Feeds

Web browsers on the front line of exploitation

It's war out there and the good guys ain't winning

Internet Security Threat Report 2014

Cybercriminals are stepping up their efforts to exploit vulnerabilities in web browsers to spread malware using drive-by download techniques.

Research by Google's anti-malware team on three million unique URLs on more than 180,000 websites automatically installed malware onto vulnerable PCs.

Hackers are increasingly trying to trick search sites into pointing surfers onto maliciously constructed sites. More than one per cent of all search results contain at least one result that points to malicious content, Google reports, adding that incidents of such attacks has grown steadily over recent months and continues to rise.

Google's team also reports that two per cent of malicious websites are delivering malware via tainted banner ads. Israeli security firm Finjan has also observed a rise in the tactic over recent months, noting that many malicious ads are served from legitimate websites.

A security report from IBM's X-Force division said cybercriminals are "stealing the identities and controlling the computers of consumers at a rate never before seen on the internet".

A complex underground economy has developed in services designed to make exploits more potent, involving tools to camouflage attacks on browsers.

"In 2006, only a small percentage of attackers employed camouflaging techniques, but this number soared to 80 per cent during the first half of 2007, and reached nearly 100 per cent by the end of the year. The X-Force believes the criminal element will contribute to a proliferation of attacks in 2008," IBM's security division said.

Miscreants are stealing online credentials from compromised machines or using them as a resource to send spam or mount hacking attacks, it adds. ®

Choosing a cloud hosting partner with confidence

Whitepapers

Why cloud backup?
Combining the latest advancements in disk-based backup with secure, integrated, cloud technologies offer organizations fast and assured recovery of their critical enterprise data.
Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
Designing and building an open ITOA architecture
Learn about a new IT data taxonomy defined by the four data sources of IT visibility: wire, machine, agent, and synthetic data sets.
How to determine if cloud backup is right for your servers
Two key factors, technical feasibility and TCO economics, that backup and IT operations managers should consider when assessing cloud backup.
Reg Reader Research: SaaS based Email and Office Productivity Tools
Read this Reg reader report which provides advice and guidance for SMBs towards the use of SaaS based email and Office productivity tools.