About RSS
Search for: in 

Windows Watch - an XP & Vista blog

Hackers increasingly using websites to spread malicious code
Hackers increasingly using websites to spread malicious code
R E L A T E D   C O N T E N T

Free email newsletters




Jargon Buster

ADVERTISEMENT

Hackers 'poison' search engine results

Users being directed to webpages containing malware

Iain Thomson, vnunet.com 09 Mar 2005
ADVERTISEMENT

Hackers are increasingly using websites rather than email attachments to spread malicious code, security watchers have warned.

In its six-monthly Web Security Trends Report, Websense noted that online criminals may be subverting search engines in a bid to direct unwitting internet users to web pages containing malware.

The report states that, as increasing numbers of companies are blocking email attachments at the firewall, hackers are embedding code in web pages. To try and persuade users to visit websites with the code installed they are trying to get them ranked highly in search engine results.

"[We] believe that an increase in 'poisoning' search results and DNS servers from the most popular search engines is possible," said report author Dan Hubbard, senior director at Websense.

"In this scenario, attackers ensure that their sites appear high in the return lists of queries. When users visit those sites, they are infected. For example, in a search for anti-spyware a list of sites infected with spyware might actually top the list."

The most common attacks from websites included trying to install Trojans or other malicious code, which accounted for two thirds of attacks, or trying to install a new home page and bookmarks on the owner's browser, which accounted for over a quarter of attacks.

In its conclusion the report predicted that these problems will only get worse. It warns that the hacking community is getting increasingly organised, capitalising on the amount of time it is taking to organise international law and governance.

See also:

IAC/InterActiveCorp to buy Ask Jeeves for $1.8bnIAC/InterActiveCorp plans a major push in local search  22 Mar 2005
Sector to enjoy 65 per cent boost this year, reports analyst  17 Mar 2005
Gone phishingPhishing is becoming ever more prevalent and ever more dangerous  29 Nov 2004
SecurityThe latest wave of cyber-crimes and acts of vandalism have demonstrated once again that many systems are still vulnerable to attack.  15 Apr 2004

All Enterprise Security Technology

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
Shinfield Park, Reading, United Kingdom | Foster Wheeler
Our UK-headquartered operations employ more than 6,000 people and we are seeking qualified and experienced IT professionals to work in our head office in Reading, Berkshire. We are currently seeking an Analyst Programmer to join ... more >
Solihull, United Kingdom | Enzen Global Limited
  Business Consultant - £35,000 - £40,000 - Solihull We are in need of a Business Consultant with strong analytical skills and a penchant for learning the domain knowledge of the Utilities sector (Gas industry ... more >
Welwyn Garden City, Hertfordshire, United Kingdom | Tesco.com
Database Developer - Welwyn Garden CityWho's behind the world's most successful online retailer? Just over 10 years ago we started Tesco.com (aka Dotcom). Today, we've an incredible 750,000 active customers and sales at just under ... more >
London, United Kingdom | BP
Technical Architect - £ Competitive - LondonAbout BP Our business is the exploration, production, refining, trading and distribution of energy. This is what we do, and we do it on a truly global scale. With ... more >
More job opportunities
ADVERTISEMENT