Netcraft has identified phishing in which cybercriminals use valid SSL certificates to present fake websites as legitimate.
To avoid such attacks, users are usually advised to ensure that the sites they enter information on are protected by a valid SSL certificate. However, in some cases, attackers use content delivery networks (CDNs) to increase the chances of success of the attacks.
Experts have identified a phishing website targeting the personal and financial information of customers of Turkcell, a leading telecommunications company in Turkey.
It is possible that the attackers have used stolen credit card details to sign up for CloudFlare accounts that offer the SSL feature.
In addition to phishing attacks for Turkcell, Netcraft has also detected and blocked PayPal and Chase phishing websites that were using SSL from CloudFlare.
While users should continue to check for SSL certificates to detect phishing attacks, they should also look for other elements of a malicious program, such as the domain the site is hosted on.

