nexgenwars.com

Yahoo Profiles Phishing Redux

yahoo-members

Regular readers of our weblog will remember a post we made during the first week of May about a Yahoo! Account phishing scam. It was not flagged at that time by any of the popular URL blacklists and URL rating services that we checked it against, inspite of it being around for a significant amount of time. Well, surprisingly, the phishing site (yahoo-members.com) is still active even though the Yahoo! abuse team has reportedly taken action against it. Even more surprisingly, several URL blacklists and rating services still fail to warn against the site even though they were alerted to it weeks ago.

The most likely reason for the longevity of the phishing site is that it was not a widespread attack and it didn't target a major financial service. Hence, it managed to stay under the radar of the blacklists. Since way-under-the-radar spear phishing is the fastest growing category of phishing, this certainly doesn't portend a good future for most existing anti-phishing measures in the market - considering blacklisting is currently the most popular method for combating phishing.

We would like to hear what you think are good solutions to combat highly targeted spear phishing attacks. E-mail us at the weblog address listed at the top of this page.

0 comments:

Infoblog.us claims no credit for any images or content featured on this site unless otherwise noted. All visual content and blog entries is copyright to it's respectful owners. Infoblog.us is in no way responsible for or has control over the content of any external web site links. Information on this site may contain errors or inaccuracies; the site's proprietors do not make warranty as to the correctness or reliability of the site's content. If you own rights to any of the content or images, and do not wish them to appear on this site, please contact us via e-mail with the url of related blog entry and/or image and they will be promptly removed.