Newsletter:

Skip Navigation LinksHome > News > Security > Kiwibank target of phishing scam

Kiwibank target of phishing scam

29 May 2007 11:52AM
Tags: kiwibank | target | phishing | scam

Experts reveal Kiwibank phishing campain directs to spoofed website in the US.

An email purporting to be from New Zealand’s Kiwibank - urging customers to update their personal information - is a malicious phishing campaign, warns security vendor Sophos.

Using the Kiwibank logo, the email tricks customers into clicking on the provided link in order to update their personal information and ensure their eligibility for the bank’s policy if guaranteeing their money.

The email said: “…We are so confident with our online banking security system that we guarantee your money…Please proceed to your Kiwibank online banking personal internet banking now for more update on your account maintenance.”

According to Paul Ducklin, head of technology, APAC at Sophos the Website appears to be a legitimate website. The site is now blocklisted and off the air and the genuine owner of the site is left to sort out the mess.

"SophosLabs currently estimates that 70 per cent of malicious web pages abused by phishers and malware spreaders are not directly associated with cybercriminals, but rather are legitimate sites which have been broken into
and 'borrowed' for criminal activity,” said Ducklin.

Kiwibank has published a warning on its legitimate site urging customers which have clicked on the link to immediately change their passwords and contact the bank.

"Computer security begins at home," said Ducklin, recommending consumers and small businesses to take advantage of the many security guidelines that are available online.

   


Ads by Google


Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 


Tripwire - Click here to win an iTouch





Product Reviews

Star Rating
The AdventNet Manage-Engine Password Manager Pro provides a complete system for password management in one...
Star Rating
The Cyber-Ark Enterprise Password Vault, or EPV, is a high-end password management powerhouse.
Star Rating
The Hitachi ID-Archive sets its focus on password randomisation.
Star Rating
The Lieberman Software Enterprise Random Pass­word Manager is a full-on password manager and randomiser for...
Star Rating
Proginet SecurForce is a little bit of a horse of a different color for this month's Group Test.
Unified Communications Podcast Centre

TopTopics
(4891) -  broadband
(4788) -  telstra
(4751) -  nbn
(4334) -  internet
(4004) -  iinet
(3977) -  copyright
(3977) -  afact
(3675) -  servers
(3675) -  mipi
(2852) -  internode
(2448) -  network
(2201) -  microsoft
(1566) -  data
(1520) -  software
(1370) -  centre