All the latest UK technology news, reviews and analysis

Microsoft tackles Hotmail hackers and boosts password security

by Phil Muncaster

17 Jul 2011

Be the first to comment

  • Tweet this

Microsoft has rolled out new Hotmail features designed to make it easier to report suspected hacked accounts and encourage the use of stronger passwords.

The first is an additional tab on the drop down menu which allows users to choose 'Phishing scam' or 'My friend's been hacked' if they suspect that an account has been compromised and used to send spam.

Hotmail group programme manager Dick Craddock explained in a blog post that Microsoft's "compromise detection system" is always running in the background to detect unusual behaviour.

"When we detect bad behaviour from an account (like an account that suddenly starts sending spam), we mark that account as compromised. It's a bit like your credit card company putting a hold on your account when they detect suspicious activity," he said.

"When you report that your friend's account has been compromised, Hotmail takes that report and combines it with the other information from the compromise detection engine to determine if the account in question has in fact been hijacked."

Craddock also explained that the Hotmail team had built new functionality preventing people from choosing weak passwords when they sign up or change passwords on their account, making it harder for criminals to guess the log-in credentials.

The update was welcomed by security researchers.

"What will be interesting to see is how attackers respond to this move, especially if other providers copy Hotmail. It will force attackers to use a different approach to how they spam from a compromised account," said Trend Micro senior threat researcher Robert McArdle.

"Obviously this is a game of cat-and-mouse, the security industry gaining an upper hand for some time before the balance flips back and forth between the two."

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

40%

0%

10%

50%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Java Developer, Algo Trading, FX, Trading Strategies

Java Deveoper/Programmer/Software Engineer, Algo Trading...

Lead and Senior Developers Wanted

Austin Fraser has the pleasure of appointing a number...

Java Developer - Great move up for a Junior Developer

Austin Fraser has the pleasure of appointing a Java Developer...

Senior J2EE Application Developer

Austin Fraser has the pleasure of appointing a Senior...

To send to more than one email address, simply separate each address with a comma.