Application security encompasses measures taken throughout the application's life-cycle to prevent exceptions in the security policy of an application or the underlying system (vulnerabilities) through flaws in the design, development, deployment, upgrade, or maintenance of the application.

Sunday, August 29, 2010

New phishing site for ICICI Bank

Phishing is the criminally fraudulent process of attempting to acquire sensitive information such as usernames, passwords and credit card details by masquerading as a trustworthy entity in an electronic communication.

In this case the attacker create a new fake website of bank which exactly look like the original bank site and send the link of the website to actual user of that bank in mail.  When the user click on the link they are redirected to the fake bank website and when they try to login their username and password is get compromised.

Phish mail:

