Thursday, 10 June 2010

Tab napping- an awfully clever way of getting hold of your account information


Watch out!

Tab-nappers are on the run; You might have heard of phishing - when an E-mail is sent to you claiming to come from your bank or such and urging you to write your acount information on the website which they've linked to in the mail.

- Now phishing is out and tab napping is in. Tab napping works a little diffrent though with the same goal. Instead of sending you a URL (a link) it lures you into writing your information on a diffrent webpage than you intended to - without your assistans.

It all works thus: Picture yourself surfing the web; looking at that cellular telephone you've imagined yourself buying ever since you saw it the first time. You open another tab to check wether you now have enough money on your acount to buy the phone. But just as your going to log in, your ICQ pings. You absolutely have to tell your friend Dave about the good news. So you do, and during that time when your chatting on ICQ; a piece of malicious code replaces the bank's website with a website looking just the same but which saves your acount information and sends it to the criminals who have set it up.

-To protect yourself you can;

1. Check the URL (web-adress) before writing any log in information (The URL won't be the same even though the page looks just the same)

2. Check so that the adress starts with the secure https://

No comments:

Post a Comment