How to identify Phishing Email and Phishing Website? Lessupport 15 Nov 2016

How to identify Phishing Email and Phishing Website?

Phishing Email Phishing Website

Email Phishing attacks rose in the Christmas 2015 season, and have continued to climb in entire 2016. But  if we can identify Phishing Email and Phishing Websites, our half problem could have been solved.

According to APWG Phishing Activity Trends Report states email phishing attacks statistics as:

  • The Anti-Phishing Working Group (APWG) observed more phishing attacks in Q1 2016 since it began tracking data in 2004.
  • Q1 Phishing Activity Trends Report APWG reported that the number of phishing websites increased 250% between October 2015 and March 2016.
  • Most targeted industry were retail and services sector during Q1 2016
  •  Phishers targeted 406 – 431 brands  in Q1 2016.
  • US continued its position at top on the list of nations hosting phishing websites.
  • In Q1 2016, there were 20 million new malware samples.
  • The world’s most-infected countries are led by China,Taiwan and Turkey.

Get Full report on Phishing attack of 2016 Here

Now lets start with how to identify phishing email?

  1. Unauthorized “From” email address : Always look into from address very carefully. For example if you receive an email from logx.in which is slightly different from logix.in there is a chance that you may do mistake.
  2. Immediate action email: Many times hackers will send email with immediate call to action like “your account will be invalid within 1 hour” or “offer will expire in 1 hour”
  3. Linking to fake web site: Most common phishing emails are linking to  banking website and they will create banking website exactly like your banking site. Purpose is to trick you so that you disclose your user name and password. For example https://https://www.icicibank.com is fake address. Real Web address will have forward slash (“/”)  https://www.icicibank.com/
  4. Spelling errors, poor grammar, or inferior graphics are very common mistakes done by hackers.
  5. Revealing personal information: Authorized organizations will never ask for personal information like password, bank account details or credit card number on email. If you receive such emails you should be extra cautious.
  6. Attachments : Never open any attachment without reading and checking all details carefully.

Ins and outs of Email Security

How to identify phishing website?

  1. Check Web address carefully :  To identify phishing websites checking it thoroughly is most crucial part. What should you look into :
  • Incorrect company name.
  • Common spelling mistakes
  • Proper https:// ending with  /
  • Poor website design
  • Irritating popups

2. Don’t reveal your real password: If you have any confusion as it seems to be phishing site always put fake password. if you are still able to sign in then it will be 100% phishing website.

Free Assessment - Security Audit

 

 

 

 

 

 

Related Posts

  • Strengthen Email Security with DMARC: Protect Your Domain from Fraud Post Thumbnail

    Why DMARC Is Essential for Protecting Your Domain from Email Fraud Email continues to be one of the...

  • zatpatmail-dedicated-transactional-email-delivery Post Thumbnail

    The Mission-Critical Inbox: Why Dedicated Transactional Email is a Business Imperative In the digital-first economy, the distance between...

  • Forex Card Fraud Incident Post Thumbnail

    Recent reports of unauthorized international transactions on forex cards issued by Yes Bank in partnership with BookMyForex highlight...

Scroll
Copy link