14

Click here to load reader

Phishing - A modern web attack

Embed Size (px)

DESCRIPTION

Ready made presentation on PHISHING and its effects and the different methods to eradicate it.

Citation preview

Page 1: Phishing -  A modern web attack

A.SATYA KARTHIK K.DHEERAJ VARMA

VNR-VJIET

PHISHING

Page 2: Phishing -  A modern web attack

1. INTRODUCTION

2. HISTORY

3. PHISHING TECHNIQUES

4. DAMAGE CAUSED BY PHISHING

5. ANTI PHISHING

6. CASESTUDIES

7. REFERENCES

CONTENTS…

Page 3: Phishing -  A modern web attack

Phishing—common method of online identity theft and virus spreading

Carried by email spoofing or instant messaging

Social websites

Online payment processors

INTRODUCTION…

Page 4: Phishing -  A modern web attack
Page 5: Phishing -  A modern web attack

Described in a paper presentation delivered to International HP Users Group

Used in Hacking tool AOHELL

Believed that it is created by mid 1990’s spammer Khan C Smith

Chinese phishing campaign targeting US officials

HISTORY AND CURRENT STATUS…

Page 6: Phishing -  A modern web attack

Spear Phishing

Clone Phishing

Link Manipulation

Filter evasion

Phone Phishing

Other Techniques

PHISHING TECHNIQUES…

Page 7: Phishing -  A modern web attack

The damage caused by phishing ranges from denial of access to e-mail to substantial financial loss.

Approximately 1.2 million computer users in the United States suffered losses caused by phishing.

United Kingdom losses from phishing fraud

DAMAGE CAUSED BY PHISHING…

Page 8: Phishing -  A modern web attack

The process of preventing phishing is called anti phishing

There are several techniques of anti phishing

Social Response

Legal Response

Technical Response

ANTI-PHISHING…

Page 9: Phishing -  A modern web attack

In this technique emphasis is on training people to recognize the phishing attempts.

In June 2004 a military academy in new jersey was tested for awareness about phishing.

Anti-Phishing-Working-Group

SOCIAL RESPONSE…

Page 10: Phishing -  A modern web attack

This technique emphasizes on:

Secure connection

Which site

Who is the authority

TECHNICAL RESPONSE…

Page 11: Phishing -  A modern web attack

USA Anti Phishing Act -2005

UK Fraud Act -2006

Partnership between Microsoft and Australian Government

Companies efforts to crack down phishing

LEGAL RESPONSE…

Page 12: Phishing -  A modern web attack

Phishers are targeting the customers of banks and online payment services.

AOL Scam

In late 2006 a computer worm took over pages on MySpace and altered links

The Rapid Sharefile sharing site has been targeted by phishing to obtain a premium account.

CASE STUDIES…

Page 13: Phishing -  A modern web attack

Ollmann, Gunter.

The Phishing Guide: Understanding and Preventing Phishing Attacks

http://en.wikipedia.org/wiki/Phishing#History_and_current_status_of_phishing

REFERNCES…

Page 14: Phishing -  A modern web attack

THANK YOU…