Govt departments could prove fertile phishing ground

Banks may be today's target for "phishing" expeditions but the next big thing is likely to be government departments, suggests the Asia Pacific vice president of anti-spam company Brightmail.

Garry Sexton says the number of "phishing" emails, those sent to account holders pretending to be from their banks asking for user names and passwords, has increased dramatically in the past year.

"We saw around 250 million worldwide in August last year - that's risen to well over 2 billion in February."

Brightmail anti-spam filters are applied to around 15% of the world's email inboxes, giving it a high level of visibility into the types of email that are being sent and received and Sexton says he believes phishing must be working somewhere along the line.

"To see an increase like that it's got to be effective somewhere."

Sexton says the latest version he's seen, targeting ANZ bank users, is highly sophisticated and does send users to the actual ANZ website.

"They're using a password stealer. You do actually go to the ANZ bank site but you go via a site that downloads the code to catch your keystrokes."

Sexton says while most bank customers are becoming familiar with such antics, the next big target will be users' tax numbers.

"I expect we'll see government departments being used asking for social security numbers or IRD numbers, things like that."

UK-based online security consultancy mi2g says phishing expeditions have increased by over 300% in the past year. It too is warning that non-banking secure sites are also being targeted.

"Government agencies like the FBI, major corporations, e-commerce/information portals and their associated payment systems have also been targeted by the sophisticated identity theft scams," the company says. These include Amazon, AOL, AT&T, eBay, Microsoft, Monster.com, Paypal, UPS and Yahoo.

The number of phishing expeditions reported in 2004 has already exceeded the total for all of 2003, it says.

More about: ANZ, AOL, AT&T, Brightmail, eBay, FBI, Microsoft, Monster.com, PayPal, Yahoo

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
Users posting comments agree to the Computerworld comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
Related Whitepapers
Latest Stories
Community Comments
Whitepapers
All whitepapers
Sign up now to get free exclusive access to reports, research and invitation only events.
Featured Download
/downloads/product/21/clamwin-free-antivirus/

ClamWin Free Antivirus

ClamWin Free Antivirus is an open source GPL virus scanner for Microsoft Windows 7 / Vista / XP / Me / 2000 / 98 and ...

Computerworld newsletter

Join the most dedicated community for IT managers, leaders and professionals in Australia