Download presentation
Presentation is loading. Please wait.
Published byErica Miles Modified over 9 years ago
1
Phishing A practical case study
2
What is phishing? Phishing involves fraudulently acquiring sensitive information (e.g. passwords, credit card details etc) by masquerading as a trusted entity.
3
The sites www.noodlebank.com (i.e NOODLEBANK.com) www.noodlebank.com www.nood1ebank.com (i.e NOOD1EBANK.com) www.nood1ebank.com
4
The real site
9
The spoofed email
10
The spoofing The link appears as www.noodlebank.comwww.noodlebank.com (i.e NOODLEBANK.com) But actually it links to www.nood1ebank.comwww.nood1ebank.com (i.e NOOD1EBANK.com)
11
The fake site
18
The “steal” When Debasis entered his username- password at the spoofed website, the username-password was sent across to the criminal carrying out the phishing attack. In this case study the username-password is sent across to a spamavert email address so that it can be seen by everyone trying out this case study.
20
More examples… In this case study, the user was enticed with a misleading URL. Such urls can be created easily using simple html code such as: http://www.noodlebank.com This link displays the correct url but on clicking takes the user to the spoofed url.
21
Using a url with an ip address http://www.NOODLEBANK.com@67.19.217.53 This url does not lead to noodlebank.com, it leads to the website on the IP address 67.19.217.53
22
Using a split domain name http://www.NOODLEBANK.com.securitycheck.se cure-login.nood1ebank.com/login.asp This url does not lead to noodlebank.com, it leads to the spoofed website.
23
Using an obfuscated url http://www.NOODLEBANK.com%00@%36%37% 2e%31%39%2e%32%31%37%2e%35%33 This url does not lead to noodlebank.com, it leads to the website on the IP address 67.19.217.53
24
Hex to ASCII converter http://www.dolcevie.com/js/converter.html
25
Useful urls To try out the genuine website: http://www.noodlebank.com To try out the spoofed website: http://www.nood1ebank.com To see the usernames-passwords being “stolen” http://spamavert.com/mail.php?alias=noodlebank_com
26
Questions?
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.