IRS tax refund phishing

E-mails pretending to be notifications of a refund from the US's Internal Revenue Service (IRS) take advantage of security configuration weaknesses on a secondary website run by the Department of Labor, Sophos warns. These emails redirect surfers to a bogus website with users fooled into thinking they remain on a legitimate US government site, said Sophos. IRS tax refund phishing - Xatrix Security

Linked by shanmuga Wednesday, 30th November 2005 9:04PM