Wednesday | 8 October, 2008
Computerworld
IM attacks jump 73 percent
Security vendor finds a sharp rise in instant messaging-based attacks
Matthew Broersma (Techworld.com) 01/06/2007 09:43:58

Additional Resources
Executive Guides
Whitepapers
Zones
Zone logoZones provide focussed content from Computerworld and leading technology partners.

Newsletter Subscription

Sign up for our Computerworld newsletters!
Computerworld's twice-daily news service keeps you in touch with the latest, most important headlines from Australia and around the world.
Keep up with the latest virtualisation technologies, products, news and features.
RSS Feeds

Security vendor Akonix Systems has tallied 170 instant-messaging threats so far this year, the company said this month, a 73 percent increase over the same period last year.

The figures show a sharp rise in instant messaging-based attacks, according to Akonix, with 20 threats detected in May alone, and an average so far this year of more than one new threat per day.

The most common new threat was Culler, followed by MSNDiablo and Hakaglan, with one variant each, Akonix said. The company also counted 11 threats in May circulating on P2P networks.

The attacks rely on social engineering to spread malicious code, typically sending a link that appears to come from an IM contact.

Because of the informal nature of IM, such tricks are more likely to succeed than they would in an email message, where users are more cautious, Akonix said.

The company said attackers are increasingly targeting instant messaging as a way to get around the email-based security systems now installed in around 75 percent of companies. Akonix estimates that only 15 to 20 percent of companies have IM security in place.

Industry analysts have repeatedly warned of the dangers of allowing IM into the workplace, but corporate IM systems nevertheless have been slow to gain popularity.

Another growing trend is the use of non-English text in the attacks. For instance, Culler, the most widespread new attack in May, uses a Spanish-language string promising an animation of President Bush: "mira esta animacion de bush :P".

The downloaded file, bush.exe, makes some effort to appear to be a Flash animation, according to Akonix.

Market Place

Computerworld Member Login


 

Smart SOA World Tour

Discover how SOA can create smarter outcomes for your business.

Attend and learn:

  • How SOA is helping leading companies to become more agile
  • Where you should be applying SOA processes in your company
  • The top SOA implementation mistakes to avoid

Click here for more information.
Whitepaper

Email Archiving Implementation: Five Costly Mistakes to Avoid

Email Archiving is essential for managing email data, but is potentially expensive to implement. Read on to discover the five key areas where email archiving costs can be contained, including data capture methods and default configuration methods.

Enterprise IT Buyer's Guide
Find Technology Vendors Fast
 
Find vendors by name | Find by category
Sponsored Links