Advertisement
Promo

Security threats Toolkit

Wikipedia used to spread malware

Tom Espiner ZDNet.co.uk

Published: 06 Nov 2006 12:42 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

A Wikipedia page has been used by hackers in an attempt to spread malicious code.

The entry for the W32.Blaster worm in the German version of the popular online encyclopaedia was altered to include false information about a new version of the Lovesan/MS Blaster worm, with links to a supposed fix. The fix was actually a piece of malicious code, according to antivirus vendor Sophos.

It's not clear how long the vandalised page was live for, but the editors of Wikipedia.de moved fast to delete the links once they were discovered.

However, because Wikipedia archives old versions of articles, the hackers were still able to send links to the archived entry through a mass-mailed email. This email purported to be from Wikipedia, and directed German users to the fraudulent Lovesan/MS Blaster entry. Because the emails linked to a legitimate website, they were able to bypass some anti-spam solutions, Sophos reported on Friday.

"The good news is that the authorities at Wikipedia quickly identified and edited the article on their site," said Graham Cluley, senior technology consultant at Sophos. "Unfortunately, however, a version of the page remained in the archive, allowing the hackers to send out spam and continue to direct visitors to the malicious code."

Wikipedia has confirmed that it has now permanently erased all versions of the page, according to German news site Heise Online.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
497 out of 596 people found this useful


Full Talkback thread

1 comment

  1. Anti-Social Networking welshtroll

Company/Topic Alerts

Create a new alert from the list below:




Video icon

Video

Sentry Posts Blog

DNA details of innocent will be kept f...

The government has announced that it plans to keep innocent people's DNA details for up to six years. In response to a consultation it launched last December, the government said... More

4 comments

Motorola Droid Drops Today: Happy Droi...

Motorola Droid Drops Today: Happy Droid Day America! Author: Eric Everson, Mobile Security Expert If you’re wondering what all of the buzz is about with words like Droid and Android... More

Post a comment

Mobile Security Profile: BlackBerry St...

Mobile Security Profile: BlackBerry Storm2 Author: Eric Everson BlackBerry handsets are a staple of office culture; from syncing calendars to sharing business-related data,... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters