IT Management articles: tips, advice, ideas, strategies & solutions

Subscribe to our IT Management Articles Feeds


Feeds

What's this?

Home > IT Management

Beware of Phishing

Marvin Dreyer
Usually phishing starts with an email or an instant message, appearing to be from the genuine entity, asking you to furnish important details or to ‘verify' your account with the genuine entity to supposedly avoid a “disciplinary action” or on an “unforeseeable emergency.” The email will also have a link that points to a website copy of the genuine party's website.

On visiting this website, you will be amazed to find its thorough resemblance to the genuine entity's website; unsuspecting individuals may be fooled to believe that it is the original website. Unsuspecting users, thus, may provide the original user name and password in this website and make themselves victims of the phishing attack (and may still remain unsuspecting). Once given, the phishing entity has a direct door opened to your personal information and your identity. It can do anything with this information.

Online payment systems like PayPal, eBay, and online banking entities like Bank of America, Citibank are very common focus of the phishing attackers.

If you receive an email in your inbox, with subject line asking you to “confirm your email address,” “verify your login,” “log in to prevent disqualification,” etc., you should be wary. The spam detector of your email address may not catch these crooks all the time. If the genuine financial entity you depend on doesn't usually ask your password or ask you to confirm any personal information, then the email you received must be from fraudulent entity.

You should check the email address it comes from (not the header information alone, the exact email address). Latest phishing mails on PayPal actually come from an email address, support@paypal.com while the genuine PayPal email address may be different (like support@intl.paypal.com). So, you cannot rely even on the email addresses of the senders. However, so many attackers use public email addresses provided by Yahoo, GMail etc. The header may tell you something such as “Bank of America Online Banking System,” while the sender email address would be “bankspoof@yahoo.tk.” Smart people quickly see this anomaly.

Always make sure, when you log in to your financial institution website, that you open a new browser window, type in the address on the address bar, and log in. Never click on any links you get on your emails.

Spot Phishing

Most or all of the professional organizations do not ask for your private and personal information over an email. They won't ask you to “verify email” or “login to confirm” over an email anyway. So, any such mail you receive is phishing email and report it right away (see below to know how).

Look for promotional or intimidating diction in the emails you receive. If it tells you something like “We have no other means but to close down your account unless you verify now,” then remember it is most likely a phishing email.

Another type of phishing attack offers you large sums of money, telling you a short fiction about a bygone legacy (from which you get paid a percentage), asking your help to set records straight. On proceeding with the correspondence, you will be asked to submit bank account information, or even send small sums of money to enable successful funds transfer.

If the email contains image instead of text (to find out, try selecting the text on the email), then discern that it is an attempt to elude the spam filter of your email software.

Most of the phishing emails, owing to be from uneducated lot trying for quick bucks, may contain loads of grammatical and punctuation errors interspersed in awkward wording and spelling mistakes. Also, they would lack that quality and politeness of a polished professional email.

Another giveaway is the presence of attachments. Phishing emails may contain them while genuine entities never send attachments over emails. Make sure you don't open any of the attachments received. They can be such potential threats as adwares, malwares, keyloggers, etc.

If you don't find your name in the greeting in the mail, then it may be a phishing mail. Generic greetings like “Dear sir,” “Dear user,” “Dear subscriber,” etc., instead of “Dear Tom,” “Dear Sarah,” etc., clearly tells you that the sender knows not who you are. So, suspect such mails.

Check out the link provided. A link text of the URL of the genuine entity itself, like “Bank of America,” with underlying original hyperlink of the phishing website, may evade your eyes. So, always check which address it actually links to. Don't open the hyperlink unless you are sure. Deceptive URLs can take many forms. Some URLs will be subdomains with the subdomain name that of the genuine organization. Like “Paypal Spoof” Be wary of these addresses.

Fight Phishing

Legally fighting phishing is very easy for you. A way to report phishing attack is through US-CERT, the United States Computer Emergency Readiness Team. Report phishing to US-CERT through their email address, phishing-report (at) us-cert.gov. Report phishing with the Antiphishing Organization email, reportphishing (at) antiphishing.org. Spams may be forwarded to spam (at) uce.gov (Federal Trade Commission, FTC email address). Also, alert the Internet Crime Complaint Center of FBI (ic3.gov).

Most of the online entities have their own designated email addresses for you to report phishing. For instance, PayPal has spoof (at) paypal.com, eBay has spoof (at) ebay.com.

