecting victim into entering personal or credit card details somewhere they shouldn't, by disguising it as a trustworthy (often banks) brand site.

There are two ways to spot phishing emails:

1. The english in the mail is generally full of mistakes. Real emails from trusted brands should not have typos in them.

2. The URLs they want you to click on don't go the site they'd like you to think they do. They often look very similar, but never quite right.

However, this latest email I got (see picture) is different and tries something I had not come across before. It uses Ebay's redirection script. So the beginning of the URL looks and is right - it does go to Ebay, but it calls Ebay's redirection script to take you to the phisher's site (which had already been taken down by the time I had a look).

This was the URL the goes to:

http://cgi4.ebay.com/ws/eBayISAPI.dll ?MfcISAPICommand=RedirectToDomain&DomainUrl=http%3A%2F%2F...

Security Warning

A lot of sites have redirection scripts (often to count outgoing clicks), and a lot of these are portentially prone to this sort of abuse. This doesn't actually let anyone into a site, but it takes abusing a brand name one step further.

To all web developers out there I would therefore suggest you review your redirection scripts, and if they use simple URL encoding, to switch to encrypted parameters, so that only your site (knowing the right salt) uses the script and forwards requests.

Tags: email, phishing, scam.

Rate this Image (1 - worst, 10 - best)
1 2 3 4 5 6 7 8 9 10
Leave Comment

You must be logged on in order to post a comment.

Login
Free Registration

Comments

Thanks for the warning! It's good to know how to spot problems. So what you're basically saying is: if you think there's something wrong with the email, then there probably IS something wrong with the email. Did I get that right? Thanks again, and have a great day! — nathanerinfunk, 11/11/2005 03:51

Trackbacks

< 2008 >
< December >
1 2 3 4 5 6 7
8 9 10 11 12 13 14
15 16 17 18 19 20 21
22 23 24 25 26 27 28
29 30 31        
M T W T F S S

Show Recent Entries

Actions
» BusyThumbs Home
» Create Your Own Blog!
» Login
» Author Profile
» Forum
» Any Questions?
My Favourites
B-movie Catya
Dragon Eyes1
My Links
Hot Topics

Google Earth - Improved 3D! by moblog on 25 Sep 2006

Welcome To BusyThumbs! by tripleox on 14 Sep 2006

Edit Pictures In Your Browser by tripleox on 14 Sep 2006

Mobile Phone Safety by tripleox on 13 Sep 2006

Video Blogging by tripleox on 08 Sep 2006

Busythumbs Feedback by tripleox on 06 Sep 2006

BusyTagging by tripleox on 24 Mar 2005

Syndication