Tuesday, October 16, 2007

Can you find the bad phishy?

Cause I sure couldn't! I saw this little quiz in the WSJ today. Phishing always concerns me, and as you can tell, its not so easy to detect. How did you do?

Phishing is a technique that hackers use to steal information. Here are five Web addresses. Can you tell which are real and which are run by a hacker?
1) http://ebay.verification.com
2) http://www4.da-us.chase.com/cgi-bin
3) http://secure.citibanking.net
4) http://pages.ebay.com/services/forum/feedback.html
5) http://www.secure-account.com/regionsbank



Quiz answers: 1) Fake, 2) Legitimate, 3) Fake, 4) Legitimate, 5) Fake
The part of the address that matters comes just before .com or .net, so in the first example, the site is really verification.com, and has nothing to do with eBay. Many legitimate sites have letters other than www before the company name. Anything that comes after a / just represents a page on a site.

1 comments:

Micah said...

i actually did pretty well on that, but i'm probably more read on phishing than the average person. also, any site with secure in it's name better actually be a secure web page (https) or else it's not secure, even if it is legit.