Although phishing has been around for some years, the first more sophisticated phishing attacks started in March 2003 on bank customers abroad before spreading to the UK in September 2003. Whilst the threats posed by viruses and Internet worms have been growing for some time, the use of Trojans to capture sensitive information entered into web sites is a relatively new phenomenon which started to become apparent in mid-2004.