Skip to main content

Phishing Attacks Reach All-Time High

The Anti-Phishing Working Group, a pan-industry association aimed at eliminating identity theft and fraud through phishing, pharming, and email spoofing, is reporting November 2005 marked a new high in email fraud attacks (PDF), with the organization identifying nearly 17,000 unique phishing attempts and over 4,600 unique phishing sites active during the month. The number of unique phishing attacks was nearly double those identified during November 2004 and marks an all-time high.

Phishing attacks are attempts to steal sensitive or personally identifying information like credit card numbers, passwords, account numbers, and more, usually through a combination of social engineering and technical trickery. A typical phishing scheme will employ a “spoofed” email which appears to be from a bank, reputable company, or other institution requesting users verify or update their account information. Of course, the message is fake, and either transmits any collected information to a site controlled by the scammers, or (in a so-called pharming attack) directs users to a Web site which looks like the real institution, but is operated by the scammers solely to collect sensitive information. Once collected, these details are used to obtain unauthorized access to accounts or services, or sold to criminals for that purpose. Scammers also use Trojan horse programs and spyware to obtain sensitive information directly by scanning a user’s files and/or monitoring their keyboard activity.

Recommended Videos

The Anti-Phishing Working Group found that the number of brand names exploited in phishing attacks increased from 64 to 93 during the last year, and now more regularly includes names like Google, Apple, PayPal, and eBay in addition to large financial institutions and credit card companies.

Contrary to some popular belief, the AFWG found during November 2005 that nearly one third of active phishing sites were hosted within the United States with South Korea and China accounting for 11.3 and 8.04 percent respectively. Phishing sites remained online for an average of five and a half days, although some remained online and running for the entire month.

The APWG also found 165 unique password-stealing applications were active during November 2005, and more than 1,000 sites knowingly (or unwittingly) hosted password-stealing trojan horses. Phishing methods are also becoming more sophisticated, including programs which rewrite a computers DNS server information to route specific requests through rogue DNS servers operated by the scammers.

Geoff Duncan
Former Digital Trends Contributor
Geoff Duncan writes, programs, edits, plays music, and delights in making software misbehave. He's probably the only member…
HP just announced a 4K smart gaming monitor that does it all
The HP Omen 32X on a table with the sidebar open.

CES 2025 is already brimming with innovative gaming monitors, and HP’s Omen 32x Smart Gaming Monitor stands out as a highlight.

With its first-ever integration of Google TV, this 31.5-inch gaming display aims to be more than just a screen — it’s a comprehensive hub for gaming, entertainment, and productivity, not unlike the freshly announced Samsung M9 Smart Monitor.

Read more
Sticky Password vs. Enpass: best one-time purchase password managers
Sticky Password and Enpass pricing appears in a split-screen on a PC monitor.

Sticky Password and Enpass are two leading password managers that offer one-time purchase options. Passkeys have the potential to eliminate the need for passwords, but there are plenty of online accounts that lack passkey support.
The bottom line is you still need a great password manager to streamline account access, protect your logins from hackers, and simplify sharing accounts with family and friends.
Tiers and pricing
Sticky Password has a low-cost annual subscription, a lifetime plan, and a free version. Sticky Password

The price isn’t the only detail that matters when choosing a password manager but a single payment option is hard to beat. Sticky Password’s lifetime plan sells for as low as $40, which is less than an annual subscription to Dashlane. Of course, Dashlane includes a premium VPN to help offset the expense.

Read more
Apple’s redesigned Magic Mouse could fix all its problems — and add voice control
Magic Mouse next to a Mac keyboard on a desk.

Bloomberg's Mark Gurman wrote in one of his newsletters this month that Apple is working on a new version of the Magic Mouse, and now a Korean leaker has suggested that it will include "voice control."

While Gurman hasn't heard the same information from any of his sources, he did chime in on X to say he thinks it makes sense "in light of AI" and the fact that Apple likely intends this iteration of the Magic Mouse to have a long life, just like its predecessor.

Read more