Read up on the latest ideas and technologies from companies that sell hardware, software and services. Simplify and Secure: Managing User Identities Throughout their Lifecycles
Still Sneaking In: The Threats Your Security Tools Aren't Telling You About
Web Security SaaS: The Next Generation of Web Security
Australian Unity minimizes costs and maximizes productivity with single sign-on for 1,400 users
BT saves more than £15 million and improves customer services with comprehensive Identity & Access Management
Why Security SaaS Makes Sense Today
Radicati Market Quadrant 2008 on Corporate Web Security
Dude! You Say I Need an Application-Layer Firewall?!
Zones provide focussed content from Computerworld and leading technology partners.Newsletter Subscription
Phishers have been using compromised MySpace.com accounts to attack unsuspecting Web surfers, security experts said Thursday.
The attack is thought to have infected several thousand PCs according to reports from ISPs (Internet service providers), said Johannes Ullrich, chief research officer for the SANS Institute. Ullrich has documented the issue on the SANS Internet Storm Center blog.
Lawrence Baldwin, chief forensics officer with security vendor MyNetWatchman, discovered the threat Tuesday and The Washington Post reported on it late Wednesday.
Criminals have managed to install fake navigation bars on the top of MySpace.com user profile pages that, when clicked, lead to malicious computers that attempt to infect the victim's computer. The attack uses several known Internet Explorer flaws that have been fixed, so users who have installed the latest Microsoft patches are not at risk, security experts said.
The code was installed on "maybe a few dozen," MySpace.com pages, most of which have been removed by administrators at the social-networking site, Ullrich said. MySpace.com representatives did not respond to requests for comment on Thursday.
Two components comprise the attack. It attempts to install malicious botnet software on victims' computers, and it also uses these infected computers to try to steal MySpace credentials in a phishing attack.
Computers that are compromised by the attack become infected with malicious botnet software known as "flux bot," which makes them unwitting participants in the phishing scam. After the malicious Web site attempts to install the flux bot code, it then presents victims with a fake MySpace.com log-in page, which tries to extract their MySpace.com user name and password.
Baldwin allowed one of his test computers to be infected with flux bot and found that attackers were remarkably successful at stealing passwords. "I operated as a flux node for about 12 hours and did a full audit of all the traffic coming into my machine. I was probably getting close to 60 MySpace users an hour surfing to my flux node. And at least a quarter of those actually gave up their credentials."
Baldwin estimates that the attackers were using another 200 compromised flux bot machines in their attack.
Because MySpace.com allows users to install their own HTML (Hypertext Markup Language) code and is used by such a large number of technically unsophisticated users, it has become an attractive target for these types of attacks.
Last December, hackers created a worm that quickly spread across MySpace.com, stealing user names and passwords. That worm exploited a flaw in Apple's QuickTime media player.
Computerworld Member Login
Security Management
Protect your critical IT assets, achieve sustainable regulatory compliance, reduce IT administration costs and enable new business opportunities with our IT security solutions.
IT Security as a business enabler?
Download Whitepaper
|
Success Stories
Australian Unity minimises costs and maximises productivity with single sign-on for 1,400 users
Australian Unity needed to address its business and security risks including user management and application security management. The company chose an enterprise single sign-on (ESSO) solution and discovered increased employee productivity, reduced help desk costs and elevated data protection.
Download the full Success Story
BT saves more than £15 million and improves customer services with comprehensive Identity & Access Management
To enable future growth and ensure its services remain competitive, BT needed to build closer relationships with its customers and suppliers. Discover how the company is now performing over 36 million transactions a day with their improved Identity & Access Management Solution.
Download the full Success Story
Identity & Access Management
Simplify and Secure: Managing User Identities Throughout their Lifecycles
Organisations are constantly challenged to keep pace with ongoing changes to users and their roles, responsibilities and requirements. Discover how CA can help you create a unified approach for managing users identities, providing them with timely and appropriate access to applications and information.
Download Whitepaper
Simplify, Integrate and Safeguard Your Business with Secure Web Business Enablement
Modern organisations are required to aggressively expand the number and type of Web applications and services provided to customers, partners and employees. Discover how to automate, delegate and centralise your key processes and services including user administration, access policies, auditing and compliance by reading on.
Download Whitepaper
Simplify, Integrate and Secure: Providing Secure Access to Server-based Information and Resources Across Platforms
Distributed servers are a powerful asset in any company’s infrastructure. Over time, most organisations have acquired a variety of different platforms and are relying on them to house an increased amount of critical applications, processes and data. Read on to discover how you can achieve a consistently higher level of server access security across multiple platforms including virtual hosts and guest operating systems.
Download Whitepaper










