
For those of you that remember a fellow called
Samy, yep that small code that introduced us with how Myspace was “relevant” , that it actually managed to attract an annoying kind of crowd ( HACKERS !!! )
It was just a matter of time, till these platforms (A.k.a - giant social networks) attract more and more bad, annoying and exploitative kind of hostile “users” (Not sure that they can even qualify as “User”s).
At the end of 07′ some security research companies jumped on the wagon and
indicated that 08′ would probably be in the sign of social networks attacks, today we got hit by another one !
Kaspersky Lab, a leading developer of secure content management systems, has detected two variants of a new worm, Net-Worm.Win32.Koobface.a. and Net-Worm.Win32.Koobface.b, which attack MySpace and Facebook respectively. As part of their malicious payload, the worms transform victim machines into zombie computers to form botnets.
Even though the worms are currently only infecting MySpace and Facebook users, Kaspersky Lab analysts are warning users that the worms are designed to upload additional malicious modules with other functionality via the Internet. It is highly probable that victim machines will not only be used for spreading links via these social networking sites, but the botnets will also be used for other malicious purposes.
Net-Worm.Win32.Koobface.a spreads when a user accesses his/her MySpace account. The worm creates a range of commentaries to friends’ accounts. Net-Worm.Win32.Koobface.b, which targets Facebook users, creates spam messages and sends them to the infected users’ friends via the Facebook site. The messages and comments include texts such as Paris Hilton Tosses Dwarf On The Street; Examiners Caught Downloading Grades From The Internet; Hello; You must see it!!! LOL. My friend catched you on hidden cam; Is it really celebrity? Funny Moments and many others.
Messages and comments on MySpace and Facebook include links to http://youtube.[skip].pl. If the user clicks on this link, s/he is redirected to http://youtube.[skip].ru, a site which purportedly contains a video clip. If the user tries to watch it, a message appears saying that s/he needs the latest version of Flash Player in order to watch the clip. However, instead of the latest version of Flash Player, a file called codesetup.exe is downloaded to the victim machine; this file is also a network worm. The result is that users who have come to the site via Facebook will have the MySpace worm downloaded to their machines, and vice versa.
** taken from DarkNet, more
here
With new companies out there Like
Delver,
sightix, and much more… there is a strong indication that our online presence, discussion and decision making would be strongly influenced by our friends, “closed” community and people we trust …. But times like these make us wonder do we really trust them ?
The Usage of Bots and malicious content for commercial exploitation (A.k.a Spam) is just an instance, this kind of tool in the hands of the wrong hands could drive trends and influence crowds
So what is the difference between a malicious wall-to-wall comment coming from a friend on your facebook profile to an annoying email you just got with a pharmaceutical offering from your peer at work, not much i guess, it just mean that both got abused by a hostile 3rd party of some kind.
But it is a strong validation that our messaging platforms would share the same challenges as we progress into this new evolving realm of web 2.0, social networks and collaboration.
Seems like that the icebergs we knew are about to melt as we embrace our new world, as we embrace global “Worming” ….
Filed under: Uncategorized by wolkomir
No Comments »