Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You should be vetting those sites anyway, especially since you probably were also asked for a password. And it's not exactly hard - just glance up at the address bar.

>The available data

source?



A good phish relies on triggering instinctive behaviour, e.g. scaring the crap out of you and not following best practices because you're having an adrenaline rush. That's how careful people get hit. SwiftOnSecurity sometimes posts really well done phishing attempts: https://twitter.com/search/live?q=phish+from%3Aswiftonsecuri...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: