iTnews
  • Home
  • News
  • Technology
  • Security

Browsers fail to curb phishing

By Shaun Nichols on Jun 20, 2007 2:56PM
Browsers fail to curb phishing

Criminals skirting security measures, says anti-phishing head.

Anti-phishing features inside popular browsers are failing to curb the onslaught of emails that attempt to steal confidential information.

Both the Internet Explorer 7 and Firefox 2.0 browsers incorporate blacklists that warn users when they attempt to visit known phishing websites.

Although the vendors behind those browser claim to be succesful in stopping the phishing attacks, this hasn't lead to a decrease in the amount of phishing emails, David Jevans, chairman of the Anti-Phishing Working Group (APWG) chief executive for security firm IronKey said at a meeting with reporters in San Francisco.

Insted criminals have wised-up to blacklists by registering a new domain for each phishing run. The result, claims Jevans, is an explosion in the number of unique phishing domains recorded. Up from 11,976 a year ago to 37,438 last month, according to APWG records.

"Definitely the trend is not going in the right direction," Jevans said.

Registring a new domain for each phishing attack offers the criminal several hours to steal information between the times when they send out their email messages and when their site is added to the blacklist.

In order to combat the practice in the short term, Jevans advises that browser venders add heuristics systems that analyze the behaviour of a website and flag suspicious pages to the user.

Those heuristics systems can also mistakenly label many legitimate sites as phishing operations, however.

The long term solution, suggests Jevans, is for a new system to be established that would allow for both web sites and e-mails to be authenticated.

Such a system, however, would require the cooperation of every major ISP, software vendor, and hosting service, a monumentally expensive undertaking that Jevans admits is not likely to happen any time soon.

"This stuff is going to be with us for a while, unfortunately," he conceded.
Got a news tip for our journalists? Share it with us anonymously here.
Copyright ©v3.co.uk
Tags:
browserscurbfailphishingsecurityto

Partner Content

Why Genworth Australia embraced low-code software development
Promoted Content Why Genworth Australia embraced low-code software development
Avoiding CAPEX by making on-premise IT more cloud-like
Promoted Content Avoiding CAPEX by making on-premise IT more cloud-like
Accenture and Google Cloud team up to create a loveable, Australian-first, renewable energy product
Promoted Content Accenture and Google Cloud team up to create a loveable, Australian-first, renewable energy product
The Great Resignation has intensified insider security threats
Promoted Content The Great Resignation has intensified insider security threats

Sponsored Whitepapers

Extracting the value of data using Unified Observability
Extracting the value of data using Unified Observability
Planning before the breach: You can’t protect what you can’t see
Planning before the breach: You can’t protect what you can’t see
Beyond FTP: Securing and Managing File Transfers
Beyond FTP: Securing and Managing File Transfers
NextGen Security Operations: A Roadmap for the Future
NextGen Security Operations: A Roadmap for the Future
Video: Watch Juniper talk about its Aston Martin partnership
Video: Watch Juniper talk about its Aston Martin partnership

Events

  • Micro Focus Information Management & Governance (IM&G) Forum 2022
  • CRN Channel Meets: CyberSecurity Live Event
  • IoT Insights: Secure By Design for manufacturing
  • Cyber Security for Government Summit
By Shaun Nichols
Jun 20 2007
2:56PM
0 Comments

Related Articles

  • 50k customers caught up in Spirit Super phishing attack
  • Don't miss Australia’s premiere IoT Conference on 9th June
  • Google adds phishing protection to Workspace apps
  • 5 essential digital transformation ideas
Share on Twitter Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Qantas calls time on IBM, Fujitsu in tech modernisation

Qantas calls time on IBM, Fujitsu in tech modernisation

Service NSW hits digital services goal two years early

Service NSW hits digital services goal two years early

NBN Co taking orders for 'non-premises' connections

NBN Co taking orders for 'non-premises' connections

NSW Police scores $100m to connect body-cams to firearms, tasers

NSW Police scores $100m to connect body-cams to firearms, tasers

Digital Nation

IBM global chief data officer on the rise of the number crunchers
IBM global chief data officer on the rise of the number crunchers
COVER STORY: Operationalising net zero through the power of IoT
COVER STORY: Operationalising net zero through the power of IoT
Crypto experts optimistic about future of Bitcoin: Block
Crypto experts optimistic about future of Bitcoin: Block
Integrity, ethics and board decisions in the digital age
Integrity, ethics and board decisions in the digital age
The security threat of quantum computing
The security threat of quantum computing
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.