Advertisement
Promo

Security threats Toolkit

MSN hosting '10 percent of spammers' sites'

Munir Kotadia ZDNet Australia

Published: 26 Aug 2005 10:25 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Spammers have started using Microsoft's MSN Spaces blogging service to host malicious content used during spam and virus onslaughts, Internet security firm SurfControl said.

MSN Spaces, which was launched at the end of last year, is a free content sharing and hosting service. Users are required to sign up for a Microsoft passport, after which they can publish a blog and share files.

However, a relatively simple registration system means that spammers are exploiting the service by creating accounts used to deliver often illegal messages and malicious files to unsuspecting users, said Charles Heunemann, managing director of security firm SurfControl.

According to Heunemann, Yahoo's Web hosting service Geocities has been targeted by spammers for some time but MSN's validation system is making the service very popular.

SurfControl claims that 10 percent of all spam on the Internet is now linked to Microsoft's blog network.

"About three weeks ago 30 percent of the spam on the Internet was directing victims to Geocities sites advertising pharmaceuticals. Spammers have moved their content to [MSN Spaces] and from what we gather, the volume of spam attacking MSN sites is about 10 percent — but we think it will grow," said Heunemann.

However, Tim Hartman, senior systems engineer at Symantec, said that even if Microsoft improved the validation system, spammers would soon find a way around it.

"This isn't Microsoft's fault. Any introduction of new technology is at risk of being exploited or used for inappropriate purposes. Microsoft is not the only target. This is simply a method of keeping the content of the spam email to an absolute minimum — giving anti-spam companies very little to go on," said Hartman.

Hartman said the problem is a prime example of why simple blacklists are no longer effective: "Mail administrators should be aware that simple blacklists are no longer an appropriate countermeasure against spam — companies need to dig deep into the content of the email's body to make a call on whether something is spam or not."

Last month, Internet security firm Websense reported an "alarming" increase in the use of free Web space services for distributing malware. Dan Hubbard, Websense senior director of security and technology research, said that more malware was found on free hosting services during the first two weeks of July than in May and June combined.

Adam Biviano, senior systems engineer at Trend Micro Australia and New Zealand, said that although free Web hosting is becoming a popular tool for spammers and virus writers, it is still second choice to a zombie network — a loosely-coupled network of computers compromised by a virus or Trojan and covertly controlled by a third party.

"Botnets are always going to be a more lucrative avenue for [spammers and virus authors] — you are not going to get that mass control you get with a botnet," said Biviano, who argued that improved design could help reduce the exploitation of such services.

"There are definitely safety controls that can be put into place if you design the system accordingly," said Biviano.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
86 out of 183 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:









Video icon

Video

Sentry Posts Blog

Motorola Droid Drops Today: Happy Droi...

Motorola Droid Drops Today: Happy Droid Day America! Author: Eric Everson, Mobile Security Expert If you’re wondering what all of the buzz is about with words like Droid and Android... More

Post a comment

Mobile Security Profile: BlackBerry St...

Mobile Security Profile: BlackBerry Storm2 Author: Eric Everson BlackBerry handsets are a staple of office culture; from syncing calendars to sharing business-related data,... More

Post a comment

South Korea plans to fingerprint visit...

The South Korean authorities could fingerprint and photograph foreign visitors from 2012, the Korea Times reported on Tuesday. Barring diplomats and government operatives, all visitors... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters