{"id":12209,"date":"2017-06-19T14:43:21","date_gmt":"2017-06-19T12:43:21","guid":{"rendered":"http:\/\/blogs.sun.ac.za\/it\/?p=12209"},"modified":"2017-09-29T11:51:49","modified_gmt":"2017-09-29T09:51:49","slug":"phishing-scam-disguised-as-a-standard-bank-account-statement","status":"publish","type":"post","link":"https:\/\/blogs.sun.ac.za\/it\/2017\/06\/phishing-scam-disguised-as-a-standard-bank-account-statement\/","title":{"rendered":"[:en]Phishing scam disguised as a Standard Bank account statement[:]"},"content":{"rendered":"<p>[:en]<\/p>\n<p>We all regularly get phishing scams on our mail boxes, and normally they do not pose a threat if we are not Standard Bank customers. However, if any of you are Standard Bank customers, then there might be a risk.<\/p>\n<p>Today\u2019s phishing mail comes from a forged e-mail address like <a href=\"mailto:info@standardbank.co.za\">info@standardbank.co.za<\/a>.<\/p>\n<p>The Subject line is usually: <strong>\u201cStandard Bank: Account Statement June-201<\/strong>7\u201d (or iterations of the month and year)<\/p>\n<p>The body of the e-mail contains variations of the following:<\/p>\n<hr \/>\n<p><em>Dear Customer<\/p>\n<p> Attached to this e-mail is your Standard Bank account statement.<\/p>\n<p> Click the download button and follow the easy instruction.<\/p>\n<p> Regards<br \/>\n Standard Bank<\/em><\/p>\n<hr \/>\n<p>&nbsp;<\/p>\n<p>There will be an <strong>HTML<\/strong> file attached which if you do double-click to open up, will give you a forged login page similar to the following, where you will be asked to fill in your bank card details, your PIN and your password \u2013 and if you are fooled, the scammers will gain access to your bank account.<\/p>\n<p><a href=\"http:\/\/blogs.sun.ac.za\/it\/files\/2017\/06\/standardbank.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-large wp-image-12210\" src=\"http:\/\/blogs.sun.ac.za\/it\/files\/2017\/06\/standardbank-500x275.jpg\" alt=\"\" width=\"500\" height=\"275\" srcset=\"https:\/\/blogs.sun.ac.za\/it\/files\/2017\/06\/standardbank-500x275.jpg 500w, https:\/\/blogs.sun.ac.za\/it\/files\/2017\/06\/standardbank-300x165.jpg 300w, https:\/\/blogs.sun.ac.za\/it\/files\/2017\/06\/standardbank.jpg 619w\" sizes=\"auto, (max-width: 500px) 100vw, 500px\" \/><\/a><\/p>\n<p>The <strong>dangerous<\/strong> thing about this particular version is that there is a small JavaScript code embedded in the HTML file, which will run as soon as you visit the forged site, and will trigger and attempt to download malware onto your computer to steal data like passwords, bank account details, or to turn your computer into a \u201czombie\u201d under their control to send out further email or to attack the university from within the network.<\/p>\n<p>This week it might be Standard Bank, next week it might be ABSA or FNB or Nedbank. Phishing scammers are constantly changing their tactics.<\/p>\n<p><strong>Here are 5 easy tips to spot most phishing scams:<\/strong><\/p>\n<ol>\n<li><strong>The sender\u2019s e-mail may appear to be legitimate. It is easy for the criminals to forge an address to make it look like it is coming from the bank.<\/strong><\/li>\n<li><strong>The e-mail is addressed to \u201cDear Customer\u201d, with no specific name being mentioned. (Banks have enough information of their customers to be able to address you personally!)<\/strong><\/li>\n<li><strong>Hovering your mouse cursor over any links will show a fraudulent URL \u2013 not the bank\u2019s trusted web address.<\/strong><\/li>\n<li><strong>The e-mail contains a link to \u2018Logon\u201d or \u201cUpdate Details\u201d. Banks will not ask you to access Internet banking directly through an e-mail.<\/strong><\/li>\n<li><strong>The contents of the e-mail will be vague or reference a specific transaction which you would not normally conduct or receive.<\/strong><\/li>\n<\/ol>\n<p>The university\u2019s spam and phishing filters are quite effective in blocking these forms of phishing emails, but common sense and becoming informed should always be your first line of defence!<\/p>\n<p style=\"text-align: right;\">[ARTICLE BY DAVID WILES]<\/p>\n<p>[:]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>[:en] We all regularly get phishing scams on our mail boxes, and normally they do not pose a threat if we are not Standard Bank customers. However, if any of you are Standard Bank customers, then there might be a risk. Today\u2019s phishing mail comes from a forged e-mail address like info@standardbank.co.za. The Subject line [&hellip;]<\/p>\n","protected":false},"author":259,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20382,29187],"tags":[20381],"class_list":["post-12209","post","type-post","status-publish","format-standard","hentry","category-email","category-security-2","tag-phishing"],"publishpress_future_action":{"enabled":false,"date":"2026-05-08 07:09:56","action":"change-status","newStatus":"draft","terms":[],"taxonomy":"category","extraData":[]},"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/posts\/12209","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/users\/259"}],"replies":[{"embeddable":true,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/comments?post=12209"}],"version-history":[{"count":9,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/posts\/12209\/revisions"}],"predecessor-version":[{"id":12296,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/posts\/12209\/revisions\/12296"}],"wp:attachment":[{"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/media?parent=12209"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/categories?post=12209"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/tags?post=12209"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}