Information Age: News, analysis & insight for IT & business leaders

Equifax taken down by phishing attack

2 November 2007  

The Rock Phish gang has been in operation since 2004 and is believed to be responsible for some of the major innovations in online crime tactics.  

Major credit rating organisation Equifax was on Monday hit by a massive phishing attack which took the company’s internet server offline, Information Age has learnt.

The phishing attack was launched early on Monday morning by the Rock Phish gang, a group of highly technical e-criminals thought to be located in Eastern Europe. Equifax has employed a security company to take down the bogus site, Information Age understands.

Equifax has verified that some customers were targeted by phishing attempts using one of the company’s online delivery systems.

John Walker, former CSO of credit checking agency Experian and CTO of security consultancy Secure-Bastion, told Information Age that the credit industry has become a chief target of the Rock Phish e-crime gang. “Equifax is concerned about the future because [the attack] was perpetrated by a particularly nasty group [of e-criminals],” he said.

The US-based company is hoping to involve the federal government, he added.

The Rock Phish gang has been in operation since 2004, and is believed to be responsible for some of the key innovations in both phishing and spam attacks in recent years, including image-based spam.

“The Rock Phish is a new type of attack which is very hard to defend against,” says Walker. “Underlying the Rock Phish attack is the use of Wildcard DNS which is employed to resolve to variations of IP addresses which are then mapped onto a dynamic gathering of compromised machines."

"This means Rock Phish sites are much more durable and harder to take down,” adds Walker.

Further reading

al Qaeda threatens 'cyber jihad'

China unveils plan for cyber warfare

Political activists blamed for cyber assault 

Find more stories in the Security & Continuity Briefing Room


Comments 

There are currently no comments on this article

People who read this also read...

Platform Computing - Category winner

Since 1992, Platform has established a reputation as an industry leader in High Performance Computing (HPC) management software, bringing the most powerful commercial HPC solutions to leading global enterprises.

FSA turns to business intelligence to combat market abuse

The implementation forms part of the FSA's wider drive to enforce compliance with MiFID.

 

White Papers

Read article

'Think Lean' When Developing Management System Documentation

Learn how to efficiently and effectively implement a document management system for your organization.

Read article

11 Hiring Trends for 2011

In this document, you'll get the insider info you need to give potential employers what they want and beat your competition in 2011. You'll learn about the most valuable certifications and the game-changing skills that can lead to more job security and stability.

Read article

12 Hiring Manager Secrets to Getting the IT Job You Want

Learn how you can make yourself a more attractive candidate now with PrepLogic's free 12 Hiring Manager Secrets to Getting the Job You Want.

More
Advertisement
div class="banner">