Phishing the Phishers
DIY Phishing kits make it easier for even novice fraudsters to setup phishing sites. These point and click tools have a few variables that need to be configured and a phisher is all set to send spam emails hoping unsuspecting users will follow to their fake financial sites.
Some phishing sites also use malware installers like MPack, Zunker which run massive command and control networks. What’s interesting lately is that these phishing/botnet kits have been reported to contain backdoors that silently send all the victims information to the kit’s author. Well the economics of phishing makes it worth to do whatever it takes to get their most prized asset you PII - Personally Identifiable Information.
For some awesome foo on phishing the phishers checkout Nitesh and Billy’s talk at BlackHat Fedral ‘08. You’ll be surprised by what they have to say!!
No related posts.