15 Jan 2007
A new phishing kit has been discovered that is being used by fraudsters to capture victims’ personal information online in real-time.
The Universal Man-in-the-Middle Phishing Kit, discovered by vendor RSA, enables fraudsters to sit between prospective victims and legitimate businesses.
Marc Gaffan, director of marketing for consumer solutions at RSA, said: 'As institutions put additional online security measures in place, inevitably the fraudsters are looking at new ways of duping innocent victims and stealing their information and assets.'
The victim receives a 'standard' phishing email and when clicking on the link is directed to the fraudulent URL. The victim then interacts with genuine content from the legitimate web site - which has been 'imported' by the attack into the phishing URL - thus allowing the fraudster seamless, invisible and immediate access to specific data, like the victim’s personal information.
'While these types of attacks are still considered ‘next generation’, we expect them to become more widespread over the course of the next 12-18 months', said Gaffan.
What do you think? Email us at: feedback@computing.co.uk
Further Reading:
Have your say on this article
Newsletters
Latest stories from Security Technology
Latest videos
You may also like
Security Technology jobs
Technology Patent Wars
Case studies from large organisations across all sectors
... And rich media, and flexible working, and peaks in traffic ...
Upcoming Events
Join us for this Computing web seminar, in which the Head of BI at the Co-operative Group Nick Colebourn will be explaining just how he reigned in the Group’s sprawling database estate and how significant savings were realised and data quality improved as a result.
Date: 31 May 2012
Time: 11:00 AM
Live June 13th 11:00am: Register now. During this web seminar we will be looking at the sorts of incidents that can bring data centres grinding to a halt and what can be done about them.
Date: 13 Jun 2012
Time: 11:00 am
Receive the latest jobs direct to your inbox
Are you being paid what you are worth?