IT Reseller Magazine
Article Search: Go To: Keyword 
 
   

FREE Subscription to IT Reseller Magazine






Internet Security
Internet control, email and network protection


Phishing on the Rise While Bots Slow
26 June 2007  

McAfee Avert Labs revisits 2007 Internet security forecast

McAfee Inc. has revisited its top ten predictions for security threats in 2007. Research from McAfee(R) Avert(R) Labs shows that threats including data-thieving phishing Web sites are on the rise, as expected. However, other pests such as remote-controlled bots show unpredicted signs of decrease. 

"As we approach the midyear mark, we wanted to check on our crystal ball gazing skills," said Jeff Green, senior vice president of McAfee Avert Labs and product development. "As we predicted, professional and organised criminals continue to drive a lot of the malicious activity on the Net. However, we were surprised that mobile malware and image spam tapered off." 

McAfee Avert Labs' top 10 security threats for 2007 and updates, in no particular order:

1. Password-stealing Web sites are on the rise

The number of phishing Web sites continues to rise exponentially. McAfee Avert Labs saw a 784 percent increase in phishing Web sites in the first quarter of 2007, with no slowdown in sight. These Web sites typically use fake sign-in pages for popular online services such as online auctions sites, online payment processors or online banking. Avert Labs anticipates increasing abuse of sites meant for online collaboration such as wiki pages and online applications. Even Internet archive sites will suffer.

2. Spam, particularly image spam, is on the rise

The total amount of spam caught in McAfee Avert Labs' traps has stayed fairly flat during the first part of the year. Image spam accounted for up to 65 percent of all spam at the beginning of 2007. It has actually dropped recently. Image spam is junk e-mail that includes an image instead of just text. It is used typically to advertise stocks, pharmaceuticals and degrees.

The image can triple the size of a single message. This causes a significant increase in the bandwidth used by spam messages. In November 2006, image spam accounted for up to 40 percent of the total spam received. It was less than ten percent a year earlier.

3. Video on the Web will become a target for hackers

Cybercriminals are riding the wave of online video available on social networking sites such as YouTube and MySpace. For example, the Web site of a French rock band was used to load a Trojan horse onto the computers of fans by exploiting a feature in QuickTime.

4. More mobile attacks

Surprisingly, mobile malware numbers are down with a dozen new examples of malicious software targeted at devices such as cell phones and smart phones for the first quarter of 2007.  

5. Adware will go mainstream

McAfee predicted that more legitimate companies would try advertising software to target consumers. However, because adware has a bad reputation, businesses are trying other ways to deliver their message on the Internet. BitTorrent, for example, is establishing a trend by offering free ad-supported video downloads as an alternative to paid downloads. 

6. Identity theft and data loss will continue to be a public issue

Unauthorised transfer of data is becoming more of a risk to enterprises including loss of customer data, employee personal information and intellectual property. This information can leak not only via the Web, but also through portable storage devices, printers and fax machines. More than 13.7 million records have been breached thus far this year, according to

Attrition.org, compared to 1.8 million records during the same period last year. 

7. Bots will increase

This prediction has been particularly tough to prove. A superficial read of statistics indicates that the use of bots has actually decreased lately. Bots are computer programs that give cybercrooks full control over PCs. Bot programs typically get installed surreptitiously on the PCs of unknowing computer users.

8. Parasitic malware is making a comeback

No doubt, parasitic malware is happening. Parasitic infectors are viruses that modify existing files on a disk, injecting code into the file where it resides. Philis and Fujacks continue to be active, and Avert Labs has classified more than 150 new variants of these two families this year. Other families including Sibil, Grum, and Expiro are also active.

9. Rootkits will increase on 32-bit platforms

About 200,000 computers have been infected with rootkits since the beginning of 2007, according to Avert Labs' virus tracking mechanism -- a 10 percent increase over the first quarter of 2006. You can check your system with McAfee's free Rootkit Detective. McAfee VirusScan(R) for Enterprise includes anti-rootkit technology.

10. Vulnerabilities continue to cause concern

There are more vulnerabilities to worry about than ever before. Microsoft issued 35 security bulletins, 25 of which were tagged critical and nine important, in the first six months of 2007.  During the same timeframe last year, Microsoft issued 32 bulletins, of which 19 were rated critical and 10 were considered important.

