You are here: silicon.com > Networks > WebWatch

WebWatch

PayPal wages war on phishing

"United we stand, divided we fall," says security chief

Tags: certification, education, isps, paypal

By Tim Ferguson

Published: 11 April 2008 11:27 GMT

PayPal is stepping up its battle against phishing with new technology and by collaborating with others in the industry.

Speaking at the RSA security conference in San Francisco this week, Michael Barrett, PayPal's chief information security officer, outlined the company's strategy for dealing with the phishing problem.

Security from A to Z

Click on the links below to find out more...

A is for Antivirus
B is for Botnets
C is for CMA
D is for DDoS
E is for Extradition
F is for Federated identity
G is for Google
H is for Hackers
I is for IM
J is for Jaschan (Sven)
K is for Kids
L is for Love Bug
M is for Microsoft
N is for Neologisms
O is for Orange
P is for Passwords
Q is for Questions
R is for Rootkits
S is for Spyware
T is for Two-factor authentication
U is for USB sticks/devices
V is for Virus variants
W is for Wi-fi
X is for OS X
Y is for You
Z is for Zero-day

As one of largest secure online payment providers, Barrett said PayPal needs to step up efforts to stamp out the phishing problem - not just to protect customers but also the internet as a whole.

He said: "We know we're always going to be an attractive target for criminals. But what I don't want is PayPal to be protected and the rest of the industry not. Phishing could be solved, there's no need for it to happen."

According to Gartner, 3.3 per cent of the 124 million people who received phishing emails in 2007 were duped and lost money.

PayPal is taking a three-pronged approach to tackling phishing using education, technology and partnerships.

Barrett equated the current situation in educating consumers to the early years of the car industry when the benefits of rules of the road and safety had not been fully realised.

He said: "I would say we're at the same stage on the internet. I think we probably have another decade of consumer education ahead of us."

PayPal has brought in a number of tech solutions including digital email signatures - something that the company now does with 100 per cent of its outbound emails.

Currently PayPal is also focusing on an approach where ISPs block emails seemingly sent from PayPal that don't have the correct digital signature.

The company is doing this with Yahoo! since autumn last year and so far it has blocked 50 million phishing emails from reaching customer inboxes.

But Barrett said other measures are needed such as email certification.

The warning systems on browsers such as Microsoft's Internet Explorer 7 - which indicates whether sites are trustworthy - are also helping to stop people clicking through to phishing sites, Barrett added.

But he stressed that partnerships are also key in the fight against phishing. "The saying 'united we stand, divided we fall' couldn't be clearer in this area," he said.

PayPal works with owner eBay along with AOL, Google, Verisign, Yahoo! and various government bodies.

Barrett said: "The internet is a global medium and we need to be running it in a much more unified way."

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure
Read and write about internet access at the airports of the world at atlarge.com. Rate airports, and see what others have to say...

Peter Cochrane Peter Cochrane's Blog: Facebook saves teen from prison Another unexpected impact of social networking

Natasha Lomas Exclusive: Jimmy Wales on what's next for Wikipedia Why Wikipedia needs geeks and why a life unplugged is unthinkable


  • Jobs
Senior Web Applications Developer PHP SQL JavaScript – Education

Our client is a market leader within the Education sector boasting web based software at the cutting edge of technology. To apply for this role ...

Telesales Executive, Software Sales, Borehamwood

To apply you will be a highly effervescent and positive character that easily builds strong business partnerships. Well established niche software ...

TELEMARKETING SALES/BUSINESS DEVELOPMENT EXECUTIVE

Working in partnerships with a Field Sales Consultant you will be responsible for sourcing valuable new business leads, identifying relevant ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: