'Psst...want the tools to be a cybercriminal?'

Internet offers DIY phishing kits...

NEWS Some websites are now offering surfers the chance to download free "phishing kits" containing all the graphics, web code and text required to construct the kind of bogus sites used in internet phishing scams.

According to security firm Sophos, the kits allow users to design sites that have the same look and feel as legitimate online banking sites that can then be used to defraud unsuspecting users by getting them to reveal the details of their financial accounts.

Graham Cluley, senior technology consultant at Sophos, said: "By putting the necessary tools in the hands of amateurs, it's likely that the number of attacks will continue to rise."

Sophos warned that many of the kits also contain spamming software that enables potential fraudsters to send out thousands of phishing emails with direct links to their DIY fraud sites.

"The emergence of these 'build your own phish' kits means that anyone can now mimic bona fide banking websites and convince customers to disclose sensitive information such as passwords," Cluley said.

Many online banking websites now carry messages urging users not to open any email that they suspect may be fraudulent and to telephone their bank for further information if they do receive suspicious email.

James Sherwood writes for ZDNet UK

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your silicon.com account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy.

Questions about membership? Find the answers in the Membership FAQ

Get silicon.com's daily newsletter

  • Register on silicon.com

    Enter your email to register

Keep in touch with silicon.com

silicon.com newsletters