
What is PhishingPhishing is an e-mail scam technique used by Internet fraudsters to entice unsuspecting consumers to divulge sensitive valuable information. Fraudsters involved in phishing schemes lead consumers to believe that they are responding to a bona fide e-mail request from a well-known instituition to update their information. A Typical Phishing Hoax Scenario
Phishing TechniquesPhishing schemes use sophisticated techniques to disguise the origin of their spam e-mails and the forged Web sites, so that it is hard to detect the hoax. Often, spammers exploit the Uniform Resource Locator (URL) "user authentication" syntax feature supported by some Internet browsers to cleverly cloak the fake Web site as an authentic site. This practice deceives the Internet users, because the fake Web site's URL displayed in the browser's address bar matches that of a genuine Web site. In some phishing instances, criminals request that the recipients download and install "security" software attached to the spam e-mail. If a recipient installs the software, the criminals can monitor the victim's computer and capture bank and payment card account details. The use of this mechanism, though low in relation to other mechanisms, recently is showing an increasing trend. In addition, spammers "take over" unsecured computers and servers and route spam e-mail via these to conceal the real e-mail source. The criminals use the victim's computer for launching spam e-mail distribution, unbeknownst to the victim. |