Welcome, Guest. Please login or register.
November 15, 2009, 09:19:14 AM

Login with username, password and session length

334822 Posts
37026 Topics
83945 Members

Latest Member: mikael m

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  General Category
| |-+  Melih's Corner - CEO Talk/Discussions/Blog
| | |-+  Phishing: A Lazy man's fraud!
« previous next »
Pages: [1] Go Down Print
Author Topic: Phishing: A Lazy man's fraud!  (Read 6551 times)
Melih
Comodo's Hero
Administrator
Comodo's Hero
*****
Offline Offline

Posts: 8216



WWW
« on: June 10, 2006, 05:41:58 PM »

Phishing: A Lazy man's fraud!
 
Phishing is a type of fraud that is ideally suited to a lazy fraudster! After all, what work do they have to do? They don't have to build a website, just simply copy one of the bank's site, and they don't have to even send the email themselves, just go to your nearest spammer who will be more than happy to do that for you! And writing the email!!?? Worry not Mr Lazy Fraudster, you will also get that from your nearest bank. All you have to do is add your domain voila, now you can collect people's bank account details. And we are sorry, Mr. Fraudster that we can't automate the withdrawals from each account - you have to do that manually! But then again maybe a 14 year old script kiddie could automate that for you too! Just ask your nearest nerd. 
 
The point is Phishing is not even intelligent, nor require such hard work! It hardly is your "Italian Job"! Where is your strategist, disciplined and clever fraudster who is after your money!
 
Well, they are on their way!
 
When I invented this tool called Verification Engine to verify web content, people said what for? I said: Wait and see! I called it a tool to eliminate "spoofing a website" – today’s term for  "phishing". Was I a “scare monger” then? Time has proving that I wasn't! Am I scare mongering now when I claim that these phishers are just the "first wave of attackers" or the  foot soldiers . Unhappily, this first wave will be followed by the "armoured cavalry" as the next wave and they will keep coming! Just wait and see! Today, we mainly have the opportunist fraudster, but we are seeing the organised crime with more resources moving into the Internet feeding ground. Now it’s commercially viable for organised crime to exploit Internet.

We have this castle called Internet and someone has left the castle gates open so all these opportunists fraudster are waltzing in! We have built the internet with no authentication “doors”, no verification whatsoever!

Is that wrong? No of course not. In any technological development you first get it to work, then you get it to work, faster, more secure, more efficient etc. It’s the way the technology gets built! Just look at cars, in 1950s security was not the biggest selling feature - was it! It is now! People were getting killed at 30 Miles an hour crashes, because they did not have seat belts and cars were not built with security in mind! Compare that to today's cars with Side Impact Bars, Air bags everywhere, with Anti Lock Brake systems and so on...

What’s important is to understand when we need security, authentication and assurance! Did we need assurance technologies on the internet on early 90s, maybe we did maybe we did not. But do we need it now because now we have built "Value" into Internet which needs protection. We do our banking there, we purchase things there and we share confidential information with other people on the Internet. And anything of value it must be protected!

Where would we be without Side impact bars, air bags, Anti lock brake systems? Roads would be more dangerous for all of us. Internet must be secured, authenticated and I as a user must have assurances that I can confidently use Internet......... Funny.. As I am writing this article, I just received an email from "Paypal" asking me to login to my account and I don't have a paypal account and the URL is not a Paypal URL, but nevertheless I went to that side and entered my "Username and password" for the lazy fraudster who now has to enter one more password to paypal account only to realize that its the wrong one Smiley. ...................

Anyway, here is the point - let’s understand the underlying problem and fix that! The reason why Phishing and Pharming exist is because we cannot verify what we see! It has little to do with the way we receive emails. Unless we give the users the ability to "verify what they see" we will continue to suffer from this vulnerability called phishing. Instead of trying to fight the enemy once they through the open castle doors, let’s close the doors!

Melih
« Last Edit: November 25, 2007, 11:28:08 AM by Melih » Logged

panic
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 7454


... and I say to myself, "What a wonderful world"


« Reply #1 on: June 10, 2006, 06:08:56 PM »

Phishing: A Lazy man's fraud!
 
As I am writing this article, I just received an email from "Paypal" asking me to login to my account and I don't have a paypal account and the URL is not a Paypal URL, but nevertheless I went to that side and entered my "Username and password" for the lazy fraudster who now has to enter one more password to paypal account only to realize that its the wrong one Smiley. ...................


