Advertisement
Promo

Security threats Toolkit

Top executives face personal malware threat

Tom Espiner ZDNet.co.uk

Published: 02 Jul 2007 12:36 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Hackers have targeted 500 key business executives in what is believed to be the first mass-targeted malware attack, according to security vendor MessageLabs.

Targeted attacks aim to bypass security measures by individually addressing emails, which often contain zero-day exploits.

On 26 June, MessageLabs intercepted more than 500 individual email attacks targeted at individuals in senior management positions in a variety of organisations around the world. Normally MessageLabs sees approximately 10 targeted attacks per 200 million emails per day, said Mark Sunner, MessageLabs' chief security analyst.

Sentry Posts Blog

Sentry Posts Blog
Guarding the network

What you need to know — and what you and your peers have to tell us — about security management in our new community group blog

Read more +

The malicious emails contain the name and job title of the victim in the subject line. The vertical sector most targeted was banking and finance, with chief investment officers being targeted in 30 percent of the attacks, according to Sunner. However, other verticals were also targeted. Eleven percent of the intended victims were chief executive officers, while six percent were chief finance officers.

Sunner said that the executives being targeted were perhaps "not that tech savvy". In the attacks, an executable file was embedded in a Word document. If the victim opened the document and clicked on a link, the file would have run a data-stealing Trojan that relied on creating buffer overflow conditions in Office documents.

MessageLabs said it did not know who had perpetrated the attack. "It's a certainty that some executives were compromised," said Sunner.

The intended victims' PAs, spouses and relatives were also targeted by name, in attempt to infect other computers related to the victim. The intent was to indirectly gain access to confidential correspondence and intellectual property relating to the target, said MessageLabs.

Sunner said he suspected the hackers harvested the information using search and social-networking sites. "Someone somewhere has really done their homework," said Sunner.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
4 out of 4 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:




Video icon

Video

Sentry Posts Blog

This Crap Site

How utterly stupid - I am ranked #40 in the top 100 - as a member of this site..... I mean HOW utterly stupid.... I have done sweet FA, I have only rejoined this site after a 3 or... More

Post a comment

Microsoft Security Update: November Pa...

Apologies for this late update to our core Patch Tuesday update. Here is a summary of the update .... The November Patch Tuesday update from Microsoft follows the largest patch and... More

Post a comment

DNA details of innocent will be kept f...

The government has announced that it plans to keep innocent people's DNA details for up to six years. In response to a consultation it launched last December, the government said... More

4 comments


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters