Friday, 20 November 2009
Home arrow Reference arrow Tech Talk arrow What is Phishing?

Advertisement
See Our Latest Ads

Click here to check out our new ads!

 

iShield
Related Items
Main Menu
Home
Products
Reference
Support
Company
Downloads
FreeScan
Purchase
What is Phishing?
Written by Crecia Scovill   

"Phishing" is a form of Internet fraud. It aims to obtain a users personal information such as credit cards, social security numbers, user IDs and passwords. Such information can be used for identity theft.

How does it happen?
Phishing can be carried out in person, over the phone,  through spam e-mail or popup windows.

The most common form of Internet phishing is from sending fake emails (Email Spoofing) which can appear to be from a legitimate source and requesting information (such as a bank account number and password), or it could direct the victim to a fake website that will request similar personal information, which could be easily captured by the "phisher."

What should I do?
To avoid getting caught, never respond to suspicious looking emails that request personal information. Never submit personal information to websites that are not secure. When you are at a legitimate secure site, such as a banking site, when you go to log into your account, you will sometimes be alerted that you are entering a secure site, while on a secure site you will see a lock icon in the address bar.

If you think you may have been phished, you will want to change your passwords and alert any company that you have a financial account with. Watch your statements for any charges that you did not make and report anything you find.

It is VERY easy to get caught by a phisher if you are not careful. Please use caution whenever you are using your personal information. Never give out your personal information when you do not know for sure who you are giving it to. Double check and verify any requests for information. Call the company that is requesting it, and make sure you have the official number from the official site, don't call numbers provided in an email as these could be fraudulent as well.

Example
One of my friends was sent an email that was supposedly from Ebay or PayPal saying that they lost their account and needed information from them to help find it. It asked for their email addresses and passwords, bank account numbers, user ID's and Passwords for Ebay and PayPal, their Social Security Number, as well as a few other things. Unfortunately they did not think to check with PayPal or Ebay to see if they were legitimate emails and they responded providing a lot of personal data. When they told me of this, I had them contact the companies that they had supposedly received these emails from and they found that the emails were actually not legitimate. They quickly notified the companies and forwarded the emails to them and changed her account passwords. So far, they seem to be fine.

More articles on Phishing:
http://www.microsoft.com/athome/security/email/phishing.mspx
http://en.wikipedia.org/wiki/Phishing
http://www.webopedia.com/TERM/p/phishing.html
http://www.computerworld.com/securitytopics/security/story/0,10801,89096,00.html
 

Top!