No Microsoft Patch yet for Explorer url hiding
The bug in the web browser trick Internet Explorer into display an incorrect URL in its address and status bars when the "%01" character is included in a web link. The security gap makes it easier for Internet fraudsters to trick web users into divulging bank account details, and has been used in several recent Phishing scams, including ones targeting Barclays and Citibank.
Microsoft said a patch addressing the spoofing flaw won't be released until it is "well-engineered and thoroughly tested." In the meantime, a page on its web site identifies ways IE users can protect themselves, which includes a snipet of Javscript code that can be entered in the address bar to validate a URL.
Netcraft has developed a service to help banks and other financial organizations identify sites which may be trying to construct frauds, identity theft and phishing attacks by pretending to be the bank, or are implying that the site has a relationship with the bank when in fact there is none.
| Rackspace Managed Hosting - Web Hosting - Hosting | Swishmail.com Business Email Hosting | Heart Internet web hosting |
| INetU Managed Hosting - Dedicated Servers | Windows Dedicated Servers from Server Intellect | Reseller hosting Managed dedicated server Ahosting |
| Business Web Hosting Services - webhosting.uk.com | Web Hosting - Dedicated Servers & VPS Hosting | Compare the Best Web Hosting Companies |
| Downtime alerts - free website monitoring service | ||
Advertising on Netcraft
Digg
Slashdot
Reddit
StumbleUpon
Delicious
Technorati