Top Three Tips to Avoid Being Phished前三名的提示,以避免被phished
March 9th, 2007 · by David Bradley 2007年3月9日,大衛布拉德利
What is phishing?什麼是網絡釣魚? Put simply, it’s attempted fraud.簡言之,它的企圖欺詐行為。 It’sa method of conning someone, usually via an email, an instant message, or a website.它的方法conning有人,通常是通過電子郵件,即時訊息,或一個網站。 It uses它使用 social engineering techniques社會工程技術 to grab your passwords,抓住您的密碼, credit card信用卡 , and other personal details with a view either to stealing your identity or to extract money from your bank account. ,和其他個人資料,以期或者竊取您的身份或提取的錢從您的銀行帳戶。
The most common phishing is done via an email that looks like a genuine message from your bank, ebay, paypal, amazon, or some other worthy institution.最常見的一種網絡釣魚是透過電子郵件看起來像一個真正的訊息,從您的銀行,易趣,貝寶,亞馬遜,或一些其他有價值的機構。 Most often, the email will tell you that there has been some kind of suspicious activity on your account in the most alarming terms and tell you to immediately login and verify your details before any serious damage is done or you lose real money.最常見的電子郵件都會告訴你,有一些種可疑的活動對您的帳戶中最令人震驚的條款告訴你,立即登錄並確認您的詳細資料之前,任何嚴重的損害是做或你失去真正的金錢。 Generally, the link in such an email will look genuine, but contain within it a hidden link to the phishers site.一般來說,連接在這樣一個電子郵件將看看真正的,但它內部包含一個隱藏的鏈接到釣魚式攻擊網站。 That site will be setup to look exactly like Paypal, your bank, or whatever and have the usual login box.該網站將設置看酷似貝寶,您的銀行,或任何有一貫的登錄框。 But, when you enter your details nothing appears to happen, you cannot login.但是,當您輸入您的詳細資料未顯示任何情況,您無法登入。 Most victims try again and again, thinking they are on the real bank site until at last frustrated they give their bank a call only to find that someone else has logged into their real account and cleared it of all funds and ordered a credit card to an address in Bulgaria.大多數受害者嘗試,一次又一次,以為他們是在真正的銀行網站,直到最後沮喪,他們給他們的銀行的電話才發現別人已登錄到他們的真實帳戶,並清除了它的全部資金,並下令信用卡1地址在保加利亞。 You have been phished.您已被phished 。
So, how do you avoid it.所以,你怎麼避免它。 Here are my top three tips to avoid being a victim of a phishing attack.這裡是我最3提示,以避免成為受害者的詐騙攻擊。
- Never click a link in an email or instant message.千萬不要點擊電子郵件中的鏈接或即時消息。 If you really need to visit your bank’s website, type in the proper web address directly in your secure browser and if you are using a browser with tabs (like Firefox) make sure there are no other tabs open.如果你真的需要訪問您銀行的網站,鍵入在正確的網址直接在您的安全的瀏覽器,如果您使用的瀏覽器與標籤(如火狐)確保沒有其他標籤,打開。
- If you really must click links in your email, make sure you are using an email program that has antiphishing technology built in, for example Thunderbird, Pegasus Mail, or Google Mail.如果你真的必須點擊鏈接在您的電子郵件,請確保您使用的電子郵件程序有反釣魚技術建成的,例如雷鳥,飛馬郵件,或Google的郵件。
- Use false details on your first login attempt.使用虛假的細節,關於你的第一個登錄嘗試。 When you visit a site, use a false password on your first attempt, if you get an error message, then it means the site didn’t find your password in its genuine database and will alert you to the fact.當您訪問一個網站,使用虛假的密碼,您第一次嘗試,如果你得到一個錯誤信息,那麼意味著該網站沒有找到您的密碼在其真正的數據庫,並會提醒你這個事實。 If your false login takes you to a landing page or nothing seems to happen, then be very suspicious of the site and do not try to login with your real password.如果您的虛假登錄,您可以登陸網頁或無關,似乎發生,然後是非常可疑的網站和不要嘗試登錄與您的真實密碼。
So, there you have it, a simple three step plan to avoid phishing attacks.所以,你有它,一個簡單的三步計劃,以避免釣魚式攻擊。 Of course, you should also have a decent firewall running to prevent trojans and dialout scripts running, antivirus and antispyware software in place, and be running a secure email and web browser too, just to make sure you are really safe.當然,你也應該有一個像樣的防火牆運行,以防止木馬和dialout腳本運行,防病毒和反間諜軟件的地方,和運行一個安全的電子郵件和網頁瀏覽器太,公正,以確保你是真正安全的。






















4 responses so far ↓四反應到目前為止↓
David Bradley 大衛布拉德利 // / / Mar 9, 2007 at 2:11 pm 2007年3月9日在下午2時11分
Just a quick note inspired by a Technology Review item只是一個快速注意啟發,一個技術審查項目 http://www.technologyreview.com/Infotech/18231/ http://www.technologyreview.com/infotech/18231/
If you have a router you MUST change the default password to prevent it being hijacked or hacked.如果您有一個路由器,你必須改變預設密碼,以防止它被劫持或砍死。 Usually very simple and easy to do and could save you a lot of trouble.通常很簡單,很容易做到,並可以為您節省大量的麻煩。
Paula Mooney 保門尼 // / / Mar 10, 2007 at 9:51 am 2007年3月10日在上午09時51分
Smart idea about using false details.智能的概念使用虛假的細節。
I didn’t think of that before…我沒想到的前…
David Bradley 大衛布拉德利 // / / Mar 12, 2007 at 8:29 pm 2007年3月12日在下午8時29分
Yes, I can’t take credit for thinking of it first, but I don’t know who did come up with it originally.是的,我可以不採取信貸思想的第一次,但我不知道是誰做出來與它原本。
db分貝
David Bradley 大衛布拉德利 // / / Oct 9, 2007 at 2:32 pm 2007年10月9日在下午2時32分
It occurred to me that someone who is an individual Amazon re-seller just starting out could be very easily phished by a fraudster sending them a mock “Your item just sold” email.它發生,我認為有人誰是個人的亞馬遜重新賣方剛開始可能很容易phished由一個行騙者派他們模擬“您的項目剛剛售出”的電子郵件。 Of course, they’d have to give their address to receive the goods, but I’m sure such people could work around that issue.當然,他們希望有給他們的地址以接收貨物,但我敢肯定,這些人可能工作圍繞這一問題。 Be warned.被警告。
Leave a Comment留下意見