邪恶八进制信息安全团队技术讨论组's Archiver

pub!1c 2006-3-19 10:09

[转载]Australian banks are fast in phishing scams

<P>信息来源: <A href="http://www.crime-research.org">www.crime-research.org</A></P>The National Australia Bank was able to quickly shut down three sites in China that launched a phishing attack on it.<BR><BR>The bank's security response team detected the attack last Tuesday night and had shut down the sites by early Wednesday morning.<BR><BR>A bank spokeswoman said such sites usually took 24 hours to shut down, so the overnight turnaround had been very quick. The threat had not been classified as a major scam by the bank but deemed a "random generated email".<BR><BR>"It stood out as a hoax email as the language was clumsy," she said. Education on phishing attacks appears to be working.<BR><BR>The bank had received a number of calls from customers about the email but had not received any from customers saying they had responded to the scam. <BR><BR>No fraud losses have been recorded as a result of this attack.<BR><BR>Websense Security Labs Australia-New Zealand manager Joel Camissar said the attack was an example of a "rock phish".<BR><BR>Rock phishing kits were available on the internet and characterised by having /rock/ or /r/ in the URL path, followed by an alpha character. Quite often the letter after the /r/ matched the target name, for example: www.samplerockphish.com/r/b (for Barclays) and the sites were usually hosted in Asia. <!-- google_ad_section_end --><BR><B><A href="http://australianit.news.com.au/articles/0,7204,18449556%5E15331%5E%5Enbv%5E15306-15319,00.html">Original article</A></B><BR>
<P></P>

页: [1]
© 1999-2008 EvilOctal Security Team