Yahoo hosting 'thousands' of phishing sites

Yahoo is playing host to thousands of phishing sites and doesn't have sufficiently well-trained staff to address the problem of online fraud, according to a leading anti-spam and security organisation on Tuesday.

Richard Cox, chief information officer of Spamhaus, told an audience of politicians, security experts and law enforcement officials that Yahoo has just under 5,000 domains hosted and registered with the words 'bank', 'eBay' and 'PayPal' within the domain names.

Most of those are used as phishing sites, Cox told the London "eConfidence -- Spam and Scams" conference.

Cox said that ISPs are failing to train their staff to recognise this as a security issue. "ISPs are treating abuse issues as customer service issues," Cox claimed.

In response, Yahoo said it would follow up Cox's claims. "We take security very seriously and will be investigating this issue fully," said Nick Hazell, alliance director for Yahoo Europe.

It is understood that most of these domains were registered in the US; it may be hard for Yahoo to take action until the domains are used in a phishing attack.

Meanwhile Ed Gibson, Microsoft UK's newly appointed chief security advisor, praised Spamhaus for its work. "Hats off to Spamhaus," Gibson told the audience. "We don't do a good job of responding to abuse. Spamhaus is excellent at highlighting areas of deficiency."

ZDNet UK's Tom Espiner reported from London. For more coverage from ZDNet UK, click here.

Advertisement

Talkback 1 comments

  1. Yahoo needs to adress the phishers Anthony Webster -- 07/09/05

    I recieve on average 6 phising emails per week which are hosted from Yahoo hosted sites. Mostly these target ebay or paypal but are easily detected when the links dont equal the text which hosts the link.

    Surely they have this covered in any hosting agreement, and they could literally sue the pants of these charletons.

    Lets hope they will act soon


ZDNet's CIO Vision Series

Customs | Murray Harrison, CIO

Australian Customs CIO Murray Harrison dislikes SLAs and runs away if a vendor talks to him about innovation. In this interview, he also explains why getting excited about gadgets can be dangerous and talks about how Customs' outsourcing strategy has evolved.

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Munir Kotadia iPhone suckers test our patience
    So how many of you have bought a 3G iPhone? Do you feel like a sucker? If you don't, maybe you will once your first bill arrives.
  • Array Westpac bank: AVG's toughest competitor
    The next time you're buying antivirus software, don't go direct to Symantec or McAfee. Don't download free antivirus. And definitely don't see Harvey Norman. Ask your bank — they're quite literally giving the stuff away.
  • Array Will you manage in the exabyte era?
    Mammoth growth in storage volumes is a fact of life, but even so it's helpful to pause occasionally and try and work out whether our information strategies have fallen hopelessly out of step with the pace of technological growth and changes in costs.
  • More blogs »

Tags

Back to top

Featured