Feeds

Phishing scams cost UK banks £1m+

Brute force and ignorance

  • alert
  • submit to reddit

Build a business case: developing custom apps

Phishing scams have cost British banks more than £1m over the last 18 months. This is a tiny fraction of the £402.4m lost through credit card fraud for last year, but banks are still keen to raise awareness of the issue.

Scam emails that form the basis of phishing attacks pose as 'security check' emails from well-known businesses. These messages attempt to trick users into handing over their account details and passwords to bogus sites. The collected details are used for credit card fraud and identity theft.

First seen more than a year ago, phishing emails are becoming increasingly sophisticated, directing users to bogus websites which accurately reproduce the look and feel of legitimate sites. Such scam emails are becoming increasingly commonplace (we get four or five a day, for example) and more people are getting caught out.

Sandra Quinn of the Association for Payment Clearing Services (APACS) told the BBC's Money Box program: "The losses now we think are over a million, and we know that figure is growing... It is something we are extremely concerned about."

Money Box spoke to one woman, Andrea from Cleveland, who had lost £6,000 from her account after falling for a phishing scam. "You just feel so stupid. You feel that you have been taken in by a con that should have been glaringly obvious," she said.

A spokeswoman for APACS explained that UK bank customers have not being held liable for money siphoned out of accounts as a result of phishing attacks. "Banks have taken the loss," she said.

She added that only a minority of people have been taken in by the ruse - the vast majority delete suspicious email. "Nonetheless, phishing attempts are still happening," she added.

According to an attack trends report from the Anti-Phishing Working Group, email fraud and phishing attacks grew by more than 43 per cent in March, with an average of 13 new, unique attacks sent out to millions of consumers each day. The group recorded 402 unique phishing attacks for March. The most-targeted industry sector was Financial Services with 256 unique attacks and the most put-upon company was eBay (110 attacks).

Email filtering firm Brightmail reckons one in 20 emails (five per cent) sent last month were phishing scams. That amounts to a staggering 2.9bn messages, according to Brightmail’s figures.

Users are advised not to respond to suspicious emails. Consumers should contact their bank via a trusted method of communication if they have any concerns. More top anti-phishing tips can be found here. ®

Related stories

Phishing attacks on the rise
PayPal virus writing scammer scumbag pleads guilty
MS plugs IE phishing bug
The economics of spam
Estonian plasma TVs: Phishers fingered
Halifax suspends e-banking site after phishing attack
Email scammers target Halifax, Nationwide, Citibank
UK banks and police proffer anti-phishing advice

Endpoint data privacy in the cloud is easier than you think

More from The Register

next story
Microsoft's Euro cloud darkens: US FEDS can dig into foreign servers
They're not emails, they're business records, says court
'Things' on the Internet-of-things have 25 vulnerabilities apiece
Leaking sprinklers, overheated thermostats and picked locks all online
iWallet: No BONKING PLEASE, we're Apple
BLE-ding iPhones, not NFC bonkers, will drive trend - marketeers
Multipath TCP speeds up the internet so much that security breaks
Black Hat research says proposed protocol will bork network probes, flummox firewalls
Only '3% of web servers in top corps' fully fixed after Heartbleed snafu
Just slapping a patched OpenSSL on a machine ain't going to cut it, we're told
Plug and PREY: Hackers reprogram USB drives to silently infect PCs
BadUSB instructs gadget chips to inject key-presses, redirect net traffic and more
How long is too long to wait for a security fix?
Synology finally patches OpenSSL bugs in Trevor's NAS
Israel's Iron Dome missile tech stolen by Chinese hackers
Corporate raiders Comment Crew fingered for attacks
prev story

Whitepapers

7 Elements of Radically Simple OS Migration
Avoid the typical headaches of OS migration during your next project by learning about 7 elements of radically simple OS migration.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Consolidation: The Foundation for IT Business Transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.
Solving today's distributed Big Data backup challenges
Enable IT efficiency and allow a firm to access and reuse corporate information for competitive advantage, ultimately changing business outcomes.
A new approach to endpoint data protection
What is the best way to ensure comprehensive visibility, management, and control of information on both company-owned and employee-owned devices?