Skip to content


November 27, 2007

Brands scarred by phishing scams

Consumers look for scapegoats when phished, says survey

By John E. Dunn


A survey has found that phishing scams don’t just hurt consumers – the brands hijacked by criminals to launch attacks can also emerge with scars.

Advert

This is the main finding of a YouGov poll of 1,960 UK-based consumers conducted on behalf of security outfit Cloudmark, in which a surprisingly high percentage – 42% – claimed that their trust in a brand would be damaged by a phishing attack, even though the scam had nothing to do with it.

Banks, ISPs and social networking sites appeared to be brands most likely to feel the force of this negative response. Cloudmark’s own research has recently shown the Natwest Bank to be the UK brand most likely to be appropriated for phishing scams during October 2007.

As to remedies, 40% felt that it was the job of their own and the originating (ie. the spammer’s) ISP to protect them from the scourge, with only 26% seeing it primarily as the individual consumer’s job to protect themselves. Clearly, some consumers expect the Internet to be regulated as might physical mail or telephone services, and look for someone to blame for the lack of that authority when things go awry.

“What is interesting to note from these results is that well-known brands are also suffering, with phishing attacks having a detrimental effect on their reputation. This knock-on effect will be particularly worrying for the banks, which rely on a high degree of trust with their customers,” said Cloudmark’s Neil Cook. One problem is that phishing was happening in a number of forms that yet to familiarise themselves with, such as voice-based fraud.

“Not only are we seeing evidence of more .uk phishing URLs, but also a shift in phishing techniques. Vishing is a good example of this where the scammers use cheap VoIP call centre systems as the back end to their phishing attacks, which changes the whole dynamic of trust,” said Cook.

None of this will come as surprise to businesses, though it is hard to see what individual companies can do protect themselves from what is now part of the broader phenomenon of “brandjacking.”

Follow highlights from ComputerworldUK on Twitter
Sign up for our Daily Newsletter
The UK IT News widget Get it for your site!

« prev article | more security news | next article »

Advert

close

Email this article to a friend or colleague:




PLEASE NOTE: Your name is used only to let the recipient know who sent the story, and in case of transmission error. Both your name and the recipient's name and address will not be used for any other purpose.

close
  • This article is now being printed.
close

What are your views on this subject? Use the form below to post a comment on this article up to 1000 characters.


Characters remaining:

close

Click below to add 'Brands scarred by phishing scams - Cybercrime & Hacking - ComputerworldUK' to your blog.



If you do not have a ComputerworldUK Account and would like to use this feature, please Register.

If you are a registered, logged-in user, this will post the title and first paragraph of this story to your blog to share with your readers.

What is this?

Advert

WHITE PAPERS

  • Legal risks: Employee use of the internet and email
    Exploring the challenges facing IT Mangers today and vital steps to ensure safe internet an email use by employees.
  • Phishing for victims
    This White Paper examines the phenomenon of phishing. It explains the potentially catastrophic threat it presents to all kinds of organisation. Exploding some widespread myths, it lights up the murky waters where phishing first emerged and where it continues to evolve. But it also highlights what your business can do to blunt the threat.
  • Challenges and opportunities of PCI
    The control framework implicit in the Payment Card Industry Data Security Standard (PCI DSS) provides an enterprise structure for improving operational, security, and audit performance.
  • Social CRM comes of age
    Who is this “social customer”? What strategies and tools does the new breed of CRM provide to do something about this?
  • Risk Management: Protect and Maximize Stakeholder Value
    What has held organisations back from a broader adoption of risk management programs?
*