PayPal Phishing Example. Can you tell which is real? 1. 2.

Slides:



Advertisements
Similar presentations
Electronic Agent Sales Experience For agent use only. J (06/2005) © 2005 Assurant, Inc. All rights reserved.
Advertisements

Slides will automatically advance Back to Online demo Welcome to the Safety Insite. com.
DTT Welcome Kit: Account Setup Instructions
Setting up your Lyreco Account.
1SCBOE Technology Dept. - Nov
First go to Yahoo.com and begin to SIGNUP (for Yahoo). If you already have a Yahoo membership, then Sign In, if necessary. Instructions: Click or press.
Sign Up to Become a Member of the Student Union LearnZone College Links Student Union 1 2 Log In to Sign Up.
How to add this module to your account and get started setting it up today!
College 101 Today’s Objectives: All Seniors will… 1.Be able to log in to Naviance Family Connection 2.Know how to sign up for college rep visits at BHS.
Troop 469 Yahoogroup Tutorial Mr. Anderson Scoutmaster.
Bloglines.com How to use bloglines By: Jake Szymanski.
HOW TO ACCESS THE ONLINE TEXTBOOK
Signing up to Flashcard machine. Go to and click here:
What is a Blog? How to make a BLOG?  1 st Step make a Gmail Account.
 Word Processing  Spreadsheets  Presentations  Drawings  Forms.
Searching for training offers by competency name Log into My Learning Link, go to My Account 1.
WESS Application System PKI Login Registration Process.
Touchstone LMS Self-Activation Process UVM Campus Querétaro Coordinación de Idiomas.
EARN-NETWORK.ORG. Login Search Articles Join EaRN Donate.
Copyright © 2007 Verizon Foundation. All Rights Reserved. This document may be reproduced and distributed solely for uses that are both (a) educational.
Blogging In Nicenet For Our Class: EUPwT. Welcome to our ICA place: Nicenet Click here to join our blog for EUPwt.
Go to community.epicomm.org and sign in by clicking the button in the upper right corner. Logging into the Connected Community.
Phishing Dennis Schmidt, CISSP Director, Office of Information Systems HIPAA Security Officer UNC School of Medicine UNC School of Medicine.
Welcome to the Circus! A step by step process to making your own Google Site for the NEW Northern Potter Website!
Instructions to signing up to Goodreads.com and navigating around the webpage.
SANSUEB SOFTWARE PRESENTS SkyTextMsg – Online Texting for your Business.
Computer Information Technology. I need you to submit your project electronically to the Hancock website. Before you can submit your project you will.
Step One: Introduction. Welcome to Follow My Clients! Once you log in, on the home page is your dash board. Here you will find your quick access buttons.
Portaportal Portaportal is a web based bookmarking utility that lets you store links to your favorite websites online. Now your bookmarks are no longer.
GLAD Yahoo User Group. Joining the GLAD Yahoo Group Part 1:
January 30, 2016 Sub-Office Access to COM. Lesson Overview: Sub-Office Access to COM  In this lesson we will cover:  Edit Office Logo  TaxWise Updates.
Database Alerts and Persistent / Durable Links  Alerts are notifications regarding additions to the database  Persistent or Durable links are links that.
Quia How to Create Your Own Account. Go to this website.
HINDU STYLE PORTFOLIO TEMPLATE
Class Discussions Using Facebook Presentation By: Katie Rosko.
Creating an Account on Our School Website
RVLL.Net Training Guide Pg Logging in Pg Going to your team page Pg – Verifying your team roster is complete Pg. 11 – Sending Message.
1 COMPARISON OF OLD AND NEW APPLICATION (EXISTING USER SIGN UP) Commercial Taxes Department Government Of Jharkhand.
Let’s Start Using Moodle Practice = 75% Teach Others = 90%
1 TRANSPORTER SIGNUP FOR TRANSIT PASS Commercial Taxes Department Government Of Jharkhand.
Create an Account.
Getting the Most Out of SRJC
WESS Application System PKI Login Registration Process
Website URL STEPS FOR SELF REGISTRATION
How to access your work from home or another computer
Assess Survey Invitations
Wordpress.
Unable to set your Webroot account password While logging in to the account, if any message Can't log in? appear on your screen. Then, Click on the link.
Unable to set your Webroot account password While logging in to the account, if any message Can't log in? appear on your screen. Then, Click on the link.
How To Use As Another Account On Gmail
WESS Application System PKI Login Registration Process
Multifactor Authentication & First Time Login
Tech Drop In: Google Drive
Instructions for beginning the Duolingo English Test
Parent Site Parents Click Here To Apply
If I’d only known then what I know now about phishing…
SHFC Message Board.
You clicked on a link to a file that has not yet been created.
School to Home Connection
Create a Parent Portal Account
WESS Application System PKI Login Registration Process
How to Access Sirona Updates
WESS Application System PKI Login Registration Process
How to use Video s and the Lead/Prospects Report
Editing Instructions. Editing Instructions Exporting Instructions.
How to Create Your Own Account
WESS Application System PKI Login Registration Process
MyLion Registration Website | Mobile device
Claiming Your Business On
Instructions to logging on to Quia
Presentation transcript:

PayPal Phishing Example

Can you tell which is real? 1. 2.

Both appear to be from 1. 2.

Both have the same logo

Both want you to verify your account

Both want to thank you

Both tell you not to reply, and have a log in link

Both tell you how to update your preferences

...and both have an official ID

Did you guess which one is real? 1.2.

Lets take a closer look... 1.

...message

More of message

More of message

Now do you know which is real? 1. 2.

Lets look at the links. Right-click on the message. Select View Source The source code will open in Notepad. Edit -> Find Search for http Message 1 SourceMessage 1 Source Message 2 SourceMessage 2 Source

Link Examples The URL may or may not have quotes around it. It may have other code between <a and http. It may be https instead of just http. It may be a link to an image instead of a page.

If you are using web based ... You may see something like href=/exchweb/bin/redir.asp? before the actual URL. Just ignore that part and look for whats after http. Source code for web-based will have added code.

Results for Message 1 paypal.com/ bin/webscrcmd_login.php (Obviously not the PayPal site.) NOTI (Actually DOES go to the PayPal site.)

Results for Message bin/webscr?cmd=_login-run NOTI

Message 1 is Fake. Click for close up.

Message 2 is Real. Click for close up.

Things to remember... Never click on a link in a suspicious . Instead, type the link into your browser manually.

Other observations... Now you know why spam filters may have a hard time figuring out if a message is spam or not. Many fake messages look just like real messages.

Thank you for listening!