New Phishing Technique Circumvents eBay Sign-in

So after teaching several classes to people discussing proper way to identify if the site you are logging into is actually eBay’s, it looks like phishers have gained the edge again. Apparently they have found a weakness in the way eBay redirects you to a new (what should be eBay) page. The phishers have discovered that through a crafty URL you can actually change where you are redirected to after successfully logging in to the real eBay site.

You can read more over at Netcraft. Hopefully eBay will plug this hole soon if they have not already.

Explore posts in the same categories: Computer Technology

Comments are closed.