A Tour of the Google Blacklist
The full listing (1:1) contained primarily outdated URLs as 86% of the pages or sites were no longer available. While I would like to think that the existence of Google’s blacklist had contributed to the demise of these sites, phishing sites tend to emerge and disappear quickly, so I suspect that this is just a natural part of the phishing cycle. I had expected to see a combination of social engineering attacks, known vulnerabilities and 0day attacks used on the sites with the majority falling into the first category. I was therefore somewhat surprised to find virtually all sites using straight social engineering attacks. I was also surprised to see that the top three targets – eBay, PayPal and Bank of America accounted for 63% of the active phishing sites. One amusing finding was that Yahoo! commonly hosts pages that phish…wait for it…Yahoo! credentials. A breakdown of the full findings can be found below.
No comments yet.
Leave a comment
-
Recent
- Free Advertising
- Vulnerability Turns MS Excel Into Open Door for Hackers
- Teenager hacks Polish tram system
- Anatomy of a hack attack
- Sears puts customers’ buying histories on the Web
- WordPress Hacked: Anyone Can View Future/Draft Posts
- Introducing Weave
- HP confirms gaping backdoor on 82 laptop models
- Are The Days of Duplicate Content Numbered
- Top US military research labs infiltrated by hackers
- Hackers Ram Through Security at Oak Ridge Lab
- New Software Detects Web Interference
-
Links
-
Archives
- January 2008 (5)
- December 2007 (6)
- November 2007 (3)
- June 2007 (1)
- February 2007 (1)
- January 2007 (2)
- December 2006 (9)
- September 2006 (1)
- August 2006 (2)
-
Categories
-
RSS
Entries RSS
Comments RSS