Archive for October, 2005

Counterphishing?

Friday, October 28th, 2005

I have been getting at least one PayPal (or sometimes eBay) spoof/phish mail per day for some while.  I duly report them to spoof@<whichever>.com and always get a lengthy response assuring me that the mail was not from PayPal/eBay, and to be sure not to give out vital secrets. 

  1. eBay/PayPal should offer an address to which to send these messages that accepts the info and pursues the senders, but does not give a mini-lecture in return.  It is a waste of electrons and bandwidth.
  2. There should be a utility site to which one can forward such messages that will use the form and content to launch a massive load of phishy (invalid) responses to the site the phisherman wants us to trustingly populate with our passwords and account numbers.