Advertisement
Promo

Security threats Toolkit

Twitter page used to spread malware

Robert Vamosi CNET News.com

Published: 09 Sep 2008 10:33 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Criminal hackers are using a Twitter page to target Orkut users, according to a security researcher.

In a blog, Chris Boyd, director of malware research for FaceTime, explained how a Twitter page is being used to lure victims. The Twitter page lists 17 followers, although each appears to be fraudulent. Boyd said Twitter had been notified.

The messages, written in Portuguese, attempt to get visitors to download a photo album. In order to view the album, users need to download a Flash update, which constitutes, in reality, the infection files. Boyd and his team have identified the infection as Orkon.

Once installed, the infected files perform various actions on the compromised desktop, such as attempting to gain Orkut account login information, or displaying a browser image of a man identifying himself as 'Trickster'.

Orkut has been targeted in the past, but Boyd said it was interesting that Twitter is being used as a vector. Boyd recommended that Twitter users should exercise caution if they see a Twitter page referencing an Orkut photo album, even if they don't use Orkut.

Credit: Twitter page used to pass malware from CNET News.com

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?
2 out of 2 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:





Video icon

Video

Sentry Posts Blog

Met will not reopen phone hack investi...

The Metropolitan Police will not reopen its investigation into alleged phone hacking by the News of the World. In a press statement delivered outside Scotland Yard on Thursday, Assistant... More

Post a comment

FUD over ChromeOS's security already?

It hasn't taken long for the security vendors to wake to the potential of Google's new ChromeOS. The potential that is, to create FUD – fear uncertainty and doubt. In a release today,... More

Post a comment

Feds take DDoS in their stride

The US Department of Homeland Security has said that a series of distributed denial-of-service attacks began on US government networks on 4 July. However, Amy Kudwa, deputy press... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters