KO EN
Close

2022.11.25

How to Avoid Financial Fraud in Korea (IV)

  1. What are the differences between phishing and pharming?
     
    • A more advanced technique is used for pharming to steal people’s credentials. Cybercriminals install or lure users into installing malicious codes in the user’s device or a server which would discreetly redirect them to fraudulent websites. These fake websites may look legitimate, but every piece of information the users enter on the website will be stolen by scammers.
       
    • Phishing uses bait such as fake links, while pharming manipulates on the DNS (Domain Name System) server to redirect users to a simulated website. Once the hacker launches a successful DNS attack in pharming, it diverts the fundamental flow of traffic to the website.
       
    • Pharming uses techniques like DNS hijacking, DNS cache poisoning, and DNS spoofing, while phishing uses smishing, message phishing, or voice phishing (vishing).
       
    • Pharming is trickier than phishing since it launches an attack at the DNS level, making it difficult to spot. However, phishing remains the top social engineering scam that lures victims into submitting confidential information.
       
  2. How to prevent falling victim to pharming?
     
    • Always use a trusted and verified Internet Service Provider (ISP)
       
    • Use a VPN service that has reputable DNS servers
       
    • Always enable two-factor authentication on sites when you have the option to do so
       
    • Avoid suspicious websites
       
    • Make sure to change the default password on your consumer-grade routers and wireless access points
       
    • Always be extra careful when opening links or attachments or installing programs or applications from unknown or suspicious sources
       
    • Using security software is crucial
       
    • Make sure that your web connections (the web address should have HTTPS, for instance) are secure