Are you saying you've stolen my " F U [at]paypal.com" ID??? LOL

e
Logged

As your mums would say, "If you can't play nice with all the other kiddies, go home".
All users are asked to please read and abide by the  Comodo Forum Policy.
If you don't like it, don't use the forum.
Melih
Comodo's Hero
Administrator
Comodo's Hero
*****
Offline Offline

Posts: 8216



WWW
« Reply #2 on: June 11, 2006, 01:13:59 AM »

Are you saying you've stolen my " F U [at]paypal.com" ID??? LOL

e


LOL :-) and your bank of America account (even though you are in the Aussie land :-)

Melih
Logged

1nf3s73d
Newbie
*
Offline Offline

Posts: 11


« Reply #3 on: July 18, 2006, 12:52:21 PM »

I don't know if this would catagorize as phishing but my favorite (and feared) are the full paged duplicate bank pop ups almost exactly the same as the banks or credit card companies... may be just one letter off and voila a form of phishing and if you don't look close enough at the url you just gave some schmuck your money/account and ID / info.
I mean how many so far were affected
citi bank
amex
red cross
and how many others....
Logged

you're 'bout as ate up as a soup sandwich in the middle of the ocean dur'n a tsunami...
Wiz619
Newbie
*
Offline Offline

Posts: 3


« Reply #4 on: July 20, 2006, 08:22:12 PM »

Aloha, Melih

  Panic nudged me to read your posts. He likes your humor. Now, So do I .
  Allow a brief introduction. I'm an old timer.
Built a Xerox CP/M machine from chips in '81 (could not afford to buy one.)
Started a company called A. Blinkin'  in S.F. Got named in the top ten homebrewers in the U.S.
(For quality rather than quantity, only actually sold a few hundred).
   Realized my real love was troubleshooting. Went freelance in '91. Prospered, grinned a lot
Then got real lucky and worked as an independent contractor for Intel for 3 years.
   Most fun I've ever had.
   Went into harness with Intel in '97 as a Server Support Specialist. Least fun I'd had in a long time.
   Good product, good people, trapped in corporate hell. Would put Dilbert on the phone to Kevorkian.
   I tell you all this, why?
   So, you will know that it is not "faint praise" , when  I write a testamonial for your Firewall of the first water, and for Comodo as an entity
  Companies have a personality and a heart, (sometimes ;-})
  The approachability of this company warms my heart. And, that's a very good thing when you consider that my favorite recent quote has been;
" No matter how cynical you get, you just can't keep up!" -Lily Tomlin.
  So, for the first time in more than 5 years, I wrote a little testamonial to your Firewall and stuck it in your He'p us forum.

    Phew! now to the topic.
  The first 3 or 4 paypal phish phorays came to an address that the real
PayPal is unaware of. So, I promptly forwarded to Spoof[at], etc.
When they kept coming, I got irritated, and used NeoTrace to track down the site.
     They were using a host in Italy.
    Now, I'm no hacker, but getting to their directory on the server was trivial. That's about as far as I went. Suppose I could have just quietly scrambled the captured passwords, given an Italian/English lookup and a little time.
   It's not the ethics that detered, more the legality.
  "Just 'cause a bugger deserves to be shot, don't mean it's legal to shoot 'em." -Will Rogers
   What I did, was capture all the info and send it to the security guys at PayPal.
   That was last month. Just checked the bogus site, it's still up. I hope they are at least keeping an eye on it.   Shocked

Mahalo nui loa for your fine work. If there's anything I can do for you folks, don't be shy.
You have a friend on the Island.

John Scott
Onna rock inna ocean
Logged
Melih
Comodo's Hero
Administrator
Comodo's Hero
*****
Offline Offline

Posts: 8216



WWW
« Reply #5 on: July 20, 2006, 09:38:33 PM »

