funsec mailing list archives

Re: Nordea Sweden shuts Internet banking due to targetedphishing


From: Valdis.Kletnieks () vt edu
Date: Wed, 05 Oct 2005 10:42:51 -0400

On Wed, 05 Oct 2005 14:59:08 BST, Drsolly said:

If the user doesn't notice, then what happens? The phishing site didn't 
ask for the code, and so he can't log in. If the phishing site does fake a 
log in for the user, then the phisher still doesn't have anything that 
lets him log into the real (bank) site.

Of course, this only matters if the phisher's goal is to login via the web
interface.  If the goal is something else, it matters about as much as a rotting
pumpkin in a field on November 2. ;)

The phisher can collect enough info so that they can then call the bank on the
phone and perpetrate a fraud, or use the info for some other identity-theft
based scam....


Attachment: _bin
Description:

_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.

Current thread: