1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

DILEMMA: iframing = phishing?

Discussion in 'BlackHat Lounge' started by kwong12, Jan 18, 2009.

  1. kwong12

    kwong12 Newbie

    Joined:
    Sep 24, 2008
    Messages:
    18
    Likes Received:
    0
    hi guys have a dilemma here

    since iframing is basically asking the user to input info such as email, zip codes , addresses , telnumbers ( for 2nd page submits ) , is it considered phishing?

    some of the defensive points for iframing
    1. it's online marketing,data is sent to advertisers
    2. no harm is done ( not collecting info such as usernames,passwords)

    what if the iframing tactic is done properly so that at the end of their email/zip/address submit, they get the thing they were first marketed to?
    ie: free ebook -> user keys in email address (1st page submit), then his/her address (2nd page submit) -> user gets the free ebook.

    what do u guys think?
     
  2. Grizzy

    Grizzy Senior Member

    Joined:
    Nov 11, 2008
    Messages:
    919
    Likes Received:
    999
    This is the definition wikipedia has for phishing:
    So as long as your not misrepresenting yourself and pretending to be an organization like a bank or egay, I don't think it can be considered phishing.
     
  3. kwong12

    kwong12 Newbie

    Joined:
    Sep 24, 2008
    Messages:
    18
    Likes Received:
    0
    you meant ebay, not egay :p
     
  4. kwong12

    kwong12 Newbie

    Joined:
    Sep 24, 2008
    Messages:
    18
    Likes Received:
    0
    i think making an own organization (doesn't have to be official) also helps.
    and for extra safety, we can put a terms and conditions as fine print and the end of the iframed page. saying the info obtained thru the site might be used for commercial purposes.
     
  5. learnenglish

    learnenglish Newbie

    Joined:
    Nov 29, 2008
    Messages:
    5
    Likes Received:
    0
    iframe, it's not easy like you said,
    but btw, i'll try
     
  6. springer98

    springer98 Regular Member

    Joined:
    Dec 6, 2008
    Messages:
    211
    Likes Received:
    250
    Occupation:
    We doeneeeeed no stinkin' yob!
    Location:
    ZRF
    Ya mean like this?

    [​IMG]

    :yield:
     
  7. Grizzy

    Grizzy Senior Member

    Joined:
    Nov 11, 2008
    Messages:
    919
    Likes Received:
    999
    Yea that looks pretty phishy to me.
     
  8. carryout

    carryout Junior Member

    Joined:
    Nov 7, 2008
    Messages:
    137
    Likes Received:
    34
    Occupation:
    Student @ UND
    Location:
    Midwest
    AHAHAHHA lmao........