Read up on the latest ideas and technologies from companies that sell hardware, software and services. Solve Exchange Mailbox Storage Issues Once and for All
Revolutionising Back-up and Recovery
Email Archiving Technical Overview
Strategies for Eliminating .PST Files
Improving Sales Productivity: An Opportunity for Sales and IT Leadership
Cutting printer costs
How to Beef Up Your Sales Pipeline
Wireless LANs: Is my enterprise at risk?
Zones provide focussed content from Computerworld and leading technology partners.Newsletter Subscription
The spam and malware tsunami continues to cast a mounting shadow over the Internet this week.
An announcement from F-Secure warned that malware is growing faster than ever before, while Marshal's TRACE team claims that the volume of malicious spam in circulation has more than tripled in one week.
Marshal fingered the Srizbi botnet as the chief culprit, currently responsible for 46 percent of all spam sent, helping malicious spam figures jump from 3 to almost 10 percent of all spam traffic so far in June.
TRACE team lead threat analyst, Phil Hay, said that Srizbi's criminal controllers are currently on a major expansion drive.
Srizbi is duping recipients by including the first part of their e-mail address in the subject line with the suggestion that they look "stupid" in a video, luring them to a Web site to view the video where they are exposed to malware.
Marshal said Srizbi is also targeting social networking sites like Classmate.com, luring victims to dodgy sites with the promise of messages from long lost school friends. A Flash video player link is presented to the victim, which downloads an executable file that infects their computer.
"This kind of social engineering tactic is nothing new," said Hay.
"What is significant is the rapid increase in the volume. It once again demonstrates the incredible power and dominance that the major spamming botnets have over email traffic. Very few legitimate businesses could triple their e-mail capacity at the push of a button. But this is the advantage that the illegal control of thousands of computers gives the spammers. "We see Srizbi as one of the biggest threats to Internet users today. Users should be wary of emails that make personal offers such as online friend connections or include inflammatory personalised subjects such as 'you look stupid in this video', particularly if they don't recognise the sender," he said.
According to F-Secure's security summary for the first half of 2008, the unprecedented growth in malware is due to the packing, encryption, and obfuscation of existing families of trojans, backdoors, exploits and other threats now being done with "industrial efficiency".
The number of malware detections has grown by almost half a million since the end of the year, jumping from 500,000 total detections to 900,000.
"I have a nasty feeling that the situation is getting worse, not better", says Mikko Hypponen, chief research officer for the security vendor.
F-Secure cited targeted malware attacks such as the classmates.com con that Marshal reported as key growth areas for dodgy software peddlers over the past six months.
Targeted malware attacks typically involve the attacker profiling their victim and sending an e-mail using the recipients name, title, job function and a subject field related to the victim's position in order to trick them into opening something they would normally expect to receive via e-mail.
Targeted malware attacks against political or military organisations also increased, such as an e-mail attack against human rights and pro freedom of Tibet groups that aimed to install malware on their PCs that would allow their political opposition to spy on their actions.
F-Secure's half-yearly security summary also looked at emerging mobile phone threats such as Jailbreaking, growth in SQL injection attacks, and the risks emerging around third party applications like Adobe Flash. The summary can be viewed here.
Computerworld Member Login
Discover how SOA can create smarter outcomes for your business.
Attend and learn:
- How SOA is helping leading companies to become more agile
- Where you should be applying SOA processes in your company
- The top SOA implementation mistakes to avoid
Click here for more information.
- +
Computerworld Live Podcast #97: The Future of Enterprise Networking 25/07/2008 09:45:36
This week CW Live chats with Mark Thompson, global sales and marketing manager for HP ProCurve, on the future of the enterprise networking. Mark discusses the trends we can expect to see in the near future and how the right infrastructure can ensure your enterprise network is secure. - +
Computerworld Live Podcast #96: Security at the Edge 11/06/2008 09:22:22
CW Live speaks with Amol Mitra, HP ProCurve Director of Marketing for Asia Pacific and Japan. Today's topic: how enterprises are starting to shift away from simply controlling security via server logins, firewalls and moving to more adaptive security frameworks. - +
Data Management Edition #10: Multi-Petascale Systems 02/05/2008 09:12:33
This week we look at sustainability and the development of multicore technologies to build multi-petascale systems. - +
IT Security Edition #11: How to poison the Storm botnet 01/05/2008 08:51:55
This week CW Live presents a case study on how to poison the notorious Storm botnet . Plus we take a look at Cisco's plans for Ironport. - +
IT Security Edition #10: Cyber-battles fought and won 24/04/2008 11:09:47
Vendors bow to end user pressure to improve product security, and we take a look at the latest concepts shaping the cyber-battlefield of the future.
Fujitsu PC targets Today's Young Adults with the release of the L series 2008-10-14 12:40:00+10
RSA survey shows employees’ everyday behaviours puts sensitive business information at risk 2008-10-14 11:29:00+10
Sound Alliance Group expands with acquisition of Mess+Noise 2008-10-14 08:48:00+10
Sterling Commerce Introduces New Managed File Transfer Capabilities That Cuts Server Change Management Time in Half 2008-10-14 08:41:00+10
Simms Exclusive Distributor of Cygnett MP3 Accessories 2008-10-14 08:10:00+10
Radicati Market Quadrant 2008 on Corporate Web Security
An Analysis of the Market for Corporate Web Security Solutions, revealing Top Players, Mature Players, Specialists and Trail Blazers. Read on to discover who makes the grade.










