funsec mailing list archives

Re: The solution to Phishing


From: Craig Webster <craig () xeriom net>
Date: Mon, 24 Oct 2005 20:55:38 +0100

On 24 Oct 2005, at 20:46, Blanchard_Michael () emc com wrote:

The banks should send out bogus messages just like a real phishing attack
and set up a bogus web site that looks just like their real one.  If a
customer logs into that site from the phishing e-mail, their internet
banking privledges are revoked for 30 days. If it happens again, their
internet privledges are revoked completely.

Done and dusted... Kinda like darwinism with a second chance on life ;-)

Won't the victim be lulled into a false sense of security?
"Oh, if I enter my account details on the wrong site it's just a 30 day ban..."
*bam* no pennies left.

Yours,
Craig
--
Craig Webster | t: +44 (0)131 516 8595 | e: craig () xeriom net
Xeriom.NET    | f: +44 (0)709 287 1902 | w: http://xeriom.net


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: