호주 국립 은행의 피싱 이메일에 대한 보안 정책 분석

호주 국립 은행에서 피싱 이메일에 대한 경고를 고객들에게 보내어 피싱 이메일에 대한 대응과 인터넷 뱅킹 보안 정책이 어떻게 수립되어 있는지 그리고 문제점은 없는 지 분석해보았습니다. 영문으로 작성되어 있습니다.




Online security is major issues for organizations that have an e-business presence (Mitigating). Following the Internet is opened to public, some people begin to gather others identity which called identity theft. For last decade, this attack attempt has been increased significantly. Phishing is one form of identity theft. According to the Anti-Phishing Working Group (APWG)`s research, some 75 to 150 million phishing emails are sent everyday on the net (Analysis Papers). Those phish-er`s ultimate purpose is to steal others money. These attacks caused financial losses in the banking industry to be about US $ 1.2 billion in the US alone in 2003 (Analysis Papers). It is obvious that all banks are quite concerned about online security. The trand of phishing attack is moving from well-known bank to regional bank. Recently, one of Australian bank is attacked by phishing. This report will show how the attack is happened and how the victim bank responds to the attack.

After reviewing this case study, the phish attack to the NAB customer is well protected by NAB`s security defense program. However the phish attack itself is not necessary to implement by high technology or special tools. Any naive and uneducated consumers may deceived by this attack.

참고 자료

