Fishing for Phishing Sites

執筆者
Brian Prince
Brian Prince
Published: Oct 8, 2007
Updated: Feb 2, 2021
2 minute read
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

Security firm Blue Coat Systems dropped a different sort of net in the e-mail water, hoping to snag phishing attacks with a Web filter that relies on an opt-in, not opt-out database strategy.

Unlike other anti-phishing tools that check a users Web URL requests against a database of known phishing sites, Blue Coats Real-Time Anti-Phishing protection, embedded in the Blue Coat ProxySG appliances, checks requests against known safe sites. If the URL isnt found in the Blue Coat database, a query is sent to a data center in Blue Coat Labs, where the Web page is analyzed, categorized and then either blocked or initiates a warning for the user. The entire process is completed in as little as 250 milliseconds, and can be performed on sites using SSL-encryption, company officials said.

It essentially applies to e-mails and phishing the same technology Blue Coats Dynamic Real-Time Rating service already uses to examine URL requests in browsers.

To read about Blue Coat bringing WAN optimization to road warriors, click here.

The day of static databases of phishing sites being sufficient to protect users are gone,” said Chris King, director of strategic marketing at Blue Coat. “A phishing site doesnt have a long life span,” he said. “They get a couple people and theyre out.”

The former strategy of checking against known “bad” sites, benefits the bad guys, who know to avoid detection, said Scott Crawford, an analyst with Enterprise Management Associates in Boulder, Colo. Calling phishing one of the most serious threats for IT organizations, Crawford added that businesses can not simply rely on their employees to discern friend from foe online.

Gartner analysts estimated last year that phishers picked billions of dollars from the pockets of U.S. consumers and the trend is not shrinking. Spurred by more aggressive phishing techniques and the spread of phishing kits, one in every 87.2 e-mails sent is a phishing attack, according to MessageLabs.

Advertisement

The new strategy actually speeds the process of identifying known “bad” sites, King said, “because were getting what people are actually clicking on.”

In addition, Blue Coat ProxySG appliances can automatically check for credential discrepancies of secure Web sites that could indicate a rouge site, company officials said.

Check out eWEEK.coms Security Center for the latest security news, reviews and analysis. And for insights on security coverage around the Web, take a look at eWEEKs Security Watch blog.

Brian Prince

Brian Prince

Content Writer
eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。