Phoraging

In the field of computer security, Phoraging (pronounced foraging) is defined as a process of collecting data from many different online sources to build up the identity of someone with the ultimate aim of committing identity theft.Along with Phishing 1 and pharming 2 this is the third P of cybercrime.

Phoraging is a concept similar in many ways to Phishing 3 and Pharming 4 and is a term that is otherwise know as Mosaic theory 5 or Dumpster Diving 6

Phoraging is searching for information usually with the aim of identity theft whereby criminal collect data from a variety of different online sources to build up the identity of a consumer to commit identity theft. Crooks phorage for information from a variety of different sources including social networking sites, public records phishing attacks, or confidential information submitted in an unsecured way to websites, as well as viruses and spyware. They put this data together like a jigsaw to guess passwords and the answers to security questions with the ultimate aim of stealing money. PC Pro refeered to this concept in their January 2009 issue.7 security vendor VeriSign 8 also use refer to this term 9 whilst the UK Office of Fair Trading defines phoraging as a tactic used by "fraudsters who aggregate personal information from multiple sources with the intent of misusing an individual's identity; a tactic known as 'phoraging."10