All the latest UK technology news, reviews and analysis

Malware soars in first half of 2008

by Ian Williams

17 Jul 2008

Be the first to comment

  • Tweet this
Trojan horse
SQL injection attacks are by far the most popular form of website compromise

The amount of web-based malware blocked by IT security firm ScanSafe has jumped by 278 per cent in the first six months of this year.

The security firm found that the number of legitimate websites being compromised exploded in June, accounting for 66 per cent of all malware blocked.

"The mass compromise of websites poses particular challenges to corporate users," said Mary Landesman, senior security researcher at ScanSafe.

"The affected sites are typically known, legitimate and trusted sites with a business purpose. These are sites that users visit frequently, and the attacks are so stealthy and unobtrusive that most visitors don't know that they've been infected."

ScanSafe's latest Global Threat Report said that this widespread compromise of legitimate websites is largely the result of automated attack tools which became freely available in the last months of 2007.

The research found that SQL injection attacks are by far the most popular form of website compromise, outpacing others by 212 per cent and accounting for 76 per cent of all compromised sites.

When it comes to payloads, most of the compromises attempt to install password stealers and Trojans. This category of malware increased from four per cent of malware in January to 27 per cent in June.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

99%

0%

1%

0%

0%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

C++ GUI Developer - Financial Services - London

C++ GUI Developer - Financial Services - London Tech...

Java Web Developer, Greenfield Trading Application

This is an opportunity for a bright and talented Java...

C# Application Developer

C# Application Developer Location : Nottingham...

Senior HTML Developer

Experienced Web Developer Wanted for Financial Sector...

To send to more than one email address, simply separate each address with a comma.