Aloha, Melih

  Panic nudged me to read your posts. He likes your humor. Now, So do I .
  Allow a brief introduction. I'm an old timer.
Built a Xerox CP/M machine from chips in '81 (could not afford to buy one.)
Started a company called A. Blinkin'  in S.F. Got named in the top ten homebrewers in the U.S.
(For quality rather than quantity, only actually sold a few hundred).
   Realized my real love was troubleshooting. Went freelance in '91. Prospered, grinned a lot
Then got real lucky and worked as an independent contractor for Intel for 3 years.
   Most fun I've ever had.
   Went into harness with Intel in '97 as a Server Support Specialist. Least fun I'd had in a long time.
   Good product, good people, trapped in corporate hell. Would put Dilbert on the phone to Kevorkian.
   I tell you all this, why?
   So, you will know that it is not "faint praise" , when  I write a testamonial for your Firewall of the first water, and for Comodo as an entity
  Companies have a personality and a heart, (sometimes ;-})
  The approachability of this company warms my heart. And, that's a very good thing when you consider that my favorite recent quote has been;
" No matter how cynical you get, you just can't keep up!" -Lily Tomlin.
  So, for the first time in more than 5 years, I wrote a little testamonial to your Firewall and stuck it in your He'p us forum.

    Phew! now to the topic.
  The first 3 or 4 paypal phish phorays came to an address that the real
PayPal is unaware of. So, I promptly forwarded to Spoof[at], etc.
When they kept coming, I got irritated, and used NeoTrace to track down the site.
     They were using a host in Italy.
    Now, I'm no hacker, but getting to their directory on the server was trivial. That's about as far as I went. Suppose I could have just quietly scrambled the captured passwords, given an Italian/English lookup and a little time.
   It's not the ethics that detered, more the legality.
  "Just 'cause a bugger deserves to be shot, don't mean it's legal to shoot 'em." -Will Rogers
   What I did, was capture all the info and send it to the security guys at PayPal.
   That was last month. Just checked the bogus site, it's still up. I hope they are at least keeping an eye on it.   Shocked

Mahalo nui loa for your fine work. If there's anything I can do for you folks, don't be shy.
You have a friend on the Island.

John Scott
Onna rock inna ocean


Interesting info John.

Paypal might not have a "take down" service to take these people down. Thats why we have VE www.vengine.com which allows the users to see what is real what is not.

thanks for your support!
spread the word! tell everyone! write to magazines, inform the univerisities/schools, about what Comodo is trying to do.

thank you

Melih
Logged

Alwin
Newbie
*
Offline Offline

Posts: 3


« Reply #6 on: June 22, 2009, 01:28:19 AM »

Hi,

I am new to this forum. I have heared about www.LivePCSupport.com and I have also gone through that website...
When I googled for a techsupport website I have found a similiar website like LivePCSupport. Here is the one www.vsupportu.com.. Is that a phishing website of LPS or it belongs to you...?





Phishing: A Lazy man's fraud!
 
Phishing is a type of fraud that is ideally suited to a lazy fraudster! After all, what work do they have to do? They don't have to build a website, just simply copy one of the bank's site, and they don't have to even send the email themselves, just go to your nearest spammer who will be more than happy to do that for you! And writing the email!!?? Worry not Mr Lazy Fraudster, you will also get that from your nearest bank. All you have to do is add your domain voila, now you can collect people's bank account details. And we are sorry, Mr. Fraudster that we can't automate the withdrawals from each account - you have to do that manually! But then again maybe a 14 year old script kiddie could automate that for you too! Just ask your nearest nerd. 
 
The point is Phishing is not even intelligent, nor require such hard work! It hardly is your "Italian Job"! Where is your strategist, disciplined and clever fraudster who is after your money!
 
Well, they are on their way!
 
When I invented this tool called Verification Engine to verify web content, people said what for? I said: Wait and see! I called it a tool to eliminate "spoofing a website" – today’s term for  "phishing". Was I a “scare monger” then? Time has proving that I wasn't! Am I scare mongering now when I claim that these phishers are just the "first wave of attackers" or the  foot soldiers . Unhappily, this first wave will be followed by the "armoured cavalry" as the next wave and they will keep coming! Just wait and see! Today, we mainly have the opportunist fraudster, but we are seeing the organised crime with more resources moving into the Internet feeding ground. Now it’s commercially viable for organised crime to exploit Internet.

We have this castle called Internet and someone has left the castle gates open so all these opportunists fraudster are waltzing in! We have built the internet with no authentication “doors”, no verification whatsoever!

