All the latest UK technology news, reviews and analysis

Spammers hack legit sites to push meds

by Matt Chapman

02 Apr 2007

Be the first to comment

  • Tweet this
Spam
Users are being directed to hacked websites containing web pages owned by spammers

Website owners must properly secure their sites or face being hacked by spammers attempting to sell goods, according to warnings from one security company.

Spam campaigns that advertise internet pharmacies are directing users to web pages hosted on hacked websites, said Sophos

These pages automatically redirect surfers to a fake online store using the PHP scripting language.

"To the naked eye it looks like a bog standard spam message advertising medications," said Graham Cluley, senior technology consultant at Sophos.

"But it is actually pointing to a website owned by someone who is probably completely unaware that spammers have hacked into their site, and are using it to redirect visitors to an online pharmacy.

"Website owners have a duty to properly patch their sites against the latest vulnerabilities, or face being exploited by spammers."

Cluley added that more people are tricked into clicking on the link in the spam email because the web address is genuine.

And since most anti-spam products use information about a webpage to indicate whether the message is spam or not, emails linking to these hacked legitimate sites are less likely to be blocked by spam filters.

"Web surfers probably would not even notice they are being hopped across the net, because the intention of the spammers is not to confuse their potential purchasers but to try and slip past anti-spam filters," said Cluley.

A Canadian woman died earlier this year after buying pills from a bogus online pharmacy.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

30%

1%

10%

59%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

Buyer/Procurement Specialist

Buyer/Procurement Specialist x 8 £30,000 - £40...

Systems Analyst/Architect

Systems Analyst/Architect £30,000 - £40,000 + excellent...

Software Developer

Software Developer Up to £27,000 + excellent...

Software Engineer/Developer (C#, C++)

Software Engineer/Developer (C++) £25,000 - £40...

To send to more than one email address, simply separate each address with a comma.