Beware malicious festive tweets
SECURITY| Dec. 7, 2010, 10:45 a.m.
Global IT vendor Panda Security warns that cyber-criminals are exploiting Twitter to spread malware in festive-themed messages.
Using methods akin to Black Hat SEO techniques, hackers are taking advantage of trending topics to position malware distribution campaigns.
Topics such as “
or even “
, are among the most popular subjects used by hackers to entice users.
Panda says thousands of tweets have been launched using festive-themed phrases, such as “ Nobody cares about Hanukkah” or “ Shocking video of the Grinch” , along with short URLs pointing to malicious websites.
Users who click the link will be taken to a page that infects systems with false codecs by exploiting a security hole in PDF files and tries to trick users into downloading a codec that is really a downloader Trojan, which in turn downloads more malware onto the compromised computer.
In addition to subjects related to Christmas, cyber-criminals are using other hot topics to spread their creations, including the Sundance festival, the AIDS campaign and the Carling Cup.
According to Jeremy Matthews, head of Panda’ s sub-Saharan operations, “ Social networks like Facebook and Twitter are becoming increasingly popular with hackers because of their ever-increasing number of users, and the ease at which they (the hackers) can post malicious links. That’ s why the number of clicks, and therefore infections, tends to be very high.”
Keep your computer safe this Christmas
With the increased risk over the Christmas period, Panda offers users a series of practical security tips for using social media:
1) Don't click suspicious links from non-trusted sources. This should apply to messages received through Twitter, through other social networks and even via email.
2) If you click on the links, check the target page. If you don't recognize it, close your browser.
3) Even if you don't see anything strange in the target page, but you are asked to download something, don't accept.
4) If you do download or install an executable file and the PC starts to launch messages or behaves strangely, there is probably malware on your computer. In this case, you should check your computer with a free online scanner such as ActiveScan, available at: www.activescan.com
5) As a general rule, make sure your computer is well protected to ensure that you are not exposed to the risk of infection from any malicious code. You can protect yourself with the new, free Panda Cloud Antivirus solution (www.cloudantivirus.com).
“ It is important to remember that hackers will take advantage of any big holiday or event, which is why it is important to remain extra vigilant during these times” , concludes Matthews.
For more information about Panda, visit http://www.pandasecurity.com/
MORE SECURITY NEWS
Ransomware: don’t pay the cybercriminalsESET offers tips on how keep PCs protected and avoid supporting cybercrime activities. Read More
Data breaches to cost $2.1 trillion by 2019New research suggests that the rapid digitisation of consumers’ lives and enterprise records will increase the cost of data breaches to $2.1 trillion globally by 2019. Read More
Betting the farm on untested techWhile a plethora of new payment solutions are coming to market, businesses should be cautious about moving to new solutions just for the sake of it. Read More
Mobile student ID system to authenticate over 2 million Nigerian studentsHID Global and Botosoft have built and delivered a system to help the West African Examinations Council (WAEC) register and authenticate Nigerian students. Read More
‘WD purple surveillance drives tackle security challenges’Western Digital has released one of its flagship products, purple surveillance storage drives (WD Purple), in Nigeria, saying the solution, designed for high definition (HD) surveillance, will help tackle insecurity. Read More
Malawi Veep to lead in cyber security meetingMalawi’s Vice President Saulos Chilima will next week preside over a sensitisation workshop on Cyber Security organised by the Malawi Communications Regulatory Authority (Macra) in collaboration with the Common Market for Eastern and Southern Africa (Comesa). Read More
Fighting the insider threatThere has been a growing focus on the threats posed by company employees who have access to critical information and either maliciously or carelessly leak that data, says Phoenix Software. Read More
Zambia to host Southern African Banking and ICT Summit 2015Efforts to curb increased incidences of cyber crime within Africa’s financial institutions, Government Agencies and private sector have received a boost with the planned Southern Africa Banking and ICT Summit set for April, 30th , 2015 at Intercontinental Hotel Lusaka Zambia. Read More
E-PPAN alerts bank customers on fraudstersWith many bank customers that use the electronic payments falling prey to fraudsters, Electronic Payments Providers Association of Nigeria (E-PPAN) has warned customers to be wary of how they release the details of their bank accounts to people. Read More
FEATURED STORYThe transformative power of affordable smartphones and unlimited data in Ghana
Smartphones are helping transform their lives of ordinary people in Ghana, Reports Nana Appiah Acquaye.
BEST READ NEWS
IN DEPTHNIMC infrastructure must be managed by credible people: NIMC chief
NIMC’s chief speaks to Kokumo Goodie about the role of the NIMC and his own legacy.