McAfee Avert Labs' Recommendation

To protect against the above threats and malicious programs, McAfee Avert Labs recommends enterprises and consumers stay updated with the latest Data

Definition Files (DATs) and install the latest patches.  Users should implement a multi-layered approach to detecting and blocking attacks.    

McAfee Avert Labs maintains one of the top-ranked security threat and research organisations in the world. Avert Labs employs researchers in seventeen cities and twelve countries around the world. McAfee Avert Labs combines world-class malicious code and anti-virus research with intrusion prevention and vulnerability research expertise.

 

About McAfee, Inc.

McAfee Inc., the leading dedicated security technology company, headquartered in Santa Clara, California, delivers proactive and proven solutions and services that secure systems and networks around the world. With its unmatched security expertise and commitment to innovation, McAfee empowers home users, businesses, the public sector, and service providers with the ability to block attacks, prevent disruptions, and continuously track and improve their security.


Other Internet Security News Security White Papers
Newly patented technology 'reaffirms AhnLab position as premier provider of online banking security'
AhnLab Inc., provider of integrated security solutions, has announced the issuance of Korea Intellectual Property Office (KIPO) Patent No. 10-2008-0007159: "Protection System and Method for Internet Websites."
Employee survey highlights dangers of insider threat
Whilst the media seems pre-occupied with the problems of cybercriminals and hackers causing problems for organisations from outside their network, a survey just published shows that 23 per cent of UK employees will take customer lists and other sensitive data when they leave their employer.
Trusteer uncovers Zeus botnet that plunders over 100,000 UK Internet user credentials
Trusteer, provider of secure browsing services, has uncovered a large Zeus version 2 botnet being used to conduct financial fraud in the UK which is operated and controlled from Eastern Europe.
Trusteer warns financial malware is attacking leading US banks using Visa and MasterCard
Trusteer has announced that the Zeus (Zbot) financial malware is targeting online banking customers of 15 leading US financial institutions by exploiting two trusted credit card security programs.
Barracuda spam & virus firewall offers broader outbound email content filtering capabilities
Barracuda Networks Inc., provider of security, storage and networking solutions, has announced new features to its flagship Barracuda Spam & Virus Firewall that enhance full inbound and outbound email scanning from the same appliance.
Over half of IT professionals are still leaving mobile security to chance
As threats to corporate data grow, and the cost of breaches increase, a survey of alleged security conscious professionals has remarkably revealed that over half of respondents (52%), who admit to carrying company data on a USB stick, do not encrypt it.

More >>

Understanding the value of outsourcing network security services
This white paper will examine the many new challenges that are facing today’s network owners, the pros and cons of using in-house resources and outsourcing for your network assessment and day-to-day monitoring, as well as guidelines to help select and maximize the value of outside resources.
GFI warns one anti-virus engine is not enough to protect your business
Although 99% of large British companies use anti-virus products, 43% were still infected by viruses (UK ISBS Survey 2006)
CONTENT FILTERING SOLUTIONS TECHNOLOGY REPORT APRIL 2006
Source: West Coast Labs/Netintelligence
The Trend of Threats Today: 2005 Annual Roundup and 2006 Forecast
Trend Micro
The report that follows is not only an account and analysis of 2005 threat
incidents. It also serves as a forecast of what the future holds in 2006 and
onwards. Through Trend Micro‘s extensive research and analysis of the 2005
incidents, this paper documents how threats evolved into the multi-purpose
threat regime – thus providing corporate and home users information on what
to do to ensure they remain protected against future threats. Download free white paper.
If you can't beat it, manage it
David Caughtry of Computerlinks looks at the challenges facing IT managers with the growing use of Instant Messaging in the workplace.
Are you becoming a one-stop security shop?
David Ellis, director of e-security at Unipalm discusses best practice security management and the evolution of protection technology.

More >>

advertisements


 



Related Articles


Let the news come to you!
Subscribe to our weekly newsletter and the digital edition of IT Reseller Magazine!

Email Address:   



© Copyright 2006, IBC - Interactive Business Communications

Help | Contact Us | PrivacyRSS Feeds | Site Map | Advertise
YourTechTV.com Only Technology Videos