All the latest UK technology news, reviews and analysis

Zscaler IPAbuseCheck roots out compromised IP addresses

by Shaun Nichols

22 Oct 2011

Be the first to comment

  • Tweet this

Security firm Zscaler has released a tool designed to notify administrators when web properties are being used for cyber crime.

IPAbuseCheck can identify IP addresses connected to a network that have been involved in redirecting malicious or unwanted traffic, the firm said.

The tool, which is based on the Zscaler ThreatLabz research database, runs IP addresses through a database and notifies administrators when a match has been found. The database currently contains more than 20,000 IP addresses logged from attacks observed over the past four months.

IPAbuseCheck is offered to enterprises and providers as a free service to help contain web-based threats, including search engine optimised attack pages, spam and denial-of-service attacks.

Mike Geide, a senior security researcher at Zscaler ThreatLabz and developer of the tool, told V3 that the detection of compromised systems can often vary, particularly when the infected systems are not regularly in use and overlooked by administrators.

"Unfortunately, there are many cases where a system infected or abusing the web may go unnoticed for a long while if it is not regularly used, such as a development system that was set up for a project and then forgotten about," he said.

When a compromised system is detected, Geide recommends administrators follow best practices for handling infections such as malware scans and log investigations.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

37%

0%

11%

52%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Java, J2EE Agile Senior Developer / Designer, Warrington , £55K

Java, J2EE Agile Senior Developer, Warrington, Cheshire...

Project Manager - Application Development - Geneva

Location: Geneva Client: A well established world...

Junior Application Analyst - Unix / SQL / Perl

Location: Geneva Client : A well known company Job...

Lead Network Specialist

Location: Lausanne Client: A well established world...

To send to more than one email address, simply separate each address with a comma.