What Modern Phishing Works and How Can Kill You

The Internet has opened a new business platform. But not everyone that manages a website, blog or e-commerce is a technological expert. Specially not in cybersecurity. Usually, security is something that companies incorporate once they grow. Although, just a few companies have security among their priorities.

Any business with an online presence can be a victim of deception. Any business, and its users. There are so many hacks every day, so many technological advances. The techniques of hacking and social engineering grow at a rate of vertigo.

Phising, one of the main techniques of hacking, is based on user’s ignorance and fear. In fact, it is still the deception of a lifetime in the online world.

How Phising affects your E-commerce, Website or Blog

Phising is when someone copies your site and redirects your users to it. As complex and simply as that. For the purpose, for example, of collecting data, credit cards or the like. Not nice.

In many cases, phishing websites are a very basic copy of the sign up page for banks, Facebook or Google.  But be careful, hackers can copy also your Prestashop or WordPress. Hackers include the images, CSS and JavaScript to reproduce as accurately as possible the original login page. The difference is that there are malicious PHP scripts that send the username and password directly to the attacker or hacker.

In more advanced hacking techniques, just a few extra lines of code can run disastrous attacks for your site. Once the user has login, the page serves the load icon, and redirects the user to your site. But the user is not yet logged in because their login data has been sent to the attacker, not to your site. Most victims think there has been a problem with their password or some other bug, so they try to log in again successfully.

The victim doesn’t suspect anything and doesn’t realize that the attacker can use his or her stolen credentials yet.

How secure your site?

First prevent malware and attacks with a maintenance and security control on your website. Then, in this case use the bar of your browser, showing the user whether or not he or she is in the right place:

  • Always ensure that you are using HTTPS (Secure HTTP)
  • Ensure that there are no problems with the SSL certificate registered in the lock icon

How Phising affects your Users

If your users report that they are stuck with a load icon that rotates for a long time and that directs them to another site, it is time for warnings. Your confidential data probably has already been sent to the attackers.

The good news is that if they have discovered the attack in time you can advise them to:

  • Change passwords
  • Check their bank account for unusual transactions
  • Lock their credit card

How Phising affects your Business

Imagine the previous case. Your users discover that they have been deceived through your site. Most will not trust your brand again. And comments on social networks can be very difficult to forget.

As a result loss of users, readers, customers and income.

Hacking techniques, and phising specifically, are specializing over the years. If you manage an online business, website, blog or e-commerce, you must control not to be infected. And so avoid using your source of income to steal data and end your business.

Phising injections are not easy to detect. It can easily  to confuse the infection code with the code of your website. That is why it is fundamental that you have a proactive and continuous maintenance of security in your website, WeSecur can help on that.

What Modern Phishing Works and How Can Kill You was last modified: May 21st, 2017 by WeSecur

Leave a Comment

Your email address will not be published.