Beware malicious festive tweets
SECURITYBy BiztechAfrica - Dec. 7, 2010, 10:45 a.m.
Global IT vendor Panda Security warns that cyber-criminals are exploiting Twitter to spread malware in festive-themed messages.
Using methods akin to Black Hat SEO techniques, hackers are taking advantage of trending topics to position malware distribution campaigns.
Topics such as “
or even “
, are among the most popular subjects used by hackers to entice users.
Panda says thousands of tweets have been launched using festive-themed phrases, such as “ Nobody cares about Hanukkah” or “ Shocking video of the Grinch” , along with short URLs pointing to malicious websites.
Users who click the link will be taken to a page that infects systems with false codecs by exploiting a security hole in PDF files and tries to trick users into downloading a codec that is really a downloader Trojan, which in turn downloads more malware onto the compromised computer.
In addition to subjects related to Christmas, cyber-criminals are using other hot topics to spread their creations, including the Sundance festival, the AIDS campaign and the Carling Cup.
According to Jeremy Matthews, head of Panda’ s sub-Saharan operations, “ Social networks like Facebook and Twitter are becoming increasingly popular with hackers because of their ever-increasing number of users, and the ease at which they (the hackers) can post malicious links. That’ s why the number of clicks, and therefore infections, tends to be very high.”
Keep your computer safe this Christmas
With the increased risk over the Christmas period, Panda offers users a series of practical security tips for using social media:
1) Don't click suspicious links from non-trusted sources. This should apply to messages received through Twitter, through other social networks and even via email.
2) If you click on the links, check the target page. If you don't recognize it, close your browser.
3) Even if you don't see anything strange in the target page, but you are asked to download something, don't accept.
4) If you do download or install an executable file and the PC starts to launch messages or behaves strangely, there is probably malware on your computer. In this case, you should check your computer with a free online scanner such as ActiveScan, available at: www.activescan.com
5) As a general rule, make sure your computer is well protected to ensure that you are not exposed to the risk of infection from any malicious code. You can protect yourself with the new, free Panda Cloud Antivirus solution (www.cloudantivirus.com).
“ It is important to remember that hackers will take advantage of any big holiday or event, which is why it is important to remain extra vigilant during these times” , concludes Matthews.
For more information about Panda, visit http://www.pandasecurity.com/
MORE SECURITY NEWS
Small businesses take big IT security risks: Kaspersky LabA new report concludes that a lack of budget remains the biggest barrier preventing small businesses from adopting more advanced IT and IT security measures. Read More
Fake apps invade Google PlayTrend Micro has released a new report indicating that Google Play has become infested with trojanised versions of apps. Read More
Stanbic advises holiday makersAs Botswana enters two days of holidays, Stanbic has urged people not to let their guard down on financial security. Read More
13,500 new phishing wildcards every monthKaspersky Lab has released data on how many new phishing wildcards it adds to the company’s anti-phishing database every month. Read More
Is Ghana's cybercrime out of control?Barely two weeks after Ghana’s Vice-President called on young people not to get involved in illegal internet activities, police arrested a 26-year-old undergraduate student for allegedly defrauding people through a bogus online organisation. Read More
Increase in targeted attacks against businessKaspersky Lab has found that targeted attacks are on the rise year-over-year, and also identified the business sectors most likely to be targeted. Read More
IT security: what’s in it for business?IT security spend is too often seen as a grudge purchase by business management. But the fact is – effectively securing enterprise networks is a business imperative, says Networks Unlimited. Read More
Egypt’s ISPs positioned to deliver DDoS protectionISPs in Egypt are uniquely positioned to offer DDoS protection services, says Arbor Networks. Read More
Special report released on the security of Ghana’s online banking platformsA local Ghanaian IT firm, Elcuto Consult, has released a vulnerability report on the security of online banking platforms in the Ghana. Read More
FEATURED STORYWidening ICT skills gap: Cause for concern
Nigeria's FDI gains could be eroded by the widening gap in indigenous skilled ICT manpower, writes Kokumo Goodie.
BEST READ NEWS
IN DEPTHKenya rolls out e-extension to improve agriculture
In a bid to curb the overwhelmed number of agricultural extension officers in Kenya, the ministry of agriculture is embracing technology with their introduction of E-Extension services, which are aimed at reaching out to over 7 million farmers annually.