Words like "update," "security," "login," "billing," when combined with a legitimate base domain name -- or its misspelled variation -- are common indicators of phishing sites, said Andrew Hay, director of security research at San Francisco-based OpenDNS.
The link for this article located at CSO Online is no longer available.