Business Services Industry
Anti-Phishing Working Group March 2005 Report; Phishing Still on Rise - Keyloggers and Crimeware Advancing
Business Wire, April 29, 2005
CAMBRIDGE, Mass. -- The Anti-Phishing Working Group (APWG) today reported that phishing attacks continue to grow, and that phishers are deploying new technologies that completely avoid tell-tale indicators of phishing attacks such as spoofing a bank identity. Phishers are using phishing sites to secretly download criminal malware, "crimeware", onto consumer PCs to capture login and password credentials and other personal information.
The numbers of email-based phishing attacks grew modestly at around 2% according to Tumbleweed Communication's reported estimates, though the servers supporting those attacks surged by nearly 7%. Phishers continue to focus on financial institutions with 12 new hijacked brands in March - nine of which were financial institutions, clear continuation of a months-long trend in which phishers have targeted more, and often smaller, financial institutions.
The APWG reported that over the last two months, Websense(R) Security Labs(TM) has seen a dramatic increase in the volume of crimeware attacks. From February through March, researchers discovered 8-10 new keylogging systems per week, and more than 100 crimeware-hosting websites per week - up from 1-2 keylogging variants and 10-15 crimeware-hosting websites per week recorded during November and December of 2004.
"Any Internet communications medium can be a delivery mechanism for crimeware," said APWG Secretary General Peter Cassidy. "The goal of the phisher is shifting from tricking consumers into submitting their credentials at counterfeit websites to finding any means to plant crimeware on PCs. Relatively few of us have been fooled in phishing attacks - but who among us can say we've never had to pull malware - now mutating into crimeware - from a PC?"
Report highlights as follows:
Number of active phishing sites reported in March: 2870
Average monthly growth rate in phishing sites July 2004 through March 2005: 28%
Number of brands hijacked by phishing campaigns in March: 78
Country hosting the most phishing websites in March: US
Contain some form of target name in URL: 31%
No hostname just IP address: 48%
Percentage of sites not using port 80: 3.89%
Average time online for site: 5.8 days
Longest time online for site: 31 days
- 5 Rules for Immediate Annuities
- Death in the Family: 12 Things to Do Now
- Dumbest Things You Do With Your Money
- 6 Online Networking Mistakes to Avoid
- 401(k) Mistakes to Avoid
- 5 Economic Scenarios to Keep You Up at Night
- The Real ‘Best Places to Retire’
- Best Credit Cards for You
- 12 Tough Questions to Ask Your Parents
- The Real ‘Best Colleges’
- Home Buyer Tax Credit: How to Cash In
- Why You Shouldn't Bash Cash
- 8 Phony 'Bargains' and Better Alternatives
- Danger: 3 Debit Card Scams to Avoid
- 6 Myths About Gas Mileage
- 29 Fees We Hate Most
- Quick and Easy Ways to Boost Returns
- Best Stocks to Buy Now
- Lower Your Taxes: 10 Moves to Make Now
- New Jobs: 8 Lessons from Real-Life Career Switchers
- The New Job Market: Who Wins and Who Loses?
- Health Care Reform's Public Option: Everything You Need to Know
- Volunteer Work When Unemployed: Should You Work for Free?
- Whose Recovery Is This?
- Long-Term-Care Insurance: 4 Biggest Risks to Avoid
Content provided in partnership with
Most Recent Business Articles
- Research and Markets: Asia - Mobile Communication Tables of Statistics
- Reinsurance Rates Decline at January 1, 2010 Reinsurance Renewal, According to Annual Guy Carpenter Briefing
- Samsung Unveils the Next Generation of Camera – the NX10
- Harman Consumer America Implements Powerful New Retail Distribution Strategy
- MyShape® Premieres New Line of CJ by Cookie Johnson Jeans
Most Recent Business Publications
Most Popular Business Articles
- 7 tips for effective listening: productive listening does not occur naturally. It requires hard work and practice - Back To Basics - effective listening is a crucial skill for internal auditors
- FAS 109: a primer for non-accountants - Financial Accounting Standards Board's "Statement 109: Accounting for Income Taxes"
- LIFO vs. FIFO: a return to the basics
- Using object-oriented analysis and design over traditional structured analysis and design
- Design a commission plan that drives sales - Sales Commissions



