Welcome to EXPOSURES ONLINE
Website Hosting and Domain Management
Website Hosting & Domain Management
 
  Create an account Home Downloads Gallery Videos Your Account  
Modules
· Home
· Contact
· FAQ
· Newsletter
· Photo Finish
· Racing
· Recommend Us
· Search
· Sections
· Stories Archive
· Surveys
· Topics
· Web Links
· Web Services
· Your Account

Random Topics

Local News
[ Local News ]

·Trouble brewing in NZ's lifestyle country
·Great South Rd gets great exposure
·Shear brilliance from Waikaretu wonder woman
·Country Extravaganza
·King Canadian champion through shear hard work
·NZ embarrasses Aust at WTO over apple access
·Police revisit Crewe murders
·Greens' vote spares farm dogs
·Telecom launches new rural mobile phone

Top25 Downloads
· 1: 1986 Cox Plate
· 2: 2000 W.S. Cox Plate Group 1 2040m
· 3: 2004 Australia Cup 2000m Group 1
· 4: 2000 Hong Kong Mile Group 1 1600m
· 5: 1986 Cox Plate (Group One)
· 6: 2002 W.S. Cox Plate WFA 2040m Group 1
· 7: Sunline Wallpaper (2)
· 8: Sunline Wallpaper (1)
· 9: 2004 WS Cox Plate
· 10: 2000 Doncaster Handicap 1600m Group 1
· 11: 1999 Hong Kong Cup
· 12: 1986 Australia Cup (Group One)
· 13: 2002 Doncaster Handicap 1600m Group 1 30/03/2002
· 14: Melbourne Cup
· 15: 2002 Mercedes Derby 2400m Group 1
· 16: 1999 AJC All Aged Stakes1600m Group 1
· 17: Yalumba Stakes
· 18: 2004 Golden Slipper Group 1 1200m
· 19: Reg Clapp Racing This Time
· 20: 2001 Dubai Duty Free (Group 2 4YO ) 8 Furlongs 25/03/2001
· 21: Sunlines Coming Home
· 22: Cox Plate
· 23: 1988 Air New Zealand Stakes (Group One)
· 24: Christian Cullen at Ellerslie (800 x 600)
· 25: 2000 Manikato Stakes 1200m Group 1 19/08/2000

Waikaretu RSS Feed

Greetings...you're infected
Posted on Monday, October 08 by Dave

Computing

The Storm Worm ranks as one of this year's most virulent and persistent viruses. After making a January debut, transported by e-mail, the virus was notable for the more than 50,000 variants that it subsequently spawned.

The Storm Worm has since continued unabated, most recently in the form of Web-based attacks. E-mails, socially engineered to look like electronic greeting cards and linked to a Web site containing malware, completely avoided traditional e-mail antivirus gateways. The Storm Worm's course change to the Web reflects a growing trend of malware Web-based attacks launched through e-mail.

The simple logic behind these e-mail-based blended threats is astoundingly effective: no attachment means no antivirus block. And when combined with a user-friendly invitation, it creates the opportunity for a high infection rate.

Blended threats easily lead people to Web sites where malware gets downloaded--often without user interaction or knowledge. The industry is just now realizing the severity of the problem,

Researchers at Google recently published a paper concluding that approximately 10 percent of reviewed URLs contained "drive-by downloads" of malware binaries (PDF) and many more that were flagged as suspicious.

Malware once lurked in the dark corners of the Internet, but recent hacks have shifted it to the places we all frequent.

Our research at Avinti examined URLs being "advertised" through e-mail by spammers, and we found similar results: 40 percent of all e-mails contain at least one URL, and of those, approximately 7 percent linked to a malware site.

Malware once lurked in the dark corners of the Internet, but recent hacks have shifted it to the places we all frequent. For evidence, look no further than this year's hacking of the Web site for Dolphin Stadium, home to Super Bowl. Or the Sydney Opera House. Even popular social-networking sites like MySpace and Facebook have been platforms for exploits. Yes, the sites we frequent daily and trust may be the biggest threats we face in the future and we may be lured there by an innocuous e-mail link to view a greeting, blog or video.

The new Web (2.0) is a fertile breeding ground for malware. Links, blog postings, shared applications and syndicated traffic are all backdoor opportunities for unknown exploits to invade legitimate sites.

At the same time, traditional tools such as Web filters, originally built for blocking objectionable content, struggle to catch these attacks as much as antivirus products do in keeping up with ever-changing e-mail-borne attacks. Spammers and hackers have automated the process so that these sites can be up and running and then down in a matter of hours long enough to carry out their attacks. Like the Storm Worm variants, these sites may be up, active and out of business before a bad URL or IP address is ever logged.

Given the frequency of hackers hijacking a legitimate Web site to insert malware, such as an attack spoofing the Better Business Bureau, blocking a domain or subdomain is becoming more problematic. What about linked pages? Are they blocked by association or if they serve up the malicious link? What if a single IP address hosts sites for both malware and non-malware sites? Without proper control, we may end up either blocking too much, or jeopardizing our trust in valid Web sites.

Fortunately, there is some light now that we have recognized the problem. Organizations like Stopbadware.org and Google are beginning to address ways to share information on malware sites. More vigilance by social sites and IT directors on patching and maintaining their Web sites is going to become more critical than ever.

In addition, there is a greater realization among vendors that since hackers and spammers don't look at e-mail, IM, or the Web independently, they can't afford to either. What we need now are proactive solutions that are as dynamic as the attacks they are trying to prevent; that can detect both known and unknown threats, whether on the Web, e-mail, or IM. Until then, beware the next time you get an e-mail greeting card.


 
Login
Nickname

Password

Create an Account now.

Related Links
· Google Search Engine
· Spam Cop
· ZDNet News
· More about Computing
· News by Dave


Most read story about Computing:
Crooks Target TradeMe


Options

Printer Friendly Page  Printer Friendly Page

Send to a Friend  Send to a Friend

 

Exposures & Dexter . Net . NZ

© 2002 by Exposures

Terms and Conditions