ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

MessageLabs: Watch out for audio and video spam

Tom Espiner ZDNet.co.uk

Published: 30 Oct 2007 15:41 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Email security company MessageLabs has warned that spammers are already modifying their tactics when it comes to the emerging trend of using audio rather than text attachments in unsolicited mail.

In a statement, MessageLabs claimed that, following the first spam campaign involving audio files on 17 October, which attempted to control the value of stock for "nefarious reasons", spammers are now moving on from simply attaching audio to mail to linking through to content hosted on multimedia sites such as YouTube.

"This recent trend proves that spamming techniques are becoming more innovative," said MessageLabs in its statement. "As image spam shifts from email attachments to images on free image-hosting sites, [we] believe that it is only a matter of time before the spammers apply the same approach to audio spam and upload the message to free multimedia-hosting sites, such as YouTube, Google Video, [and] MySpace."

On 17 October spammers used attached MP3 music files to try to "sneak messages past spam filters", said MessageLabs. The spam run of 15 million emails lasted 36 hours and used Storm worm-infected computers for the purposes of dissemination, MessageLabs said.

The MP3 file names were music-related, including files called "beatles.mp3", "britney.mp3" and "elvis.mp3". They contained a poor-quality, 25-second voice track promoting a stock offering from Exit Only Incorporated for its Text4Cars.com website. The spam did not contain any detected malicious code.

The voice was synthesised using a low compression rate of 16KHz to keep the overall file size small, at around 50KB, in order to avoid detection. Paul Ducklin, Sophos's head of technology for Asia-Pacific, told ZDNet Australia that the voice sounded like a female version of "Marvin the Paranoid Android", a character from The Hitchhiker's Guide to the Galaxy.

Sentry Posts Blog

Sentry Posts Blog
Guarding the network

What you need to know — and what you and your peers have to tell us — about security management in our new community group blog

Read more +

According to MessageLabs, spammers have recently been experimenting with different types of file attachments, including text, image, HTML, ZIP, RAR, RTF and PDF file formats.

"The MP3 spam tactic is a natural progression for cybercriminals following runs of image, PDF and Excel junk mail earlier this year," said Mark Sunner, chief security analyst for MessageLabs. "As users become wary of certain file attachments, scammers will move on to their next tactic."

Sunner also predicted that video spam and PowerPoint presentations would become "the next format du jour".

Earlier this month, Sophos reported that spammers were exploiting YouTube's "invite your friends" function to send email spam containing a variant of the Storm worm.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
4 out of 4 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:








Related Jobs

Business Analyst - Stock Lending

The candidate must have Corporate Actions and Stock Lending experience. My client is a financial software house based in London which provides an ...

Test Manager/ Tester - Stock lending

The ideal candidate will have done testing on either Stock lending / security finance or repo projects. I am looking for a Test Manager / Tester to ...

LINUX HOSTING ENGINEER (LINUX/APACHE/BIND) 40+ - nr.WATFORD

A Linux Hosting Engineer with a passion for technology and experience in open source technologies and system administration is required to join a one ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

The Google Apple Merger: Fantasy or Fu...

The Google Apple Merger: Fantasy or Future? Author: Eric Everson, Founder MyMobiSafe.com Market research suggests that Microsoft controls upwards of 90% of the respective computer-based... More

1 comment