EcommerceDEV. Développement, optimisation et sécurisation des sites de commerce électronique.
arrowAccueil arrow Sécurité arrow Protection arrow Exemples concrets d'attaques par voie de phishing
Jeudi 15 mai 2008
Nom d'utilisateur     Mot de passe      Conserver       Mot de passe perdu ? 
Menu
Accueil
A propos du site
Carte du site
Moteur de recherche
Nouvelles
Contactez-nous
Evénements
Lettres de nouvelles
- - - - - - -
Analyse
Conception
Optimisation
Programmation
Sécurité
Produits/Services
aoû 01 2006
Exemples concrets d'attaques par voie de phishing Version imprimable Suggérer par mail
Appréciation des utilisateurs: / 2
FaibleMeilleur 
Sécurité - Protection
Ecrit par Kamal AOUDA   
01-08-2006
New Page 1

Exemples concrets d'attaques par voie de phishing. Ci-dessous un échantillon représentatif d'attaques dont ont été victimes plusieurs grandes entreprises particulièrement dans le secteur financier (source: Antiphishing Working Group).

04-July-05 NCUA '*** WARNING: Security Issues ***'
28-Jun-05 Sky Financial 'Sky Informs You!'
22-Jun-05 LaSalle Bank 'IMPORTANT - Account Verification'
10-May-05 Paypal 'Unauthorized Account Access'
09-May-05 SouthTrust 'Important Secuity Issue !!!'
03-May-05 eBay 'UpdateYour Account'
29-Apr-05 Paypal 'Update Account.'
27-Apr-05 Marshall & Ilsley Bank 'Security Update!'
25-Apr-05 Citizens Bank 'Citizens Bank Instant 5 USD reward survey'
22-Apr-05 Ameritrade 'Ameritrade Online Application'
21-Apr-05 Regions Bank 'Notification about your Regions online account'
20-Apr-05 Barclays 'Barclays Verification Service'
19-Apr-05 Bank Of America 'Online Banking Alert (Change of Email Address)'
18-Apr-05 eBay 'eBay Verify Accounts'
14-Apr-05 Associated Bank 'Online Alert: online account is blocked'
11-Apr-05 Union Planters Bank 'Customer Alerting Service - Account is on hold'
07-Apr-05 Comcast 'Comcast account reactivation'
01-Apr-05 Paypal Paypal - 'Yout PayPal account will be suspended'
30-Mar-05 Huntington Bank 'Huntington Bank EmaiI Verification'
24-Mar-05 Charter One 'Client's Details Confirmation'
21-Mar-05 Pulse FFT 'Confirmation- PULSE debit card electronic fund transfer'
17-Mar-05 KeyBank 'KeyBank Customer Confirm Your Identity'
16-Mar-05 Bank Of Oklahoma 'Update your Online Banking Records'
09-Mar-05 AOL 'Credit Card Declined Notice'
07-Mar-05 eBay 'eBay: Account Violate User Agreement'
01-Mar-05 E-Bullion 'e-Bullion accounts investigations'
24-Feb-05 Washington Mutual Bank 'Unauthorized Access To Your Washington Mutual Account'
22-Feb-05 SouthTrust Bank 'Notification From Southtrust Online Banking'
18-Feb-05 Huntington Bank 'Huntington Bank Security Update Notification'
17-Feb-05 Paypal 'Unauthorized Access...'
15-Feb-05 MSN 'Microsoft Network customer data verification'
08-Feb-05 KeyBank 'SECURE YOUR ACCOUNT NOW'
02-Feb-05 Huntington Bank 'Huntington - Urgent Security Notification'
31-Jan-05 Amazon.com 'Account Verification Notice'
27-Jan-05 MSN 'Warning Message'
25-Jan-05 M&I Marshall & Ilsley Bank 'Banking Online customer Report'
21-Jan-05 Washington Mutual Bank 'Re-Submit: wamu.com Urgent requirementvu'
19-Jan-05 TCF Bank 'TCF express checking card alert'
14-Jan-05 Paypal 'New email address added to your account'
12-Jan-05 Citizens Bank 'Important Online Banking Alert'
11-Jan-05 eBay 'Account Verification'
10-Jan-05 AOL 'You've Got (2) '
07-Jan-05 KeyBank 'Keybank Internet Banking Account Suspension Notice!'
23-Dec-04 AOL 'Verify your account'
22-Dec-04 U.S. Bank 'Customer service'
21-Dec-04 VISA 'Notice from VISA'
04-Dec-04 eBay 'Update or verify your account informations'
03-Dec-04 America Online 'Notice : Your account will be suspended !'
02-Dec-04 Earthlink 'Earthlink payment is cancelled'
30-Nov-04 Suntrust 'Security Alert on Microsoft Internet Explorer'
29-Nov-04 Washington Mutual 'WARNING: CONFIRM YOUR ONLINE BANKING ACCOUNT'
24-Nov-04 Bank One 'Bank One security upgrade'
19-Nov-04 eBay 'Account Suspension Notice - Section 9'
17-Nov-04 Citibank 'Your online activity confirmation'
16-Nov-04 Suntrust 'Internet Banking with Bill Pay Fees Waived'
15-Nov-04 People's Bank 'New Mail from People'
10-Nov-04 Citibank 'Citibank Alert Service'
09-Nov-04 Paypal 'Your Account Will Be Suspended'
02-Nov-04 Sovereign Bank 'Sovereign Bank Unauthorized Account Access'
01-Nov-04 Citibank 'Security Alert on Microsoft Internet Explorer'
29-Oct-04 eBay 'TKO NOTICE: Verify Your Identity'
28-Oct-04 Verizon 'Update your Verizon billing profile'
27-Oct-04 Washington Mutual Bank 'Washington Mutual Bank : Notification of Washington Mutual Internet Banking Account'
26-Oct-04 Earthlink 'EarthLink Account Expired - Update Now'
25-Oct-04 MSN ' Your membership will be cancelled'
20-Oct-04 eBay 'Final Notification of Fraudulent Account'
13-Oct-04 Wells Fargo 'Wells Fargo Customer Support: Transactions security standards update (code ...)'
12-Oct-04 Earthlink 'Verify your billing information at Earthlink.'
11-Oct-04 eBay 'New and improved account protection!'
08-Oct-04 Suntrust 'Security Measures !'
06-Oct-04 Citibank 'RESERVE'
04-Oct-04 eBay 'TKO NOTICE: eBay Registration Suspension - FIELDS LEFT BLANK'
01-Oct-04 VISA 'Enroll your card with Verified By Visa program'
29-Sep-04 KeyBank 'Technical services: Account Update Request'
28-Sep-04 LLoyds TSB 'Official information from Lloyds TSB'
24-Sep-04 Yahoo 'E-mail account security warning'
24-Sep-04 Citibank 'Safeguard your account MsgID#'
21-Sep-04 Verizon 'Billing Error'
20-Sep-04 Citibank 'Cardholder Confirmation Needed'
17-Sep-04 Washington Mutual 'Suspicious payment.Read now.'
15-Sep-04 Visa 'Verified by VISA'
13-Sep-04 Paypal 'Fraud'
10-Sep-04 FDIC 'FDIC Account Alert!'
08-Sep-04 PayPal 'PayPal - Security Measures - Are You Traveling?'
02-Sep-04 Citibank 'Citibank.com Maintenance upgrade'
01-Sep-04 Paypal 'PayPal account Limited'
31-Aug-04 Citizens Bank 'Citizen Bank Fraud Verification Process'
27-Aug-04 Citibank 'various subjects, image-only email'
26-Aug-04 Citibank 'Attn Citibank Update'
25-Aug-04 US Bank 'Notice Us BANK'
24-Aug-04 eBay 'Verify Your Account'
23-Aug-04 US Bank 'various subjects, image- only email'
20-Aug-04 Suntrust 'suntrust.com Urgent Update'
19-Aug-04 Well Fargo 'Notice Wells Fargo Interne Online Accoun record update'
18-Aug-04 US Bank 'read us bank'
17-Aug-04 US Bank 'U.S. Bank Fraud Verification Process'
16-Aug-04 US Bank 'U.S.Bank Online Banking Issue'
13-Aug-04 Paypal 'Customer Service'
10-Aug-04 eBay 'Security Check'
06-Aug-04 AOL 'Urgent message from AOL member services'
05-Aug-04 eBay 'Billing Issues'
04-Aug-04 US Bank 'Confirm your account information'
03-Aug-04 US Bank 'Online banking issue'
27-Jul-04 eBay 'Update Your Billing Informations'
26-Jul-04 eBay 'Your account at ebay has been suspended'
23-Jul-04 US Bank 'Notification of US Bank Internet Banking'
21-Jul-04 Citibank 'Attn: Citibank Update!'
20-Jul-04 AOL 'Confirm AOL billing info'
19-Jul-04 MSN 'Account Verification'
16-Jul-04 eBay 'eBay Security Center Urgent eBay Account Update'
15-Jul-04 US Bank 'U.S. Bank Online Access Blocked User Compromised'
14-Jul-04 Amazon 'Verify_Identity_-_Notification'
13-Jul-04 Citibank 'your Citibank account!'
12-Jul-04 Fleet Bank 'Fleet New Security Standards for Consumers'
09-Jul-04 US Bank 'Important U.S. Bank eNews'
08-Jul-04 eBay 'TKO NOTICE - Verify Your Identity'
07-Jul-04 Barclays 'from Barclays IBank'
06-Jul-04 US Bank 'Maintenance upgrade'
05-Jul-04 Citibank 'Citisafe by Citibank'
02-Jul-04 Citibank 'Citibank Identity Theft Solutions'
