For a long time I've rec'd phishing scam e-mails claiming to be from ebay - nothing new there. They say "click here" on a link and use lots of methods to hide the real URL desitnation. For some months I've noticed that the phishers are using real URLs at legit companies that redirect to the phishers' sites. I figured this hole would be closed quickly, but not so far. One hole is at ebayobjects.com, which actually is registered to Doubleclick. Example (mucked/cleaned up): h_ttp://us.ebayobjects.com/6k;h=h_ttp://**PHISHER_IP_ADDRESS**/eBayISAPI.dll-SignIn/index.php
Doubleclick must know about this but must be unwilling to fix it. Does anyone know the legit reason DClick allows/needs this redirect functionality to be available to its customers? In any event, I do wonder how they get away with this w/o having a major PR problem?
2007-05-31
10:49:36
·
2 answers
·
asked by
Igorok2
2