It's not that difficult for phishers to replicate legitimate sites

Nov 26, 2011 12:00 GMT  ·  By
The only thing that differenciates this page from the legitimate one is the lack of a secure connection
   The only thing that differenciates this page from the legitimate one is the lack of a secure connection

The busiest shopping day of the year is a great opportunity for cybercriminals to launch their malicious campaigns in which they try to lure users into handing over account credentials.

MalwareCity reports a series of messages that advertise great eBay deals, all pointing to a page that perfectly replicates the legitimate site.

Except for the padlock icon that identifies a secure connection, all the other elements are strategically placed to dupe the victim into thinking he was taken to the actual eBay site.

After providing the crooks with the log-in credentials, the user is taken to a page that requests a security question and its answer. Once the information is handed over, another page appears that claims the customers was automatically signed out, this being the point where the crooks have all they need to take over the account.

If this situation sounds familiar, make sure to quickly change the password before the cyber villains manage to purchase everything they set their eyes on using your credit card.