Phish hook

Phishers snare victims in customised nets

Targeted phishing attacks pose a growing threat according to security firm MessageLabs

Written by Phil Muncaster

Phishing attacks are growing more sophisticated and will represent a major security threat in the future as the number of converged spyware, spam and virus attacks grows, according to the chief technology officer of a major email and web security firm.

Mark Sunner of MessageLabs told IT Week that researchers at his firm have recently seen phishing attacks that employ information collected from users’ PCs by spyware. The criminals aim to make their scam messages more targeted and effective by using the inside information gained in this way.

"We're now in the midst of a new level of convergence triggered by the necessity [to make money] from targeted attacks," Sunner explained. "In 12 months we'll pinpoint this time as the moment spam and viruses converged with spyware."

Sunner likened the importance of the development to the period in 2003 which saw "the botnet phenomenon take-off overnight" and the first time that criminals merged spam and viruses with the release of the Sobig.A virus.

"We're seeing it in an embryonic phase with phishing attacks targeting people who actually use that bank, not a scattergun approach," Sunner said. "They use the customer's real name, address and [other details]." He added that as this type of attack becomes more popular, it is likely to bring to a head the issue of banks footing the bill for customers who become victims of phishing fraud.

"You used to be able to educate against phishing attacks but now [they are becoming harder to spot] and it will begin to get under people's radars," he said. "The banks' problem is they don't know where the customer has been before [and if their PC has been infected with spyware]…but they will cover this cost as long as possible."

Social networking sites such as MySpace represent a particular risk if criminals also begin to mine them for personal information in the future, to use in similar attacks, Sunner added. He also argued that instant messaging threats could rocket in about a year's time as the four public IM clients bow to pressure to interoperate, creating one giant messaging ecosystem offering criminals a much more profitable target for attack.

In other news, anti-virus specialist Kaspersky Lab last week released a new report warning that ransomware authors are using increasingly sophisticated encryption algorithms when blackmailing firms. In the future these techniques could even outwit the anti-virus industry, said the firm.

Tags:

reader comments

related articles

 

Spam emails rocketing

Spammers and cybercriminals using new techniques to bypass filters 03 Jun 2008

Experts predict rise in 'virtual' malware

Botnet shutdowns will force attackers to change tack next year 25 Nov 2008

Storm botnet blows itself out

But overall malware volumes still rising fast 01 May 2008

related whitepapers

today's top stories

Solid as a rock - business continuity in a global manufacturer

From power supply problems in Nigeria to email availability in Stockport, PZ Cussons is prepared for anything 02 Dec 2008

Technology and privacy

Watch the final video in a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 02 Dec 2008

IT staff desperate to keep their jobs

Most would work longer hours for less pay 02 Dec 2008

VMware View 3 enhances virtual desktops

Virtual clients now take up less storage space and can be 'checked out' to a laptop 02 Dec 2008

Technology and privacy

Watch part one of a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 01 Dec 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Will the terrorist attacks in Mumbai affect your offshoring plans?

Will the terrorist attacks in Mumbai affect your offshoring plans?

Is India becoming a risky destination?

Previous poll results

Latest audio and video articles

Padlocked CDVideo

Technology and privacy

Watch the final video in a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 02 Dec 2008

Podcast imageAudio

Computing podcast - Standard Life's offshoring plans; and the prospects for government IT

The insurance giant outlines its new outsourcing strategy; and we ask if the government's economic bailout will affect its IT plans 28 Nov 2008

Latest in-depth articles

Parcel being packedFeatures

Case study: eSpares and business continuity

Online electricals business has managed to decrease its downtime 02 Dec 2008

Royal Blackburn HospitalFeatures

NHS trust recovers from server overdose

Virtualisation technology breathed new life into East Lancashire's cost-intensive system 02 Dec 2008

Advertisement

Primary Navigation