Virus and phishing attacks soar in September

Second surge of email attacks targeted at executives

Written by Ian Williams

Security experts have warned that virus and phishing levels have increased significantly, reaching levels not seen since early 2006.

The MessageLabs Intelligence (PDF) report for September also highlights a second wave of increasingly sophisticated email attacks targeted at executive-level and senior management.

MessageLabs estimates that, on average, there is now a virus threat incorporated within every 48 emails.

Cyber-criminals are steering away from using the more obvious attachment method of distribution, and favouring the use of links to malicious websites hosting malware code.

This technique, which increased in popularity by approximately 15 per cent this quarter, allows cyber-criminals to use social engineering attacks such as e-cards.

Contrary to the recent findings in a report by F-Secure, MessageLabs has seen the volume of phishing threats surge this month with one in every 87 emails hosting a phishing attack.

The report attributes this to the increased availability of phishing kits, and new techniques such as 'rock' phishing which enables a single compromised computer within a botnet to host multiple phishing sites at the same time.

"The start of the new school year seemed to bring back an increase in old-school threats in high volumes," said Mark Sunner, chief security analyst at MessageLabs.

"With email more ubiquitous than the telephone, and one in 48 emails containing a virus, most people are unwittingly receiving more than one virus a day.

"As we enter the last quarter of 2007 and draw closer to the holiday season, the bad guys will be able to disguise their attacks through the increase in genuine well-wishing emails and the anticipated upsurge in online shopping."

MessageLabs also believes that the rise of comprised machines through aggressive botnet activity will further increase spam levels.

The September threat figures have also shown that highly targeted methods are still rife.

MessageLabs saw more than 1,100 senior management executives targeted in an attack on 12 September, thought to be by the same perpetrators of a similar assault on 26 June.

The sophisticated emails purport to be from a recruitment company and use a Microsoft error message to persuade the victims to click on the RTF attachment.

The RTF file contains an executable which drops two files onto the computer which in turn will be used to pass sensitive information back to the attacker.

Paul Wood, a senior analyst at MessageLabs, told vnunet.com that the increase in highly targeted attacks was "particularly worrying as the methods used and the small scale of the attacks made them very difficult to detect".

He added that alternative educational tools such as the Anti-Phishing Phil game designed by a team at Carnegie Mellon University are a great idea as technology, no matter how advanced, will only ever provide some level of protection.

"Users need to have a level of education, support and knowledge to effectively deal with security," said Wood.

See also:

reader comments

related articles

ISPs urged to take control of security

F-Secure boss lays out future of internet security 26 Sep 2007

 

Cyber-criminals turn to smaller botnets

Size counts in online crime 27 Sep 2007

Carnegie Mellon floats anti-phishing game

Game on for Anti-Phishing Phil 26 Sep 2007

Security experts launch malware 'killer'

Threat Expert features detailed threat encyclopaedia 24 Sep 2007

P2P data leak hits ABN Amro

Information on 5,000 customers found on file-sharing app 24 Sep 2007

Zero-day flaw hits Windows XP

Vulnerabilities in MFC42 and MFC71 could allow remote code execution 19 Sep 2007

Conference calls for global cyber-crime police

Indian body demands more cooperation to fight electronic crime 14 Sep 2007

Spam emails rocketing

Spammers and cybercriminals using new techniques to bypass filters 03 Jun 2008

Spammers becoming more business savvy

Cyber-crooks capatilising on news in a more commercial way 30 Jan 2008

Spammers exploit Google Docs

Cyber-crooks turn to mainstream hosted services 03 Jun 2008

latest news

Ironport slams partner margin erosion claim

UK partner manager hails content security vendor’s acquisition by Cisco as a boon for UK resellers 09 Jan 2009

Sun sets higher bar with telemarketing budget

Vendor plans to turn its popularity among the open-source community into a revenue stream 09 Jan 2009

Marathon signs up 14 resellers and counting

Vendor is sprinting full steam ahead in a race to widen its channel reach 09 Jan 2009

poll

Challenging times ahead?

Challenging times ahead?

Do you think there will be a lot of channel job cuts in 2009?

Previous poll results

Paul Anderson, Trend Micro

Vendor Q&A: Paul Anderson, Trend Micro

During this Q&A session Paul Anderson, UK country manager of Trend Micro talks about the changing threat landscape and how Trend is working with resellers in 2009

Sara Yirrell and Rick Wallis

Vendor Q&A: Rick Wallis, NEC Computers

In this exclusive vendor Q&A, Rick Wallis, UK sales director at NEC Computers talks to CRN editor Sara Yirrell about his firm’s plans for the channel.

events

Channel Expo 2009 logo

Channel Expo 2009

The UK's top reseller exhibition will return to the NEC on 20 May 2009

CRN Fight Night 2009

The channel's only white-collar boxing event is back

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

White papers

Search white papers

Top categories

Primary Navigation