How can a phishing attack possibly work with e-mail filtration?

cytherian

New member
Power User
Local time
10:15 AM
Messages
218
With all of the awareness today of malware, free anti-virus programs, and aggressive email filtering, it would seem that only the careless or ignorant would manage to get their computers infected.

But phishing still seems to be the most popular way to get an infection. Someone gets an e-mail from their banking institution, with a link to click on and a request to attend to some matter there, but the link goes to a malicious website that mimics the trusted institution website. The elderly must be the most vulnerable to this, as they won't be as sharp to scrutinize such communication. Then there's also the matter of a favorite website becoming infected, to attempt deception while you're visiting it, but I imagine that this is quite rare.

But isn't e-mail filtration strong enough now that the e-mail MUST come from the bank's trusted domain? Anything that doesn't match goes to the spam folder. Or, have hackers come up with a way to make an insertion into the e-mail stream such that their e-mail header will contain the proper routing information from the bank's domain? I just don't get how phishing should still be so effective at creating infections.

Incidentally, there's a UC Berkeley research paper on the subject that is rather interesting: Why Phishing Works
 

My Computer My Computer

At a glance

Windows 7 Home Premium x64AMD Vision A8-3500M 4 Core8GbAMD Radeon HD 6620G
Computer type
Laptop
Computer Manufacturer/Model Number
HP Pavillion dv6 (dv6-6165dx)
OS
Windows 7 Home Premium x64
CPU
AMD Vision A8-3500M 4 Core
Motherboard
AMD
Memory
8Gb
Graphics Card(s)
AMD Radeon HD 6620G
Screen Resolution
1366x768
Hard Drives
Hitachi Travelstar 500Gb
Internet Speed
Realtek RTL8188CE 802.11b/g/n
You can't fix stupid.

I think the only way to slow it down is to educate everyone, not just the elderly. Tell them that if they get an email from a bank, delete it and go to the bank in person to ask about the email. The same goes with other email, just delete them.
You would need filters setup to delete these types of emails.
 

My Computer My Computer

At a glance

Windows 7 Professional 64bitIntel i7-5960X64GB Corsair Dominator 2400MHz3 EVGA GTX980's
Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom build
OS
Windows 7 Professional 64bit
CPU
Intel i7-5960X
Motherboard
EVGA X99 Classified
Memory
64GB Corsair Dominator 2400MHz
Graphics Card(s)
3 EVGA GTX980's
Sound Card
on board
Monitor(s) Displays
3 Dell E2715H 27"
Screen Resolution
1920x1080 (5760x1080)
Hard Drives
Samsung 950 Pro 1TB M.2 SSD,
Western Digital Black 2TB HDD's x5
Western Digital Black 1TB HDD's x3
PSU
Corsair AX1200i
Case
Corsair 750D
Cooling
Corsair H110i GT
Keyboard
Corsair K70
Mouse
Corsair M45
Internet Speed
250 down/10 up
Antivirus
Microsoft Security Essentials
Browser
IE 11, Google Chrome
Likewise if you get some communication from an outfit where you have an online account that looks like it could be legit, don't go through a link in the email. Just browse to your account online and log in. If something is really going on there should be a notice you can read there.
 

My Computer My Computer

At a glance

Windows 7 32 bitAMD 5200+ dual core2 GBNVidia GeForce 6150SE 128 MB
Computer Manufacturer/Model Number
HP Media Center
OS
Windows 7 32 bit
CPU
AMD 5200+ dual core
Memory
2 GB
Graphics Card(s)
NVidia GeForce 6150SE 128 MB
Monitor(s) Displays
CRT
Screen Resolution
1280x1024
Hard Drives
500 GB Sata internal :

SIIG USB 3.0 docking stations w/WD Caviar Black 6 Gb/s drives
Keyboard
PS/2
Mouse
PS/2 Wheel Mouse
Other Info
SIIG USB 3.0 PCIexpress card.
Most people don't care at all about security, that's it. They just want to click a link and make something work, and don't look into the details that reveal a phishing attack.
That's why many banking sites send the mail "We don't ask personal info by email, don't click any link", but really many people don't care at that.

Common sense should be the very first line of defense, and is THE most effective one. So antiviruses came to try to comply that function.
 

My Computer My Computer

At a glance

Windows 7 Ultimate x64Intel Core i7-740QM8 GB DDR3NVIDIA GeForce 330GT
Computer type
Laptop
Computer Manufacturer/Model Number
Toshiba Sattelite A665-S6092
OS
Windows 7 Ultimate x64
CPU
Intel Core i7-740QM
Memory
8 GB DDR3
Graphics Card(s)
NVIDIA GeForce 330GT
Screen Resolution
1366x768
Hard Drives
Samsung 840 SSD 500GB
1TB USB3 external HD
Cooling
Coolermaster Notepal U3 notebook cooling pad
Internet Speed
3mbps ASDL
Antivirus
ClamWin 0.98.7
Browser
Opera 12.17 x86 (main), Firefox 38 (sec), IE11 (last resort)
Back
Top