Is that wrong? No of course not. In any technological development you first get it to work, then you get it to work, faster, more secure, more efficient etc. It’s the way the technology gets built! Just look at cars, in 1950s security was not the biggest selling feature - was it! It is now! People were getting killed at 30 Miles an hour crashes, because they did not have seat belts and cars were not built with security in mind! Compare that to today's cars with Side Impact Bars, Air bags everywhere, with Anti Lock Brake systems and so on...

What’s important is to understand when we need security, authentication and assurance! Did we need assurance technologies on the internet on early 90s, maybe we did maybe we did not. But do we need it now because now we have built "Value" into Internet which needs protection. We do our banking there, we purchase things there and we share confidential information with other people on the Internet. And anything of value it must be protected!

Where would we be without Side impact bars, air bags, Anti lock brake systems? Roads would be more dangerous for all of us. Internet must be secured, authenticated and I as a user must have assurances that I can confidently use Internet......... Funny.. As I am writing this article, I just received an email from "Paypal" asking me to login to my account and I don't have a paypal account and the URL is not a Paypal URL, but nevertheless I went to that side and entered my "Username and password" for the lazy fraudster who now has to enter one more password to paypal account only to realize that its the wrong one Smiley. ...................

Anyway, here is the point - let’s understand the underlying problem and fix that! The reason why Phishing and Pharming exist is because we cannot verify what we see! It has little to do with the way we receive emails. Unless we give the users the ability to "verify what they see" we will continue to suffer from this vulnerability called phishing. Instead of trying to fight the enemy once they through the open castle doors, let’s close the doors!

Melih
Logged
eXPerience
Malware Researcher Virus Removal Helper Advanced Tweak Freak Crazy Little Devil
Global Moderator
Comodo's Hero
*****
Online Online

Posts: 6411


Why not ? The choice is yours !


« Reply #7 on: June 22, 2009, 02:46:28 AM »

Hi,

I'm not sure, they copied most of the text from Comodo, but as far as I know, it's not Comodo's. So I guess you're safer logging in here : http://www.livepcsupport.com/

I'll pm Melih in the meantime Smiley

Xan
Logged

panic
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 7454


... and I say to myself, "What a wonderful world"


« Reply #8 on: June 22, 2009, 04:05:17 AM »

Doesn't look good Angry

Have a look at the whois record for the IP of vsupportu.com

http://whois.domaintools.com/65.55.194.74

Smell phishy or what?
Logged

As your mums would say, "If you can't play nice with all the other kiddies, go home".
All users are asked to please read and abide by the  Comodo Forum Policy.
If you don't like it, don't use the forum.
Eric Cryptid
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 1686


Security Saskquatch


« Reply #9 on: June 22, 2009, 06:44:37 AM »

Not W.O.T. (Web Of Trust) rating.

Incidentally, you can check ratings for any website by going to www.mywot.com

Definately fishy though.

Logged


Moderator: forum policy.
System: 32 bit Windows Vista SP3
Realtime Protection:Comodo Internet Security 3.10 Internet Security
On Demand: MBAM & SAS
Other: CSE,CSC,CTC,CEVPN,CVE.
Alwin
Newbie
*
Offline Offline

Posts: 3


« Reply #10 on: June 22, 2009, 06:50:14 AM »

Hi all,

Thanks for replying to my post. If that website a phishing website then is there any way to block that website?
Logged
LaserWraith
Usability Study Member
Comodo's Hero
*****
Offline Offline

Posts: 3093


I report myself to the mods.


WWW
« Reply #11 on: June 22, 2009, 07:48:51 AM »

I just had to post a comment on WOT.  Grin
Logged

Visit my site!

Some of my articles - click for blog page.


Alwin
Newbie
*
Offline Offline

Posts: 3


« Reply #12 on: June 22, 2009, 12:25:41 PM »

Hi,

Thank you. Any updates on this phishing website www.vsupportu.com ?



Hi,

I'm not sure, they copied most of the text from Comodo, but as far as I know, it's not Comodo's. So I guess you're safer logging in here : http://www.livepcsupport.com/

I'll pm Melih in the meantime Smiley

Xan
Logged
Ovidiu Bucsa
Newbie
*
Offline Offline

Posts: 11



« Reply #13 on: June 23, 2009, 04:31:57 AM »


Hello,

   The services on the site that Alwin mentioned are not provided by Comodo's Live PC Support Team or by any Comodo employees.
Logged
Tags:
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 28.58 seconds with 19 queries.
Powered by SMF 1.1.10 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com