in which unsuspecting users receive official-looking e-mails that attempt to fool them into disclosing online passwords, user names and other personal information. Victims are usually persuaded to click on a link that directs them to a doctored version of an organization's Web site.
Get Up to Speed on...
Get the latest headlines and
company-specific news in our
expanded GUTS section.
The Anti-Phishing Working Group (APWG), which was formed in November 2003 to provide a forum for financial institutions to share information about new phishing campaigns, recently warned its members about an attack that can modify the victim's browser by replacing the address bar with a Java applet. This allows the attacker to take the victim to any Web site but display the address of an official Web site in the browser's window, increasing the chances of fooling people.
Munir Kotadia of ZDNet UK reported from London.