Conclusion

To be on the safe side, always make sure you have a current antivirus and firewall application in place. Do not give your personal information through any links you receive in emails. Email is not a safe medium of communication at all; do not communicate with anybody you don't know. Make sure you forward any spam or spoof you receive to the above-said entities. These simple steps will keep you secure in the cyberspace.
About the Author:
Marvin Dreyer is and entrepreneur, author. He has been involved in entrepreneurial activities for over 20 years. He founded Cheap Affordable Web Site Hosting for your web site hosting and check url to help web owners to check their site for viruses, check broken links and more online.
 

 

No. of Times this article has been viewed : 75
Date Published : Jun 30 2008

Most Recently Published IT Management Articles as of

Jun 3 2009    Things to Consider While Selecting a Barcode Printer

by Nate Rodnay

Barcode Automation systems enhance business productivity. These systems have successfully helped many small businesses, as well as large transportation, logistics and manufacturing companies increase productivity and performance.

Apr 15 2009    3 Reasons Why Gmail Voice and Video Chat Should Scare You

by Brad Semp

The announcement by Google of the addition of voice and video chat to its Gmail interface should be a concern to most users. Although most will consider the additions as necessary features, such functionality serves only to increase the existing stranglehold that it has on users...

Apr 13 2009    Make Sure Your Web Host Offers First Class Support

by Steve Johnson

A reliable web hosting company's role is to maintain its hardware, software and operating environment for all its customers, allowing them to focus on running their online business.

Mar 27 2009    How To Reduce International Calling Costs

by Michael Lemm

How do you lower international calling costs by a hardware solution? By hardware solution, I mean a method that does NOT include simply getting better rates from a carrier.

Mar 27 2009    TDM Or IP Transmission .... Which Is More Efficient?

by Michael Lemm

Both modes of voice transmission has its own advantages and disadvantages. Understanding what they are and how they impact your business will help you decide what is the right approach for your voice network.

Mar 18 2009    The Edge of Application Integration Services

by Sarfaraz Khan

In these days when the Internet has become the most important venue for transacting and conducting businesses, there are many special computer applications that are available to help online business operators make their operations more effective.

Feb 20 2009    What is Janitorial Software Good For?

by Jordan McPelt

This is a discussion on what janitorial software is and a little description of CMMS which stands for computerized maintenance management system- Software.

Feb 18 2009    Know about USB - Universal Serial Bus Controller

by Koslev Klam

This article is a wonderful piece of information about USB, USB version history and basics of USB signaling.

Feb 13 2009    What Voice/Data Network Solutions Make The Most Sense In Today's Economic Environment?

by Michael Lemm

Given today's economic contraints (actual or perceived) .... and the hypothetical situation that "you" are looking for a bandwidth solution for the backbone of your network infrastructure for a multi-site business .... what would you gravitate toward and why?

Feb 13 2009    Asterisk vs Proprietary IP PBX - A Technology Point Of View

by Michael Lemm

Some beleive Asterisk is a more technologically advanced piece of software over the software that runs various proprietary systems. But is it better as the "Mom and Pop" solution .... or is it "Big Boy" ready?

Feb 13 2009    Is A Point To Point T1 Better Than Frame Relay?

by Michael Lemm

Is the decision between point-to-point T1 and Frame Relay a simple ne? Not really. It can be confusing if you're not careful. here's tips on how to navigate that decision process in laymen's terms.

Feb 13 2009    What Do You Like Or Dislike About VOIP?

by Michael Lemm

VoIP still means a lot of things to different people. Most often it is a marketing label. So tread lightly .... there's quite a few things that you need to consider when looking at VoIP.

Feb 13 2009    What Does The Future Hold For Nortel????

by Michael Lemm

There are a lot of Telcos that depend upon Nortel - what is going to happen to Nortel and what will happen to their customers?

Jan 24 2009    How “Shined Shoes” Will Help You Generate More IT Sales

by Robin Robins

For IT companies that are finding sales lagging in 2009, this article is a call to action. Learn how to mobilize effective marketing and get out of a slump now.

Jan 6 2009    Hosted Exchange Resellers See Business Opportunities

by Adrian Gates

Hosted exchange reselling or private label hosted exchange service is a business opportunity made possible by the ability to share and allocate the IT infrastructure (software, hardware, and bandwidth) through a user-friendly reseller control panel.

12345678
Search for ebooks on Management & Business