30-Jun-04 Wells Fargo 'Your account at Wells Fargo has been suspended'
29-Jun-04 eBay 'eBay update information'
28-Jun-04 VISA 'Protect your debit card from fraudulent online transactions'
25-Jun-04 PayPal 'Verify and update your PayPal information'
24-Jun-04 eBay 'Please update your Ebay account information'
23-Jun-04 Citibank ' '
22-Jun-04 U.S. Bank 'U.S. Bank Consumer Alert'
21-Jun-04 U.S. Bank 'U.S. Bank® Fraud Verification Process'
18-Jun-04 Bank One 'Online banking issue'
17-Jun-04 eBay 'Ebay(R) Re-Activation Unit'
15-Jun-04 Fleet 'Online banking - protect yourself from internet fraud'
14-Jun-04 eBay 'TKO NOTICE - Pay your fees to eBay.com'
11-Jun-04 eBay 'eBay account verification needed'
10-Jun-04 Citibank, various other banks (LLoyds TSB, Barclays...) Image-only mail, hidden URL
09-Jun-04 Fleet 'Fleet cardmember security update'
04-Jun-04 e-gold 'Please Verify Your Account'
03-Jun-04 Microsoft 'current network critical patch'
01-Jun-04 PayPal 'Please become ID verified'
26-May-04 Yahoo 'Yahoo Shopping Auctions. Update your registration info'
25-May-04 2checkout.com 'Important'
20-May-04 MSN 'MSN HOTMAIL Account Verification'
14-May-04 Citibank 'Your request for Express Transfer'
13-May-04 US Bank 'Found error! Please resubmit UsBank.com urgenqf'
05-May-04 eBay 'Your eBay Account Must Be Confirmed'
03-May-04 Westpac 'Westpac bank users warning'
29-Apr-04 Citibank 'Citibank Security Update'
27-Apr-04 FDIC 'Credit Card Request from Federal Deposit Insurance Corp.'
26-Apr-04 FDIC 'Fraud report'
23-Apr-04 PayPal 'Notification of PayPal Unauthorized Account Access'
20-Apr-04 AOL 'Your AOL Account'
19-Apr-04 eBay 'Question for seller'
17-Apr-04 PayPal 'Problems with your account'
13-Apr-04 eBay 'to users of eBay'
08-Apr-04 Citibank 'Protect your Citibank account'
07-Apr-04 Usefulbill (fake company) 'Please update your shipping info'
05-Apr-04 US Bank 'Internet banking issue'
01-Apr-04
Paypal
'Please, update your Paypal account'
31-Mar-04
Citibank
'Verify your E-mail with Citibank'
28-Mar-04
Bank One
'Bank One - Customer Alert Message!'
28-Mar-04
NatWest
'Official notice for all NatWest customers'
26-Mar-04
eBay
'Email regarding pre-indefinitely suspended from eBay'
26-Mar-04
eBay
26-Mar-04
Westpac Bank
22-Mar-04
Citibank
'Citibank notification'
22-Mar-04
eBay
19-Mar-04
eBay
'eBay Safe Harbor security check submit only once'
19-Mar-04
Wells Fargo
'Wells Fargo customer alert'
15-Mar-04
eBay
'eBay Verify your identity'
15-Mar-04
eBay
'Fraud investigation'
15-Mar-04
uBid
'uBid fraud investigation '
14-Mar-04
Earthlink
'0fficial notice to Earthlink users'
10-Mar-04
eBay
'Security Notification'
10-Mar-04
AOL
09-Mar-04
eBay
09-Mar-04
Wells Fargo Bank
01-Mar-04
eBay
25-Feb-04
Regulations.gov
24-Feb-04
MBNA
11-Feb-04
www.ibillingservices.com
10-Feb-04
Fleet Bank
09-Feb-04
Bendigo Bank
07-Feb-04
e-gold
2-Feb-04
Fake company
30-Jan-04
Earthlink
23-Jan-04
FDIC
22-Jan-04
Visa
10-Jan-04
Citibank
8-Jan-04
AT&T
'Billing Update Requested (URGENT)'
29-Dec-03
FirstUSA
'security notification'
25-Dec-03
Bank One
'Bank One Customer Warning'
23-Dec-03
Visa
'Visa Security Update'
20-Dec-03
Earthlink
'Problems With Your Earthlink Account'
19-Dec-03
eBay
'Congratulations!'
18-Dec-03
Westpac
'Westpac Online Banking'
12-Dec-03
SwiftPay.com
'Read: Payment Acknowledgment amaze'
11-Dec-03
Lloyds TSB
'Security Server Update'
10-Dec-03
Citibank
'Citi-Card E-Mail Verification - '
9-Dec-03
eBay
'Your eBay information must be confirmed'
8-Dec-03
eBay
'Billing Issues'
8-Dec-03
NatWest
'NatWest Bank Security Update'
5-Dec-03
Visa
'Visa Security Update '
5-Dec-03
eBay
eBay Account Verification
29-Nov-03
Citibank
24-Nov-03
PayPal
21-Nov-03
SwiftPay.com
11-Nov-03
Amazon.com
5-Nov-03
Yahoo
29-Oct-03
Earthlink
29-Oct-03
eBay
21-Sep-03
Westpac Bank

