Skip to content

Phishing

What is phishing?

Phish­ing is a tech­nique used by cyber­crim­i­nals to obtain per­son­al infor­ma­tion in order to com­mit an iden­ti­ty theft.

Our mon­i­tor­ing of new domain names reg­is­tra­tions allows to detect upstream the domain names reg­is­tered by third par­ties that could poten­tial­ly be used for phish­ing attempts.

This mon­i­tor­ing includes the detec­tion of MX records in the area of reg­is­tered domain names. The MX record, if present, indi­cates that an email address has been cre­at­ed. This is a first indi­ca­tor.

What is Phishing?

Once phish­ing is detect­ed, for exam­ple by the brand or by the end-user, reme­di­a­tion solu­tions at the host­ing com­pa­ny lev­el are effec­tive to bring down phish­ing. Domain names pro­ce­dures may also be rec­om­mend­ed.

Our inter­nal legal depart­ment Nameshield can advise you and car­ry out these actions for you.


How to protect against phishing?

Vig­i­lance is cru­cial.

In case of a phish­ing e‑mail:

  • Do not trust the sender’s name. If there is any doubt, con­tact the sender through anoth­er method;
  • Do not ever open an attach­ment from an unknown sender or from one who is not entire­ly trust­wor­thy;
  • Do not reply to a request of con­fi­den­tial infor­ma­tion by e‑mail (pass­word, cred­it card num­ber…);
  • Check the links by hov­er­ing the cur­sor over them (with­out click­ing) to ensure that they link to trust­wor­thy web­sites;
  • Be atten­tive to the qual­i­ty of the lan­guage used by the mail’s sender.

In case of the vis­it of a phish­ing web­site:

  • Be atten­tive to the URL’s spelling;
  • Check if the web­site vis­it­ed is secure and authen­ti­cat­ed by an SSL cer­tifi­cate;
  • Check the pro­pri­ety data of the web­site.

Find recent cas­es of phish­ing on the blog.