Hackers Tap Banks' Web Sites In Unique Phishing Attack
April 01, 2006Courtesy of TechWeb News
The hackers entered two servers running Microsoft Internet Information Services and planted the script needed to redirect people from the banks' legitimate sites to a bogus one, Quarterman said in his blog.
"This new scam is like phishing without the intervening electronic mail step," Quarterman said. "Because it is the bank's own Web (hosted, in this and no doubt many other cases) server that is compromised, the customer has even less reason to suspect anything amiss."
Source: http://www.securitypipeline.com/