Security Information

Blogs as Safe Haven for Cybercriminals?


To blog or not to blog? Well, why not? Lots of people like either to write or to read blogs -- sometimes both. The much-quoted survey by the Pew Internet & American Life Project, says 27 percent read blogs. 38 percent of all Internet users at least know what a blog is. The survey was made in November 2004 and estimated that 32 million Americans to be blog readers by the end of 2004. So now there must be much more blog readers and writers.

But there has recently been bad news that spoiled bloggers' mood. The security firm Websense found that blogs are "being used as a safe haven by hackers for storing and distributing malicious code, including identity-stealing keyloggers." Since January, Websense Security Labs has discovered hundreds of blogs set by hackers.

There have been scores of articles on this topic since last week. See, for example, the article by Gregg Keizer "Hackers Use Blogs To Spread Worms, Keyloggers" April 13, 2005 at http://informationweek.com/story/showArticle.jhtml?articleID=160702505

The general idea of all these articles is the same: hackers turn to blogs. Blogs are suitable for them: there are large amounts of free storage space, no identity authentication is required to post, and there is no scan of posted files for viruses, worms, or spyware in most blog hosting services.

Such blogs experts from Websense Security Labs call "toxic". In its press-release "Toxic Blogs Distribute Malcode and Keyloggers" http://ww2.websense.com/global/en/PressRoom/PressReleases/PressReleaseDetail/index.php?Release=050412889 they explained how some malevolent individuals use blogs for their own gain.

In some cases cybercriminals create a blog on a legitimate host site and post viral code or keylogging software at the page. Then they attract traffic to the toxic blog by sending a link through spam or spim (the analog of spam for instant messaging (IM). So a good advice never follow links in spam is worth remembering.

In other cases, a blog can be used only as a storage mechanism which keeps malicious code (for example, updates) for Trojan horses that have already been hidden on the users' computers.

"To read or not to read blogs -- that's a question?" Of course to read them, to write them -- blogs are already a part of our culture. But be careful.

While PC users can do little to stay aside of toxic blogs except not following links in spam and spim messages, leading to these blogs. If a blog is used as a storage for malicious code, users can do nothing at all about it.

It is up for blogging tool operators to add security, such as anti-virus and anti-spyware protection, to blog hosting service. They can also limit the types of files that can be stored. And it is high time they made their service more secure, because literally millions of Americans might be in danger of picking malicious code, such as a virus, worm or Trojan horse, simply by reading a blog.

Alexandra Gamanenko currently works at Raytown Corporation, LLC -- an independent software developing which created a technology capable of disabling the very processes of information capturing -- keylogging, screenshoting, etc. It makes the company's anti-keylogging software a solution against information-stealing programs and modules.

Learn more -- visit the company's website http://www.anti-keyloggers.com


MORE RESOURCES:

Washington Post

Obama Names Team to Face A Complex Security Picture
Washington Post, United States - 19 hours ago
President-elect Barack Obama announces his national security team, including naming Sen. Hillary Rodham Clinton as secretary of state. ...
Video: Obama Picks Gates, Clinton for Foreign Policy AssociatedPress
'Special Report' Panel on Obama's National Security Team; Mumbai ... FOXNews
Obama stresses diplomacy with new national security team Los Angeles Times
Austin American-Statesman - NewsOK.com
all 3,435 news articles


ABC News

Energy, Security and the New Administration
New York Times, United States - 15 hours ago
“President-elect Barack Obama’s choice for national security adviser, retired Marine Gen. Jim Jones, is giving hope to energy companies that backed ...
Obama names national security team including Clinton, Gates Dallas Morning News
Obama Turns to Marine Jones to Harness Veteran Security Team Bloomberg
Obama Selects Gen. James Jones for National Security Adviser ABC News
Voice of America - CNN
all 657 news articles


ABC News

Napolitano tasked with Homeland Security overhaul
USA Today - Dec 1, 2008
At Homeland Security, Napolitano, 51, will be responsible for securing the nation's borders, ports and airports against terrorists, responding to natural ...
Napolitano Poised for Top Homeland Security Post Government Technology
Obama chooses Ariz. gov. for Homeland Security FOXNews
Nominee Would Lead ID Program She Opposed New York Times
SC Magazine US - Reuters
all 1,053 news articles


PR-Inside.com (Pressemitteilung)

A National Security Team That Looks Like the Nation
Washington Post, United States - Dec 1, 2008
But the six folks nominated mirror the national security slates of the last three presidents in one key demographic: age. Obama appointed a record number of ...
Choice for UN Backs Action Against Mass Killings New York Times
Obama Picks Muscular National Security Team, Including Former ... U.S. News & World Report
Obama's National Security Team Announced Gather.com
USA Today - National Journal
all 276 news articles


WELT ONLINE

International hotels seek mix between hospitality, security
USA Today - 22 hours ago
Security experts say the standard safety measures in place at most upscale hotels in international business centers could not have entirely prevented last ...
Video: Indian commandos storm hotels in Mumbai RussiaToday
Lessons from Mumbai Philippine Star
International hotels draw elites and terror threat The Associated Press
Hindu - Times of India
all 2,283 news articles


Atheists want God out of Ky. homeland security
The Associated Press - 9 hours ago
(AP) — A group of atheists filed a lawsuit Tuesday seeking to remove part of a state anti-terrorism law that requires Kentucky's Office of Homeland Security ...
Kentucky security law violates Constitution, says Reform leader Jewish Telegraphic Agency
Atheists sue to get God out of homeland security WVLT
Atheists sue to take God out of Kentucky terrorism law Columbus Ledger-Enquirer
The Seeker - Chicago Tribune Blog
all 95 news articles


BBC News

UN Security Council Extends Anti-Piracy Measures off Somali Coast
Voice of America - 10 hours ago
By Margaret Besheer The UN Security Council has unanimously adopted a resolution allowing member states to continue fighting pirates off the coast of ...
UN Security Council supports anti-piracy mission Deutsche Welle
UN extends powers against Somali piracy for 1 year The Associated Press
UN extends anti-piracy measures BBC News
China Daily - AFP
all 174 news articles


PinkNews.co.uk

Obama’s National Security Team Announcement
New York Times, United States - Dec 1, 2008
The following is the prepared text of President-Elect Barack Obama’s National Security Team announcement as provided by the Obama team. ...
Obama Names National Security Team Washington Post
Obama names national security team Boston Globe
Hoyer Comments on President-Elect Obama's National Security Team Southern Maryland Online
MSNBC - New York Times
all 88 news articles


Infonetics Research: Network security market up 4%; strong drivers ...
MarketWatch - 10 hours ago
Infonetics' latest report, Network Security Appliances and Software, shows that all world regions -- North America, Asia Pacific, EMEA, ...


Praise For Obama's National Security Team
U.S. News & World Report, DC - 17 hours ago
President-elect Barack Obama's appointees to top national security posts are receiving overwhelmingly positive reviews from media commentators and ...
Rove: Obama security team represents continuity The Associated Press
Anticipated and Unanticipated President-elect Moves Town Hall
all 93 news articles

Security - Google News

home | site map
© 2006