Malicious code distributed through MySpace Malicious code distributed through MySpace - RSS feed from Security Park
(17/07/2007)

Several malicious codes are using MySpace pages to spread. In some cases, these pages have not been specifically created to spread malware, but have been modified to serve this malicious purpose by exploiting a vulnerability or design flaw without the legitimate user knowing.

Most of these malicious codes are Trojans, like the dangerous FireByPass.BA, which captures confidential information entered or saved by users on computers. This and other Trojans found in MySpace use rootkit techniques to hide their processes, which makes them even more dangerous.

This is not the first time that MySpace has been used to spread malicious codes. The first attack against social networks started in 2005, when a MySpace user created a worm (MySpace.A) that allowed them to add a million entries to their contact list. This was, however, a low-danger infection.

The first attempt at causing a serious infection through MySpace took place towards the end of 2006, when a worm was created that used the network’s user profiles to spread. The worm infected everybody that visited a certain user profile.

Around that time, an advertising banner in MySpace exploited a Windows Metafile vulnerability to infect over a million users with spyware. Some days later, a worm was discovered at MySpace that inserted Java script in user profiles. When somebody tried to visit some of those profiles, they were redirected to a web page that blamed the U.S. government for the 9-11 attacks.

However, the most serious case took place at the end of 2006. The attackers exploited a feature of Apple’s QuickTime player to spread a worm in files that tried to pass themselves off as movies. Users that tried to view them became infected. In addition, the worm modified profile headers (which display the groups tab, forums tab, etc.) so that all of them pointed to a fraudulent website. This was a spoofed version of MySpace’s official site for stealing user names and passwords. This worm was also designed to send spam massively to all the contacts of infected users.

"Cyber-crooks want to distribute their creations to as many users as possible. That’s why they use networks that attract millions of Internet users around the world to spread their creations," explained Luis Corrons, Technical Director of PandaLabs.

Related topics:  Computer and PC Security   Hacking and intrusion prevention   Internet and Web security   Virus, Worm, Email security, spyware and malware 


print versionPrint version | email this to a friendEmail to a friend | related articlesRelated articles


Data breaches: Trends, costs and best practices gives you all the latest information on securing personal and corporate data, key recommendations for immediate action to improve data security, and how to respond to data breaches.


Other Security news and resources


Security News Suppliers Directory Jobs forum Classifieds Knowledge base White papers Research library Security books Special reports Security interviews Security companies Security events Security links Security market

Product channels

Access Control Biometrics CCTV Intruder Alarms IT Security Manned Guarding Perimeter Protection Physical Security Remote Monitoring Security Services Fire, Health & Safety Other Security Products

IT Security white papers and research library

Access Control  Authentication  Data Management  Data Security  Digital Signatures  Email Security  Identity Management  Internet Security  Intrusion Prevention  Network Security  Remote access security  Security Management  Security Policies  Security Software  Security Threats  Virus Detection Software  Virus Protection  VPN  Vulnerability Assessment  Wireless Security 

Security books, guides, standards and toolkits

RFID and Smart Cards books, guides and reference documents  Biometric books, guides and reference documents  CCTV books, guides and reference documents  Intruder alarms and intrusion detection systems books, guides and reference documents  Monitoring and surveillance books, guides and reference documents  IT Governance, ISO 27001 ISO 17799 and BS 7799 toolkits  Fire, Health & Safety books, guides and reference documents





Ensure that you conduct an effective information security risk assessment that is in line with ISO 27001 by purchasing vsRisk™ Risk Assessment Tool

Need a
Security reference book?
Find it on Amazon
Security books

Article search

Directory search


add your company
Google

ISO 18028 (Network Security Management)
Home | About | Contact | Submit article | Advertise | SUMMER PROMOTION | Newsletter | RSS | Search