110 likes | 196 Views
Explore the rise of phishing attacks in Romania from 2007 to 2009, current BitDefender defense strategies, and predictions for global phishing trends in the near future. Learn the motives behind phishing and proactive measures to stay safe online.
E N D
Agenda • Agenda (this one!) – check! • WW Phishing in the next (6, maybe 12) months • Phishing in Romania (2007-2009) • Why 2 & 3 ? • The current BitDefender approach • Other important aspects • This paper will have no conclusions slide so please pay attention! (yes, I’m talking to the guys in the back… where the power plugs are :p )
WW Phishing in the next (6 - 12) months • APWG on 2nd ½ of 2008 • Unique phishing reports submitted to APWG recorded a yearly high of 34,758 in October • Unique phishing websites detected by APWG during the second half of 2008 saw a constant increase from July and in October reached a maximum of 27,739 IT WILL RISE!!, or in Malcom Gladwell’s words: “This is going to tip” – (we trust him because he looks Einsteinian!
Phishing in Romania (2007-2009) • 2007 – 7 attacks • 2008 – 26 attacks (50% targeting the same institution) • 2009 – 187 attacks already (98% targeting the same institution) • 2009 – 1’st ½ … anyone want to make a prediction? Don’t be fooled by randomness!
Now… why would anyone start phishing? • With the current market turmoil, what's the easiest way to make a small fortune? • Start off with a large one! • Quote of the day (from a trader): "This is worse than a divorce. I've lost half my net worth and I still have a wife • This market stinks so bad…that even Chuck Norris can’t make any money.
Really… is must be more than this!!! • Open the yellow pages and pick someone • Search his name using a social media search-engine • If any SN profile found • Download images, posts, comments, friend • Create a phishing attack customized for this exact person. • Continue with his friends 4. Complicated? Too much work? Dial 1-800 BOTNET for an army of computers to do this for you PS: (success comes when the victim has profiles on more than one social network)
Current BitDefender Approach • Technologies: • RBL • Website Forgery Detector • Signature Filter • Minutiae Analysis • Image Filter • AntiPharming Module • We protect: Spain, Germany, France, Italy, Romania and US (banks, SN accounts and webmail)…. For now….
The Matrix We want to believe that this is proactive!
Ignorance is bliss • Showing the actual domain on which the page is hosted • Showing the real page that is being forged • Displaying information about the registrar, the geographic location where the page is hosted and so on. • Requiring user confirmation before continuing loading the page • Certificates challenge. • We suggest all that AND, if possible, actually redirecting the user to the desired institution
Are you going to ask me something or I will have to phish for questions???