 

Dernière mise à jour : ( 01-08-2006 )
< Précédent   Suivant >
Hack Proofing Your E-Commerce Site
Hack Proofing Your E-Commerce Site

Les mesures à prendre pour la sécurisation des sites de commerce électronique sont, à bien des égards, similaires à celles des autres catégories de sites. Il existe néanmoins des différences dues principalement aux risques liés à la collecte et au traitement des informations relatives au paiement des transactions (cartes de crédit, informations personnelles du client …).

Ce livre se distingue par des chapitres dédiés entièrement à la sécurisation des sites d’e-commerce. Ces chapitres qui représentent environ le tiers du livre, couvrent aussi bien les considérations techniques que des les considérations légales dont il faut tenir compte lors de la sécurisation des sites de commerce électronique.

Références

Ryan Russell, Brent Huston, Lien sur le site d'Amazon. , Syngress; 1ère édition (15 juin 2001), Langue: Anglais , ISBN: 192899427X

Moteur de recherche
Recommander ce site
Collaboration
Téléchargements
Derniers événements
Aucun événement
Sondages

Avez-vous déjà été victime d’une attaque par voie de phishing ?

  
Blogs Ecommerce
Blog de capitaine commerce
top

Ce site a été crée avec le CMS Mambo. Un logiciel gratuit disponible sous licence GPL.

Copyright Ecommerce DEV 2006.

Hosted by SiteGround