Social Networks Top Hackers’ Favorites

執筆者
Brian Prince
Brian Prince
Published: Aug 18, 2009
Updated: Feb 2, 2021
2 minute read
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

It should not come as big surprise that hackers are more and more interested in social networks.

Just how much however is underscored by Breach Security’s Web Hacking Incidents Database 2009 Bi-Annual Report. According to their research, social networks like Facebook and Twitter were the most targeted vertical market in the first half of 2009, accounting for 19 percent of all hacking incidents.

Last week, Arbor Networks’ Jose Nazario discovered an attempt by attackers to use Twitter as a command and control to send instructions to infected computers. Since then, Symantec and others have come out with additional research shedding light on the situation.

According to Symantec, obfuscated Twitter messages are being used to send out new download links to malware Symantec calls Downloader.Sninfs, which in turn downloads a password-stealing Trojan known as Infostealer.Bancos.

“Our investigation and analysis of Downloader.Sninfs is ongoing but has so far shown that it reads a specific Twitter.com RSS feed only once,” blogged Symantec researcher Peter Coogan. “The RSS feed is simply a text file similar to other RSS feeds found on other Internet sites. The RSS text file contains information as to where Downloader.Sninfs can find additional threats to download onto the compromised system. In this way the RSS file acts like a config file for the malware.”

Beyond this incident, the notorious Koobface worm continues to enjoy success, and numerous malware campaigns targeting Facebook and other sites have made headlines in the past several months. Part of this is likely due to their success rate. Kaspersky Lab reported earlier this year that malware attacks over social networks were 10 times more effective than those launched over e-mail.

Taken together, the situation underscores the fact that attackers are going to follow users — as social networks continue to grow, so will their footprint on the threat landscape.

“The dramatic rise in attacks against social networking sites this year can primarily be attributed to attacks on popular new technologies like Twitter, where cross-site scripting and CSRF worms were unleashed,” Ryan Barnett, director of application security research for Breach Security, said in a statement. “Looking back at 2008, a notable election year, government-related organizations were the top-ranked attack victims and have now dropped to number three. The WHID report demonstrates that hackers can be fickle, following popular culture and trends to achieve the most visible effect for their efforts, which means that companies must be vigilant in implementing web application systems and monitoring application activity.”

Brian Prince

Brian Prince

Content Writer
eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。