1/11/2007

Beware the Universal Man-in-the-Middle Phishing Kit

Filed under: — menk @ 2:34 pm

The “Universal Man-in-the-Middle Phishing Kit” may sound humourous but it is far from it. This toolkit recently found online by RSA Security fraud detection personnel allows fraud perpetrators to set up an attack that can net your passwords and personal info.

Using this framework toolkit criminals can fairly easily set up a site online that essentially screenscrapes a legitimate site like your bank. When you click on a bogus link you might find in an e-mail you go to the site that in fact looks and acts just like the actual banking site. Your data is captured when you authenticate and interact with the site.

The perps are getting more sophisticated so as they used to say on ‘Hill Street Blues’ - “Be careful out there!”

27B Stroke 6 Universal Man-in-the-Middle Phishing Kit

Powered by WordPress