Tuesday, July 08, 2008

Bye Bye Phishing

GMail has worked together with Paypal and EBay to make sure that email sent from those two web sites to GMail accounts are valid messages and not an attempt of phising. Here's some point from the GMail blog:
Now any email that claims to come from "paypal.com" or "ebay.com" (and their international versions) is authenticated by Gmail and -- here comes the important part -- rejected if it fails to verify as actually coming from PayPal or eBay. That's right: you won't even see the phishing message in your spam folder. Gmail just won't accept it at all. Conversely, if you get an message in Gmail where the "From" says "@paypal.com" or "@ebay.com," then you'll know it actually came from PayPal or eBay. It's email the way it should be.
It's said that they used DomainKeys and DKIM to verify each messages, so the reliability of this methods is based on those two. I just hoped they don't break too easy in the future resulting a false alarm big grin

3 comments:

  1. Hi Wil!
    Glad to know you again :)
    Long time no see, huh?

    www.donnyverdian.net

    ReplyDelete
  2. hello Don
    yeah, it's been a while (few years i guess??)

    how are you ?
    still the old Donny i knew?

    ReplyDelete
  3. Nice post, well I recieved an email yesterday itself asking me to update my card information as it has been deactivated and finally realized its a phishing site.

    Read more and see the screen shots of the same here:

    http://abhinavsingh.com/blog/2008/07/fake-email-from-paypal-cloned-sites/

    ReplyDelete