Akonix: IM Attacks So Far Increased 73% over 2006

執筆者
Brian Prince
Brian Prince
Published: May 30, 2007
Updated: Feb 2, 2021
2 minute read
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

Security researchers at San Diego-based Akonix Systems Inc., a provider of instant messaging security and compliance products, have uncovered 170 IM threats this year—an increase of 73 percent from the same time period in 2006.

The companys IM Security Center researchers tracked 20 malicious code attacks over IM networks during the month of May, Akonix officials said. Altogether, the number of IM threats found by the company this year represents an average of more than one IM attack a day.

It is not clear exactly why the number of IM attacks is increasing, but security researchers have their theories. Don Montgomery, vice president of marketing at Akonix, speculated the increase in the number of attacks reflects the increase in the use of instant messaging, particularly on corporate networks.

“IM is becoming favored over e-mail as a distribution vector for malware as a result of e-mail security now being employed by 75 percent or more of companies, while IM security is only employed by 15 to 20 percent of companies,” Montgomery said. “The hackers are simply turning to the open door.”

/zimages/1/28571.gifRead morehereabout an animated cursor flaw.

The new IM worms identified include Culler, Nirk, Posse, TermX and MSNDiablo. Culler featured four variants and was the most common. There were also 11 attacks this month on P2P networks, such as Kazaa and eDonkey.

What hasnt changed is how attackers are getting to IM users. The primary means of delivering malware remains social engineering, where users are goaded into downloading malicious code by clicking on a link. The less formal nature of IM also makes it better suited for socially engineered attacks, Montgomery said.

“People are more likely to click on an unknown URL in an IM that appears to be from a buddy that says “check out your picture on the Web!” than they are to click through e-mails with unknown Web addresses,” he said.

Security researchers at Akonix did note many more non-English text strings associated with the attacks than in the past.

For example, W32/Culler spreads through MSN Messenger by sending a link promising an animation of President Bush. It arrives as a file named bush.exe, which uses an icon to make it appear to be a Flash animation, Montgomery said. The message sent was “mira esta animacion de bush :P”

Advertisement

“These of course are less likely to be opened/clicked by American recipients, but are clearly targeting different regions of the world,” Montgomery said.

Check out eWEEK.coms Security Center for the latest security news, reviews and analysis. And for insights on security coverage around the Web, take a look at eWEEKs Security Watch blog.

Brian Prince

Brian Prince

Content Writer
eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。