Follow Us
RSS FeedSecurity

Facebook malware threatens your company network

Facebook malware threatens your company network

Hackers use trust in social network to attack business

Reports are circulating of yet another malware scam targeting Facebook users. The sheer size of the social network, combined with the inherent trust users place in messages from friends and family through Facebook make it a prime target for malware attacks to exploit.

The security analysts at AppRiver report that they are detecting a new malware campaign targeting Facebook. The campaign tricks unsuspecting users into thinking the message is coming from Facebook. The email appears to be an official Facebook notification indicating the reader can reconnect with friends, but the message is full of malicious links. Clicking on one of the malicious links will then redirect them through several different websites and load malware onto their computer through a hidden iframe exploit.


Related Articles
Wikileaks

Wikileaks

Wikileaks - fearless whistleblowers or irresponsible nuisances? Keep up to date with the latest developments. Read more


So, what's the big deal? Is this Facebook malware attack any different than every other malicious attempt to exploit social networks? An AppRiver spokesperson explains "What's unique here is that this virus campaign is also hitting smartphone devices (specifically BlackBerrys at this time) that have the Facebook application/icon installed. In other words, it's not just utilising email, but also triggering the application itself to make the campaign more believable."

The AppRiver spokesperson added "Since the actual payload is not pushed down until after the infection occurs, this is a great opportunity for scammers to test the lengths of their campaign. For instance, if scammers can hook applications in this fashion, it may be an indicator of what's to come in the future: an easier remote mobile device security breach. If successful, scammers may one day be able to send payloads to attack the mobile device causing a potentially severe data breach."

AppRiver blocked approximately 15,000 messages, or 133 per minute, related to this attack. As of this morning, though, there appears to be a lull in activity.

Dave Marcus, Director of McAfee Labs Security Research Communications, offers this insight. "Malware and scams that target Facebook users are a very common occurrence in today's threat landscape. With upwards of 500 million users, cybercriminals will continue to target Facebook users and abuse the Facebook brand itself as the social engineering lure in their various criminal schemes."

Marcus advises "Today's users need to understand the risks associated with surfing the internet in an unprotected or uneducated manner. Today's Internet users need to look at safe searching technologies, comprehensive security suites that are configured correctly and updated daily, perform regular daily scans of their computers and even develop a healthy skepticism of what winds up in their various inboxes."

Organisations could just implement policies prohibiting the use of social networking in the workplace, or block access to social network sites from the network. For companies that allow users to connect to social network sites from work, though, IT admins need to ensure that users are educated about the nature of potential threats, and condition them to exercise caution and view incoming communications with a degree of suspicion, even if they appear to be from a trusted source.

Send to a friend

Email this article to a friend or colleague:


PLEASE NOTE: Your name is used only to let the recipient know who sent the story, and in case of transmission error. Both your name and the recipient's name and address will not be used for any other purpose.

Does remote working affect how often you print?

Question of the day!

Does remote working affect how often you print?


% of Computerworld UK readers agree with you


Yes
TBC
No
TBC

What steps are you taking to address how/when/what you print?


123 characters remaining

Follow the conversation at @Think_Print


ComputerworldUK Knowledge Vault Hover to expand
Advertisement
X ComputerworldUK Share
Newsletter
Open
* *