Majority of phishing websites 'assembled from kits'
Posted on 7 Jun 2007 at 15:23
New research has found that almost all phishing websites are made from off-the-shelf components available from the internet.
The study carried out by IBM's Internet Security Systems subsidiary found that 92 per cent of new phishing web sites were kit-based. The company's X-Force research team found that out of 3,544 phishing websites recently identified, 3,256 of them used tools that allow a non-technical attacker to rapidly deploy multiple phishing websites (with multiple DNS host entries for virtual hosts) on a single host (i.e. a compromised computer).
Further research by the team discovered that those phishing kit sites led back to 100 registered domains (compared to the 288 non-kit phishing websites that made use of 276 registered domains). The majority of these domains (44 per cent) were registered with a Hong Kong (.hk) address.
Gunter Ollmann, director of security strategy for IBM Internet Security Systems said that the research showed that the use of phishing kits (with their multiple sites hosted on a single server) greatly inflated the total number of phishing sites that are commonly reported each week, and that this number does not adequately correlate to the number of hosts that are actually involved in a phishing scam.
'This differentiation between hosts that are running phishing kits and those that aren't is pretty important,' said Ollman. 'In my mind it's analogous to classic network hack attempts and whether you count the number of attack probes detected, or you count the number of attackers actually launching the probes.'
He said there is a big difference between observing twice as many attacks and having twice as many attackers targeting your organisation - 'the later actually has importance in the way you should be responding to the threat,' he said.
Author: Rene Millman
advertisement
- Need a bit of extra Christmas cash? Grass up your boss, says BSA
- Photoshop Mobile on Android review: first look
- ATI Radeon HD 5970: 42% more expensive in the UK
- Office 2010 Beta – 32-bit or 64-bit – The Choice is Clear
- Why Britain's watchdogs have fewer teeth than goldfish
- Tabbed documents: how to make Office 2010 great
- Outlook 2010 People Pane – does it spell death to Xobni
- Microsoft Outlook 2010 screenshots
- Co-Authoring in Word 2010 and SharePoint Foundation 2010
- Microsoft Outlook 2010 screenshots: Backstage view
- Getting to grips with Microsoft's IT Health Environment Scanner
- Virtualise your servers
- The changing face of travel gadgets
- Build your own distributed file system
- The bulletproof Dell that costs an arm and a leg
- Microsoft Office 2010 Technical Preview: Q&A
- Lawnmowers, the TyTN II and one odd insurance request
- There'll never be a bulletproof OS
- How far can we trust apps?
- Five nice touches in Outlook 2010
advertisement
Printed from www.pcpro.co.uk


