bartop


dot pictureservices picturedot picturesupport picture
dot picturecontact picturedot pictureabout picture
dot picturehome picture

header

Navigation

Home
About BIGSEA
Support
Contact
Services
Clients
Rev9
Links
Radio-Dadio


Discussion

Today's Discussion
Create New Topic
List by Topic


Search BIGSEA

Atomz Search:


Advanced Atomz



    Monday, February 7, 2005

New Phishing Attack: Shmoo Group exploit-- 0wn any domain, no defense exists


Shmoo Group exploit: 0wn any domain, no defense exists: "Cory Doctorow: Pablos sez, 'Shmoocon ended today. And just to prove The Shmoo Group wasn't sitting on their (hands) for the entire time while planning the con - A new exploit was demo'd by EricJ that left all jaws our on the floor. Want to own ANY domain? Want a trusted SSL cert for it? Check it out here. We 0wnz0rd PayPal, but left the rest for you. We have no idea how to fix this and neither do the browser developers. Official advisory here. Phishing attacks of doom coming soon.'

Link

(Via Boing Boing Blog.)

Bottom Line: to avoid getting caught by a phishing attack, never trust a link to a web site where you may have to enter sensitive data. If you need to visit a secure site, don't click a link-- just type the url into the address bar yourself. Make sure you type carefully and spell the url correctly. Then, double-check to make sure you typed the address correctly. If you are entering sensitive data into a web form (including usernames and passwords), make sure the url begins with https:// (note the "s" after the http -- the "s" stands for secure).

In a phishing attack, a malefactor sets up a web site that mimics an actual commercial web site. He or she then uses the legitimate appearance of the site to lure you into entering sensitive data. The miscreant then collects your sensitive data to use in later attacks on your real accounts.

Posted by Scott Girard on 2/7/05; 11:19:30 AM from the News dept.

Comment [0]  Trackback [0] #   

 
February 2005
Sun Mon Tue Wed Thu Fri Sat
  1 2 3 4 5
6 7 8 9 10 11 12
13 14 15 16 17 18 19
20 21 22 23 24 25 26
27 28  
Jan   Mar



BIGSEA
A metaphor. A philosophy. A way of doing business.

Copyright 1997-2005 - Last update: Monday, February 7, 2005 at 1:19:47 PM