Government Technology

    Digital Communities
    Industry Members

  • Click sponsor logos for whitepapers, case studies, and best practices.
  • McAfee
  • Net App
  • Perceptive Software

Personal Computing: Phishing Away Your Identity



October 18, 2007 By

You know not to do it. You don't respond to those e-mails asking you to update your Social Security number or credit card, bank, or other financial information or verify your password at eBay, PayPal, or other e-commerce Web sites.

You don't because you know that chances are high that this is a criminal attempt to steal your identity and your money, and you'd then be left spending many tedious hours trying to straighten out the mess afterward.

Among the latest phishing attacks are e-mails that appear to come from the Internal Revenue Service trying to trick you into revealing the bank you do business with. The criminals then send an e-mail that appears to come from that bank, asking you to log onto the bank's Web site. Only the Web site you're directed to only looks like your bank's. It's actually a bogus site put up by the criminals to get your account data so they can log onto your bank's real site and clean you out.

People still get suckered into these "phishing" scams, with the Anti-Phishing Working Group receiving an average of about 25,000 reports of such attacks each month. Many people think of cybercriminals operating abroad, away from the reaches of American law enforcement, and many do. But the country hosting the greatest number of phishing Web sites is the U.S., according to the group. The average time that these sites stay up is about four days -- long enough to do their dirty work.

Phishing originated with America Online back in the mid-1990s with teenage tricksters enticing naive users into revealing their password to "verify your account" or "confirm billing information." It later evolved into a more nefarious mode, involving credit cards and other financial information, but with the same kinds of pitches being used. By 2004 it was a full-scale crisis. It still is.

Among the other techniques used by phishers are addressing victims using their real names, sending e-mail that appears to come from a trusted friend or co-worker, using a Web address for the phishing site that's very close to that of the real site, featuring images at the phishing site that were stolen from the real site, using links at the phishing site that connect to the real site, and employing scripts at the phishing site that place a picture of the real Web address over the address bar.

Protecting your self against phishing isn't difficult, and new software provides extra protection.

Never click on a link in an e-mail message asking you to verify any personal or financial information via the Web. No legitimate company or government agency should ask you to do this. If you think it may be legitimate, phone the company and ask if such e-mail went out.

Be careful, though, of e-mails asking you to phone your bank or credit card company to verify information. The phone number may be bogus, directing you to the criminals, who will then try to steal your information. Look up the phone number yourself.

Be wary of any links in e-mail messages. Verify that the Web address that the link will take you to is the same address it indicates. Phishers often use the correct Web address as the name of the link but code the link to take you to the bogus address. Be especially wary of Web addresses that include the @ symbol or e-mail messages that ask you to click on an image.

Be careful when typing Web addresses into your browser so a typo doesn't land you at a phishing site by mistake. Using a bookmark or favorite link will prevent this.

Use the latest versions of Microsoft Internet Explorer, Mozilla Firefox

| More

Comments


Add Your Comment

You are solely responsible for the content of your comments. We reserve the right to remove comments that are considered profane, vulgar, obscene, factually inaccurate, off-topic, or considered a personal attack.

In Our Library

White Papers | Exclusives Reports | Webinar Archives | Best Practices and Case Studies
Living in a Smart City: Chattanooga, TN
The only one Gigabit broadband service in the United States for residential and business customers is now available citywide in Chattanooga, Tennessee. Let's meet people who live and work in one of the smartest city: what services do they embrace today, what is their vision for the future, and what kind of culture do they think makes this all possible and what's their definition of a smart city.
Creating Your Smart Grid: A How-To Guide
The smart grid promises to bring unprecedented opportunities for both utilities and consumers, improving safety, reliability, efficiency and security. The latest communications technologies will greatly improve awareness of grid conditions – in real time – for better control, management and decision-making.
WHITEPAPER: D Block Spectrum Act and the FirstNet Broadband Network. What does it all mean?
On Feb 22, 2012, the Middle Class Tax Relief and Job Creation Act of 2012 was enacted into law. This law will ensure the establishment of a nationwide, interoperable public safety broadband network in every state and territory in the U.S. Learn about the new law and what you can do to prepare for it now.
View All

Digital Communities members get access to our collaboration task forces

427 Members

77 Discussions

84 Files

Latest members Become a member

Digital Communities members get access to our collaboration task forces

669 Members

145 Discussions

150 Files

Latest members Become a member

 


Featured White Papers & Reports

The Future of the Desktop in Government

Until recently, there was no alternative to the familiar desktop computer, and its expensive upgrades and maintenance requirements. For cash-strapped local governments, the desktop computer is quickly becoming an unsustainable option for future progress. Now, a technology known as virtual desktop infrastructure (VDI) offers an alternative. It can be significantly more affordable than buying individual computers for every employee, and it provides similar capability. This paper shows how VDI is the future of the desktop and is a game-changer for local governments.


View Full Library

Events

GTC East

Don't miss this opportunity to see the latest in digital government solutions, keep abreast of current policy issues and network with key government executives, technologists and industry specialists.

View All Events