Google SearchMore ContentAds / SponsorsGoogle AdsSite RankMy FOSS Work |
Fighting Phishing with AJAX - A Call to ArmsThursday, June 7. 2007Trackbacks
Trackback specific URI for this entry
No Trackbacks
Comments
Display comments as
(Linear | Threaded)
Hello
how are u going to identify the phishing site. this thing is only possible when we knw particular site is phinging SREE [Ed. Note: Come on, it's not really that hard. When the text in the link says PayPal.com, but the link goes to http://www.paypal.com.somesite.cn, you can be pretty sure it's phishing. Good mail clients like Thunderbird will warn you about links like this. Good browsers like Firefox will present a warning dialogue when you try to open a reported phishing site. Isn't that enough?] what about phishing links in email, user cannot identify by his eyes and not anti-hishing tools are doing thier best.
Do u have any more ideas about fighting with phishing [Ed. Note: Aside from educating users a bit, I'm not sure what more the tools can do. I can only speak for Thunderbird, but if the URL in the link doesn't match the text in the link: (1) it pops up a very clear warning; (2) If you hover over the link, you can see the actual target URL in the status. That pretty much does it all for me. Lately the most popular phish attempts seem to all be related to Google AdWords... it's pretty simple to ask "gee, is the domain in this URL actually google.com or not?" If not, then the message is a phish.] dude is there any new ideas
[Ed. Note: I am not working on more ideas. My personal opinion is that current tools are pretty good. The big challenge is educating users and getting them to pay attention to the warnings. My idea is that people should pay attention. Good luck with that!] |
CategoriesRecent EntriesAbout this Blog
Our Legacy: Environmental Barbarians Simplifying Joomla Template Layouts How the Liberals Should Elect a Leader TD Bank Tries an End Run Around Site Tracking Blockers Liberal Hopeful Bob Rae Expects Three Years of Recession? The Anatomy of a Security Breach Paris Hilton Gives Republicans a Lesson in Internet 101 RIP, SUV: Gas Prices Are "Getting There" Malware Injection: More Fun With Skype The Single Best Way to Bust a Telephone Scam Earth Hour: Little More than a Message I'm Boycotting the Olympics Viral Marketing from a Venture Capital Company? Online Shopping versus Traditional Shopping Geek BlogOn the Enforcability of the GPL
More Controversy: the Joomla Extensions Directory (JED) and the GPL Simplifying Joomla Template Layouts How to: Ubuntu PHP Remove Suhosin Joomla 1.5.8 is... is what?? "IBM May Quit Technology Standards Bodies" WSJ Screams In Search of an Application Framework: PHP GTK Python XULRunner Why I Love Open Source Web 2.0 and the One Page Web Site Microsoft Security Fix Clobbers Two Million Password Stealers LinksTop Exitswww.extensionprofessionals.com (20)
www.ambitonline.com (14) www.theglobeandmail.com (10) www.joomla.org (9) www.abivia.net (7) www.google.com (7) www.funnyordie.com (6) www.softwarefreedom.org (6) www.techcebu.net (6) developer.mozilla.org (5) Administration |