For Businesses For Consumers TRUSTe Blog About TRUSTe   
 
TRUSTe - Make Privacy Your Choice

For Immediate Release

CONSUMER ALERT: HOW TO AVOID TAKING THE "PHISHING" BAIT

Privacy Nonprofit Releases Five Rules to Detect and Avoid Phishing Scams

San Francisco, June 30, 2004 – One of the more sinister and increasingly prevalent methods of identity theft is the practice of "spoofing" or "phishing," involving the sending of e-mails that mirror the appearance of a popular Web site or company in an attempt to commit identity theft. Phisher e-mails claim to be sent by a legitimate company and ask consumers to reply with personal information, such as their credit card number, social security number and account password.

A June 2004 survey of 6,300 consumers conducted by the privacy nonprofit TRUSTe and the Ponemon Institute revealed that 76 percent of consumers consider identity theft their number one privacy concern.

In response to the sharp increase in e-mail phishing, TRUSTe today released five rules to help consumers detect and avoid phishing scams:

  1. Be suspicious of urgent demands for information. Often spoofed e-mails will make some form of urgent request. For example, the e-mail will claim that your account will be terminated if you fail to confirm your sensitive information.
  2. Look for misspelled words or grammatical errors in the message and/or hyperlink. Blatant misspelled words and/or grammatical errors are common in spoof e-mail scams.
  3. Avoid e-mailing personal and financial information. Before submitting financial or account information to a Web site, look for a third-party privacy seal to ensure that the transaction is secure. Also avoid volunteering private information like passwords or a personal social security number.
  4. Be watchful of general greetings. Many spoof e-mails begin with a general greeting such as "Welcome eBay User" rather than directly addressing the registered user by name.
  5. Contact the company directly. If you have any doubts about an e-mail or Web site, open a new browser and visit the company directly to verify Web site. Don't be afraid to call customer service about an email.

In addition, TRUSTe encourages consumers to choose Web sites for online commerce carefully. "Consumers should make purchases only from companies that take identity threats seriously. We advise that consumers work with companies that have taken steps to correct any challenging situations and demonstrated their support by countering cybercriminals engaged in phishing activities," said Fran Maier, president and executive director, TRUSTe.

Additional information on phishing, including industry best practices and case studies, is available upon request from TRUSTe.

About TRUSTe
TRUSTe is an independent, nonprofit organization dedicated to enabling individuals and organizations to establish trusting relationships based on respect for personal identity and information in the evolving networked world.

Founded in 1997, TRUSTe runs an award-winning global privacy certification and seal program. Its seal programs are considered Safe Harbors for the Children's Online Privacy Protection Act (COPPA) and the EU Safe Harbor Framework. Today, TRUSTe maintains the largest privacy seal program with more than 1,400 Web sites certified throughout the world including AOL, Microsoft, IBM, Nationwide and The New York Times. TRUSTe's mission extends standards, certification and oversight into email with Bonded Sender and wireless with the Wireless Advisory Committee. For more information on TRUSTe please visit www.truste.org.

###



 

Contacts:

Carolyn Hodge
TRUSTe
(415) 520-3415
mediarelations@truste.org

Matt Sullivan
FitzGerald Communications for TRUSTe
(703) 861-7078
truste@fitzgerald.com



Sponsor: America Online
© 1997 - 2008 TRUSTe. All Rights Reserved.