Skip the navigation

Wi-Fi phishing scam targets business travelers

Warning to users of airport and hotel access points

By Todd R. Weiss
May 10, 2005 12:00 PM ET

Computerworld - Business computer users who frequent airport and other wireless hot spots are being warned of a new, more sophisticated variant of the "Evil Twin" phishing scam that appeared in January.
In a warning today, wireless security and monitoring vendor AirDefense Inc. in Alpharetta, Ga., said the new phishing scam lures victims by setting up fraudulent Web sites that appear to be log-in sites for legitimate Wi-Fi hot spot vendors. When users log in and access the phony sites providing personally identifying information, their computers are hit with as many 45 viruses, according to AirDefense.
The company said wireless users at hot spots in shopping malls and coffee shops aren't believed to be at risk because hackers are targeting more lucrative victims, such as business travelers in hotels and at airports.
"These attacks are being driven by business because so much business, so many transactions, are done over the Internet," said Jay Chaudhry, the chairman and co-founder of AirDefense. "There's a lot of this going on, and business people need to be careful. The average business executive ... has no clue."
"Wireless security is a race with hackers," Chaudhry said in a statement. "Hackers have moved away from the challenge of simply trying to access a device. They are now interested in commercial gain. The most lucrative and easiest place for hackers' commercial gain is business hot spots such as airport lounges, hotels and conferences."
The phishing scam was discovered at several recent wireless technology trade shows, the company said.
The new Wi-Fi phishing variant is a more sophisticated version of the Evil Twin attack that hit the Internet in January. In Evil Twin, also known as the AP (access point) phishing scam, an attacker poses as a legitimate hot spot and tricks victims into connecting to the hacker's laptop or handheld device, according to AirDefense. Once the victim connects, the attacker can attempt to coerce the user into revealing personal and confidential information.
To avoid becoming victims of the latest scam, AirDefense recommends that wireless users take several security steps. When accessing their accounts at hot spots, users should enter passwords only into Web sites that include a Secure Sockets Layer key at the bottom right of the Web browser. Users should also avoid hot spots where it's difficult to tell who is connected, such as at hotels and airport clubs. Hot spots should only be used for Web surfing and not for making online purchases or any other transactions where account numbers or passwords are needed, the company said.
Users should also turn off or remove their wireless cards from their computers when they aren't accessing a hot spot to prevent others from accessing their machines, the company said. Users are also encouraged not to use unsecured applications such as e-mail or instant messaging while at hot spots. All patches for personal firewall and security software should also be continuously updated.

Read more about Mobile and Wireless in Computerworld's Mobile and Wireless Topic Center.



What is Tech Briefcase?
TechBriefcase is a new, free service where IT Professionals can Search, Store and Share IT white papers and content like this. Learn more
Bookmark content
Speed up your research efforts with content across the web.
Search and Store
Find the white papers you need. Create folders for any topic.
View Anywhere
Open your briefcase on your iPhone, tablet or desktop. Share with colleagues.
Don't have an account yet?
Additional Resources
Security KnowledgeVault
WHITE PAPER
Security is not an option. This KnowledgeVault Series offers professional advice how to be proactive in the fight against cybercrimes and multi-layered security threats; how to adopt a holistic approach to protecting and managing data; and how to hire a qualified security assessor. Make security your Number 1 priority.

Read now.

Cut Communications Costs Once and for All
WHITE PAPER
New IP-based communications systems are being deployed by small and midsized businesses at a rapid rate. Learn how these organizations are enabling faster responsiveness, creating better customer experiences, speeding office or mobile interactions, and dramatically reducing existing communications costs.

Read now.

Mobile and Wireless White Papers
What to Look For in Solutions For Mobile Device Management
Managing an increasingly mobile workforce has become one of the most challenging - and important - responsibilities for IT departments. This paper examines...
Tour Operator Uses BlackBerry Smartphone to Help Drive Sales
Sending more than 22,000 high school and university students on trips abroad each year requires logistical prowess and constant communication. Dealing primarily with...
Independent Guidelines for Enterprise Mobility
With the ever accelerating adoption of mobile devices and applications in both the consumer world and the workplace, there is an increasing challenge...
The BlackBerry PlayBook tablet's Good Bones
Find out why the BlackBerry Tablet OS built from the advanced QNX® Neutrino® real-time operating system makes the BlackBerry PlayBook tablet the smart...
Telecom and Network Infrastructure Company Improves Inventory Accuracy
Expertech developed a custom in-house built BlackBerry application called Expertech Tool Room to provide near real-time inventory and tracking of their capitalized tools....
All Mobile and Wireless White Papers
Mobile and Wireless Webcasts
The Office of Tomorrow with BlackBerry
Curious about the office of the future and how to prepare with BlackBerry solutions? This session discusses the office needs of tomorrow and...
The Changing Role of Tablets in the Enterprise
Do you understand all the capabilities and potential of the BlackBerry PlayBook tablet? BlackBerry® PlayBook™ tablet can help enterprises do business differently.

This webcast...
Security Certifications 101 - BlackBerry and all those acronyms what do they mean and why they matter?
FIPS, Common Criteria, CAPS, AISEP, NFC, NIST, Fraunhofer SIT, CESG, DSD - these are just some of the government and industry certifications which...
PlayBook Video about two Grade 6 classrooms that are using PlayBook tablets
RIM recently worked with Park Manor Public School in Elmira, ON to integrate BlackBerry PlayBook tablets in two Grade 6 classrooms. The project...
McCain Canada deployed BlackBerry PlayBook tablets with a custom application to their salesforce
McCain Foods Limited (McCain) has deployed BlackBerry® PlayBook™ tablets in order to enhance mobility within their sales force- along with a customized application...
All Mobile and Wireless Webcasts
Can prepaid smartphones save you money?
Samsung Exhibit prepaid smartphone

Prepaid service has started to transform from a source of cheap, bottom-of-the-barrel phones into a viable outlet for compelling smartphones. Read more...

Newsletter Sign-Up

Receive the latest news test, reviews and trends on your favorite technology topics

Choose a newsletter
  1. View all newsletters | Privacy Policy
IT Jobs