Crime gangs go phishing

The past several weeks have seen a rash of "phishing" expeditions, in which fraudulent spam has been sent out attempting to trick the recipients into providing their bank account details.

In what is believed to be the result of organised crime gangs moving into the space, the number of fraudulent e-mails phishing for bank details has escalated sharply over the past few weeks, prompting the U.K. police to warn companies of the danger of having their identity "stolen".

Phishing involves sending out spam that purports to be from a particular company, informing people that they need to click on the link included in the message and enter their account details or risk dire consequences. Some e-mails claim the details need to be updated or access privileges will be lost, others claim that the account has been compromised and the details need to be entered for "security".

The fraudsters use sophisticated techniques such as grabbing real graphics from the banks' Web site to make the e-mail look authentic and disguising the hyperlink so it appears to point at the legitimate site when it really points to a fake one.

The majority of the scams originate in Russia and China, according to Paul MacRae, business development director of e-mail services company MessageLabs. The Chinese operation was shut down, but was recently started up again.

MacRae said that over the last one to two weeks four out of the five major Australian banks have been the victims of phishing. The latest victim was Westpac, while the ANZ and the NAB were targeted last week.

eBay and PayPal have also been victims of the scam, while other spam messages claim "Your credit card will be billed at $22.95 weekly and free 3 pack of child porn CD is shipping to your billing address" before indicating that people can cancel the order by e-mailing their credit card details to the company.

Companies are loath to reveal how many of their customers fall victim to the scam. Westpac Australia told ZDNet Australia   it was not planning to reveal the number of its customers that were tricked by the recent e-mail, but the New Zealand press are reporting 200 New Zealanders were affected by e-mails targeting them.

Banks and other organisations are attempting to fight back, with Westpac launching a publicity campaign recently, and several tech giants including eBay, Amazon, Visa and Microsoft forming a coalition to fight the problem.

St George Bank spokesperson Rebecca Taylor told ZDNet Australia   that the bank was lucky because it wasn't the victim of the first phishing scam, so when a scam was aimed at its customers the bank already had contingency plans in place.

This included notifying customers as soon as the bank became aware of the scam, and "looking at what type of transaction might result from this type of fraud" and monitoring for those transactions, according to Taylor.

MessageLabs offer a paid service to financial institutions called 'Ghost Watch', which monitors for suspicious e-mails and alerts the institution to the problem. MacRae said the faster the site was removed the fewer people could get fooled. The new service is headed up by David Banes, formally Regional Manager for Symantec Asia Pacific.

"If we see something unusual that looks like a ghost [fake] site we ask the owner of the data permission to warn the victim of the scam," said MacRae. Most of the scams are sent out as spam, which trips the filters at MessageLabs. The company then asks the recipients of the spam for permission to forward it to the victim. Most organisations agree for the e-mail to be sent, of course.

However, it appears inevitable that the phishing scams will continue to become more sophisticated until the e-mails are virtually indistinguishable from legitimate communications to the average user. The best way to combat the problem is to educate users not to respond to the e-mails no matter how legitimate they appear.

"Anyone who receives any e-mail that links to a site asking for personal information should exercise caution," warns eBay. "In the same way that you never tell anyone, even the bank teller, your PIN number, you should always protect your private information including passwords."

Another way to ensure the legitimate Web site is accessed is to open up a new browser and type in the address.

Advertisement

Talkback 2 comments

    Banks and other institutions l ...Sebastian Rooks -- 06/11/03

    Banks and other institutions like Insurance and Utility companies have missed the mark completely when it comes to electronic communications. Consumers just believed that big companies had finally woken up to the brilliance of e-mail and they responded to the fraudulent mails accordingly.

    Unfortunately, the consumers were wrong.

    Secure E-mail technology like ClearSwifts "ClearSecure" (from Kanbay Pty Ltd)has been available for a long time - a technology that secures an email but does not require the end-user to have a certificate or software on their PC - a clientless secure e-mail solution.

    Banks have had ample opportunity to have educated their customers by using secure e-mail by sending them secured electronic statements - or even send customers details of 'odd' transactions on their account - thereby actually REDUCING fraud.

    Consumers would have been accustomed to the secure mail format and criminals would not have been able to 'trick' consumers by replicating a secure mail system impossible to falsify.

    With security comes opportunity!

    Japanese Fraudsters: Toshiba and Mitsubishi koji mori -- 14/01/09

    Fraud Schemes

    It is known there are many hidden obstacles on the way to success in business. One chooses to overcome them legally going through thick and thin, others prefer to speculate upon a fraud scheme to tear out some money. For instance, the Russian Federation allows the latter to prosper and not to be accused of their heinous deeds since the Russian legislation is used selectively and corruption has become a norm of life.

    In our case, representatives of Toshiba Corporation and Mitsubishi Corporation LT, Inc. (http://www.mclogi.com/ ) have been working successfully in partnership for many years in Russia. Nevertheless, they â??Mr. Naohiro Baba and Mr. Koichiro Natsume, had decided to snatch a large sum using Mr. Vadim Danilov and his clients.

    Vadim Danilov was convinced by Mr. Baba that he had been registered as an official Toshiba trader â?? the Ninth Wave operating from the UK. In addition, Mr. Danilov was declared that NANA Eurooppa OY (NANA Europe Ltd.), and NANA Baltic OY were his sub-dealers, as well as all the companies which had been invited by Mr. Danilov to Toshibaâ??s Conference also become his sub-dealers. So, Mr. Danilov worked hard believing that his current position is a real one and promising future promotions.

    To his luck, Mr. Danilov had uncovered the scheme while checking fake invoices and seeing asset misappropriation in bills. As a result, he started finding out the data with Mr. Baba and Mr. Natsume but they preferred to fade away from Russia and kick back Mr. Danilov leaving him in debts.

    Nowadays, Mr. Danilov had been obliged to return â??the funds receivedâ?? from Toshiba Corporation. He has been struggling for his rights and compensation for material and moral damages for 33 months.

Add your opinion

Latest Videos

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Suzanne Tindal IT: Govt's cost-cutting bitch
    The government needs to stop looking at IT as a necessary evil or the place to remove costs when the Treasurer comes calling.
  • Array Can complaints on mobile content be cut?
    On 1 July this year the new Mobile Premium Services Code was introduced. It sounds like it's had a good impact, but is it enough?
  • Array NZ farmers: Bleating about broadband
    As we know, farmers are such bleaters. They bleat as much as the four-legged woolly things in their paddocks. If it's not the weather, it's the strength of the dollar! Nothing is ever right. Likewise with rural broadband.
  • More blogs »

Tags

Back to top

Featured