Tuesday 4 December 2007

Egg - Security Upgrade

Egg Phishing EmailHere's a very good attempt at a phishing email. There's only one link within the entire email and that points to a very realistic looking URL. When I checked the Whois for the URL it has only been registered this morning, so no clues as to where it is registered, but a copy of the email has gone to Egg for them to deal with.

Pointers that it is fake:
1 - I don't have an Egg card - sorry, but this is a big pointer!
2 - It's not personalised.
3 - I'm not aware of banks ever sending this sort of email.
4 - The URL being brand new - Egg would use their own website.

Don't click the link - you never know what damage you might do to your machine.

Here's the content of the email:

Egg Banking Plc has been receiving complaints from our customers for unauthorised use of the Egg Online accounts. As a result we periodically review Egg Online Accounts and temporarily restrict access of those accounts which we think are vunerable to the unauthorised use.

This message has been sent to you from Egg Online Banking because we have noticed invalid login attempts into your account, due to this we are temporarily limiting and restricting your account access until we confirm your identity.

To confirm your identity and remove your account limitation please following the link below.

No comments: