Feeds

Cybercrooks get faster, further and sneakier

Browser plug-ins flaws help hackers build botnets

Protecting against web application threats using SSL

Cybercrooks are becoming faster at utilising newly-discovered browser exploits. More than nine in ten of all browser-related exploits occurred within 24 hours of an official vulnerability disclosure, according to a survey by IBM's X-Force security division.

The cyber-threat survey, which looked closely at information security events that happened during the first half of 2008, also revealed that attacks targeting flaws in browser plug-ins are increasing in prevalence. In the first half of 2008, around 78 percent of web browser exploits targeted browser plug-in bugs.

X-Force operations manager Kris Lamb said that the "acceleration and proliferation" of bugs were key themes for the first half of 2008.

The IBM division reckons the increasing use of automated tools allows hackers to become faster off the mark in exploiting vulnerabilities. It criticised the practice of releasing "exploit code along with a security advisory" as playing into the hands of hackers. According to the study, vulnerabilities disclosed by researchers are twice as likely to have zero-day exploit code published.

The counter-argument to this, of course, is that security researchers publish proof of exploit code to establish that their concerns are valid. Publishing details about flaws encourages vendors to be more proactive about developing patches, benefitting the internet community as a whole over the long run.

More than half of the vulnerabilities tracked by X-Force in 1H 2008 involved web server applications. SQL injection vulnerabilities jumped from 25 per cent in 2007 to 41 per cent of all web server application flaws in the first half of 2008. Such vulnerabilities are often used by hackers to plant malicious code of vulnerable websites, a key component in so-called drive-by download attacks which are displacing poisoned email attachments as the preferred method to serve up malware.

In other developments, spammers have abandoned the use of image-based spam, file attachment spam and other such frippery by going back to basics. Nine in ten spam messages now contain little more beyond a few simple words and a URL. The report adds that Russia continues to be the biggest single originator of spam (the starting point of 11 per cent of the world’s junk). Turkey (eight per cent) and the US (7.1 per cent) also crop up as a frequent source of junk mail traffic.®

Reducing the cost and complexity of web vulnerability management

More from The Register

next story
Spies would need SUPER POWERS to tap undersea cables
Why mess with armoured 10kV cables when land-based, and legal, snoop tools are easier?
Early result from Scots indyref vote? NAW, Jimmy - it's a SCAM
Anyone claiming to know before tomorrow is telling porkies
TOR users become FBI's No.1 hacking target after legal power grab
Be afeared, me hearties, these scoundrels be spying our signals
Jihadi terrorists DIDN'T encrypt their comms 'cos of Snowden leaks
Intel bods' analysis concludes 'no significant change' after whistle was blown
Home Depot: 56 million bank cards pwned by malware in our tills
That's about 50 per cent bigger than the Target tills mega-hack
Hackers pop Brazil newspaper to root home routers
Step One: try default passwords. Step Two: Repeat Step One until success
NORKS ban Wi-Fi and satellite internet at embassies
Crackdown on tardy diplomatic sysadmins providing accidental unfiltered internet access
UK.gov lobs another fistful of change at SME infosec nightmares
Senior Lib Dem in 'trying to be relevant' shocker. It's only taxpayers' money, after all
Critical Adobe Reader and Acrobat patches FINALLY make it out
Eight vulns healed, including XSS and DoS paths
prev story

Whitepapers

Secure remote control for conventional and virtual desktops
Balancing user privacy and privileged access, in accordance with compliance frameworks and legislation. Evaluating any potential remote control choice.
WIN a very cool portable ZX Spectrum
Win a one-off portable Spectrum built by legendary hardware hacker Ben Heck
Intelligent flash storage arrays
Tegile Intelligent Storage Arrays with IntelliFlash helps IT boost storage utilization and effciency while delivering unmatched storage savings and performance.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Beginner's guide to SSL certificates
De-mystify the technology involved and give you the information you need to make the best decision when considering your online security options.