Paul Schneider's Blog
Articles|
Attackers Moving to Social Networks For Command and Control Blog: Paul Schneider's Blog | By: Paul Schneider | Released: Jul 26, 2010 08:51 AM
Attackers Moving to Social Networks For Command and Control: Bot herders and the crimeware gangs behind banker Trojans have had a lot of success in the last few years with using bulletproof hosting providers as their main base of operations. But more and more, they're finding that social networks such as Twitter and Facebook are offering even more fertile and convenient grounds for controlling their malicious creations. New research from RSA shows that the gangs behind some of the targeted banker Trojans that are such a huge problem in some countries...are moving quietly and quickly to using social networks as the command-and-control mechanisms for their malware. ... The attack...begins with the crimeware gang setting up one or more fake profiles on a given social network (RSA isn't naming the network on which it saw this specific attack). The attacker then posts a specific set of encrypted commands to the profile. When a new machine is infected with the banker Trojan, the malware then goes out and checks the profile for new commands. ... The...thing that makes [social] networks...attractive for bot herders and Trojan gangs is the ease with which they can set up new profiles. [Date: 19 July 2010; Source: http://threatpost.com/en_us/blogs/attackers-moving-social-networks-command-and-control-071910] No question that being on Facebook, Twitter and other sites are a huge benefit to associations. With the latest data from Marketing General stating that 75% of associations are on Facebook, 66% on Twitter and 59% on LinkedIn, these sites are embraced by the association industry. It is just an important reminder that not everyone out on these sites has the best intentions. Released: Jul 26, 2010 08:51 AM Keywords: Industry News | Social Media ![]() ![]() |













