What's new

Tutorial Ph!sh!ng s!te

1638755576435.png
 

Attachments

Why you need to have a requirements to Teach everyone how to avoid kind of attacks like this?Every body needs to learn a basic cyber security Practice's like avoiding being Phished,being pharmed,being bruteforced...pls many people have a lack of knowledge in this kind of attacks...

Phishing-Phishing is an attack where someone clone or Built a fake website with a fake log in section,Once you log in...the credentials will not be sended directly to the legitimate source,instead the one who created the site will see the credentials you put on the log in section

*How to avoid?
-To avoid this attacks First of all do not trust shady sites (e.g. www.ImHandsome.com,www.127.0.0.1.com,www.294720.org)
-If you receive a email saying "hey you got a message log in here to check it out",Do not click the link...instead go to the legitimate site and just check it manually
-Do not click on malicious attachment in any email sended to you...this could lead to dns poisoning and To pharming situation
-Check if the website has a Https encryption
-Check the email with shady link if TLS encrypted or not

Pharming-This attack is most likely a phishing attack,but in advance mode...the attacker send a malicious file through email,and once click by the target The malicious code will be executed,now the malware poison the dns...adding malicious ip addresses so once you search the legitimate site domain name system it will look like legitimate as it is...but you are in the different ip address and not the legitimate site itself.

Example:
*Carla receive a email and she clicks on the Malicious file...now the malicious code has been executed and poison his dns Replacing the original ip address of the facebook...now the facebook original ip Has been overided by a fake one...now once she search facebook,she will not redirected in the original facebook instead she will be redirected to the fake website and the dns will be the same as facebook.

How to avoid:

-Do not click malicious attachments from your email
-Ping the website you want to go and if different ip is appearing you could have a poisoned dns
-because it is hard to identify if you are in a fake website you can check the windows host file for additional or malicious ip address

remember in this days every 2 seconds theres a person where its data is stolen so pls do not put any requirements to learn a VERY basic cyber security.
 
Back
Top