<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
> <channel><title>gHacks Technology News &#124; Latest Tech News, Software And Tutorials &#187; phishing tips</title> <atom:link href="http://www.ghacks.net/tag/phishing-tips/feed/" rel="self" type="application/rss+xml" /><link>http://www.ghacks.net</link> <description>A technology news blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description> <lastBuildDate>Sat, 11 Feb 2012 17:32:23 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <atom:link rel="hub" href="http://pubsubhubbub.appspot.com"/><atom:link rel="hub" href="http://superfeedr.com/hubbub"/> <item><title>The Phishing Flow Chart</title><link>http://www.ghacks.net/2010/02/11/the-phishing-flow-chart/</link> <comments>http://www.ghacks.net/2010/02/11/the-phishing-flow-chart/#comments</comments> <pubDate>Thu, 11 Feb 2010 16:47:52 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Email]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[login helper]]></category> <category><![CDATA[phishing]]></category> <category><![CDATA[phishing email]]></category> <category><![CDATA[phishing flow chart]]></category> <category><![CDATA[phishing tips]]></category> <guid
isPermaLink="false">http://www.ghacks.net/?p=22991</guid> <description><![CDATA[Phishing is a serious problem on today&#8217;s Internet even with phishing protections in email clients, web browsers and security software in place as those security solutions only deal with already reported phishing scams and sites and not new ones. Internet users therefor need to know about phishing and how to identify phishing emails from safe [...]]]></description> <content:encoded><![CDATA[<p>Phishing is a serious problem on today&#8217;s Internet even with phishing protections in email clients, web browsers and security software in place as those security solutions only deal with already reported phishing scams and sites and not new ones.</p><p>Internet users therefor need to know about phishing and how to identify phishing emails from safe emails.</p><p>The <a
href="http://loginhelper.com/">Login Helper</a> blog has created a <a
href="http://loginhelper.com/email/phishing-flow-chart/">phishing flow chart</a> that outlines the process of analyzing an email to determine if it is a phishing email or not.</p><p><span
id="more-22991"></span><a
href="http://www.ghacks.net/wp-content/uploads/2010/02/phishing_flow_chart.jpg"><img
src="http://www.ghacks.net/wp-content/uploads/2010/02/phishing_flow_chart-439x500.jpg" alt="" title="phishing flow chart" width="439" height="500" class="alignnone size-medium wp-image-22992" /></a></p><p>The flow chart addresses the three biggest email dangers: Attachments, links and social engineering. The chart has been color coded for easier recognition of safe and dangerous elements in emails. All red elements in the flow chart are considered dangerous while blue elements are considered safe.</p><p>The chart furthermore provides basic suggestions on how to react when possible dangerous elements are encountered, for attachments it would be to save them locally and check them with a service like Virus total online.</p><p>Following the chart leads either to a safe or dangerous rating for the email that is being analyzed.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2010/02/11/the-phishing-flow-chart/feed/</wfw:commentRss> <slash:comments>9</slash:comments> </item> <item><title>Anti-Phishing Tips</title><link>http://www.ghacks.net/2006/07/14/anti-phishing-tips/</link> <comments>http://www.ghacks.net/2006/07/14/anti-phishing-tips/#comments</comments> <pubDate>Fri, 14 Jul 2006 05:15:54 +0000</pubDate> <dc:creator>Martin Brinkmann</dc:creator> <category><![CDATA[Advice]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[anti-phishing]]></category> <category><![CDATA[phishing tips]]></category> <category><![CDATA[prevent phishing]]></category> <guid
isPermaLink="false">http://www.ghacks.net/2006/07/14/anti-phishing-tips/</guid> <description><![CDATA[Phishing is a popular method to capture personal data such as passwords, transaction numbers and credit card details. The company I´am working with locks several user accounts each day to prevent harm done to them due to phishing. It normaly starts with an email asking you to update your profile, to download a security update or a email that reveals that you are the highest bidder of an ebay auction (that you do not know about).]]></description> <content:encoded><![CDATA[<p>Phishing is a popular method to capture personal data such as passwords, transaction numbers and credit card details. The company I´am working with locks several user accounts each day to prevent harm done to them due to phishing. It normally starts with an email asking you to update your profile, to download a security update or a email that reveals that you are the highest bidder of an eBay auction (that you do not know about).</p><p>To make this work they have to capture your data on one of their servers. A link is always provided in the email which looks pretty normal, e.g. http://www.ebay.com/. You might know that the html link tag is able to provide a link and a text that is shown instead of the link. Those criminals use this to their advantage showing ebay.com and directing the user to a different location.</p><p><span
id="more-628"></span>Onwards to the tips:</p><ul><li>Phishing only works if you click on a link that leads to a website that looks similar to the one you want to visit. If you do not click a link in the email but enter the url of the company directly in your browser window you are save. This is the best tip to prevent phishing at all. <strong>Do not follow email links.</strong></li><li>If you receive an email asking you to call a company compare the phone numbers and use the ones that you know and not the ones mentioned in emails. Social Engineering is a rising threat as well. Most people do not know that phishing can also happen by phone. <strong>Check the phone numbers in emails.</strong></li><li>You receive an email stating that you are the highest bidder for a golden ring on eBay or that your phone bill is incredibly high and that you can verify the bill by clicking on the document attached. <strong>Use your brain. </strong>You know that you are not the highest bidder and that the phone bill can´t be real as well. To check the first type in the url of eBay in your browser, you will see there is no such auction. Call your phone company in the second one and they will verify that this is a phishing attempt.</li><li>Always verify that you are at the right website before entering data. Firefox 2 and Internet Explorer 7 will have anti-phishing tools on board but it is always a good idea to verify this for yourself. Look at the url, is it the right one ? It should normally be a https:// website which can be verified by looking at the yellow padlock in the status bar. If you click it you will see the certificate and you can compare the certificate to the one of the company that you want to visit. (some company&#8217;s store the certificate information on their webservers, some don´t, call them and you will receive this information.)</li></ul><p>To sum it all up. People like you and me will most likely detect fake websites and act accordingly. Normal users have a hard time identifying those websites and are the main phishing targets. They don´t know about the technical possibilities and simply assume that everything is alright.</p><p>Maybe because they are lazy, maybe because they do not want to spend time learning computer stuff. Who knows. Phishing will stop if the majority of users are educated and know how to handle computers.</p> ]]></content:encoded> <wfw:commentRss>http://www.ghacks.net/2006/07/14/anti-phishing-tips/feed/</wfw:commentRss> <slash:comments>6</slash:comments> </item> </channel> </rss>
