Innovative Spammers Take Levels to 15-Month High

Posted on
Share on Google+Share on LinkedInShare on FacebookShare on RedditTweet about this on TwitterEmail this to someone

<strong>New York and London &mdash; June 3</strong><br />MessageLabs, a provider of messaging and Web security services to businesses worldwide, announced the results of its "MessageLabs Intelligence Report" for May 2008. Analysis highlights that spam levels are back on the increase, with levels reaching 76.8 percent of all e-mails in May, heights not experienced since early 2007. <br /><br />The rise in spam, according to MessageLabs, is due to the change of tactics adopted by the spammers this month, moving further away from reliance on new and undetectable e-mail attachments and moving toward the exploitation of free, mainstream hosted services such as Google Docs and Calendar and Microsoft SkyDrive. <br /><br />"The savvy, intelligent and accurate cybercriminals of today seem to have abandoned the attachments tactic that was so innovative in late 2007 and are now focused on exploiting free hosted applications which have become mainstream in 2008," said Mark Sunner, chief security analyst at MessageLabs. <br /><br />"The spammers are taking advantage of the fact that these services are free, provide ample bandwidth and are rarely blacklisted; this is one more addition to the growing list of ways the spammers have succeeded in outsmarting traditional detection devices." <br /><br />In May, MessageLabs intercepted spam e-mails that contained links to spam contained in documents hosted on the Google Docs environment. With traditional spam filters not blocking links to the Google Docs domain, spammers are using this to their advantage, as well as tracking their success through the use of Google Analytics. Google Docs is not the only target of this kind on the spammers&#39; radar. They are also using Microsoft&#39;s shared file-hosting service, SkyDrive. Spam generated using this technique accounted for 1 percent of all unsolicited mail in May. <br /><br />In addition to the variety of new spam techniques, MessageLabs also identified several new phishing exploits this month, including one that preyed on a bank&#39;s environmentally conscious customers. Using the Srizbi botnet to launch the attacks, the phishers took advantage of the Central Bank in Missouri&#39;s Go Green campaign to lure recipients into sharing their bank details to register for e-statements. <br /><br />MessageLabs also uncovered evidence of phishing attacks claiming to be from HSBC bank that purported to be a secure connection via an https; however, closer inspection revealed this was not the case and was actually a standard http link to a domain pretending to be the actual bank. <br /><br />The battle of the botnets continued this month with the notorious but diminishing champion Storm being challenged by newer arrival, Srizbi. On May 19, the Storm botnet distributed more than 81,000 copies of a new wave of malware with the amorous filename of iloveyou.exe, whereas Srizbi was deemed responsible for less prolific attacks but still accounted for more than 40 percent of all spam in May. <br /><br />"If the distribution of malware by Storm this month was successful, we could expect to see a renewed deluge from Storm next month and further competition between Storm and Srizbi," Sunner said. <br /><br />Other report highlights: <br /><br /><ul><li><strong>Web security: </strong>Analysis of Web security activity shows 30.5 percent of all Web-based malware intercepted was new in May, a decrease of 5.8 percent since April. MessageLabs also identified an average of 1,311 new Web sites per day harboring malware and other potentially unwanted programs such as spyware and adware, an increase of approximately 100 per day compared with the previous month. </li><li><strong>Spam: </strong>The global ratio of spam in e-mail traffic from new and previously unknown bad sources, was 76.8 percent (1 in 1.30 e-mails), an increase of 3.3 percent on the previous month. </li><li><strong>Viruses: </strong>The global ratio of e-mail-borne viruses in e-mail traffic from new and previously unknown bad sources, was 1 in 170.1 e-mails (0.59 percent) in May, an increase of 0.13 percent since the previous month. </li><li><strong>Phishing: </strong>May saw a decrease of 0.11 percent in the proportion of phishing attacks compared with the previous month. One in 265.6 (0.38 percent) e-mails comprised some form of phishing attack. When judged as a proportion of all e-mail-borne threats such as viruses and Trojans, the number of phishing e-mails rose by 23.4 percent to 64 percent of all e-mail-borne malware threats intercepted in May. </li></ul><br /><strong>Geographical Trends</strong><br /><br /><ul><li>Hong Kong remained in the top spot as the most spammed country, with spam levels reaching 85.9 percent of all e-mail. The largest increase in spam levels was observed in Singapore, with an increase of 9.7 percent.</li><li>Spam levels increased across almost every region. In the U.S., levels reached 73.4 percent in May, 77.7 percent in Canada and 71.3 percent in the U.K. Germany&#39;s spam rate reached 72.8 percent and the 74.3 percent in the Netherlands. Spam levels in Australia were 68.2 percent, 77.8 percent in China and 74.2 percent in Japan.</li><li>Virus activity rose across many countries in May, with the largest increase in France at .40 percent. Switzerland remains the most targeted country for viruses, with levels of 1 in 87.6 e-mails.</li><li>Virus levels for the U.S. were 1 in 393.3 and 1 in 193.7 for Canada. In the U.K., virus levels were 1 in 101.7 and 1 in 235.6 for Germany. In Australia, virus levels were 1 in 189.9 and 1 in 597.5 for Japan.</li></ul> <br /><strong>Vertical Trends</strong><br /><br /><ul><li>Spam levels rose across all industry sectors in May, with manufacturing remaining the top vertical for spam activity at 83.7 percent. The greatest rise was noted in the nonprofit sector, in which spam levels rose by 7 percent to 81.3 percent. Spam levels for the retail sector were 80 percent, 75.7 percent for public sector and 71.1 percent for finance.</li><li>Virus levels also rose across many industry verticals during May. Accommodation and catering claimed the most virus activity with 1 in 43.8 e-mails infected.</li><li>Virus levels for the finance sector were 1 in 248.2, 1 in 226.7 for IT services and 1 in 194 for retail.</li></ul>

Share on Google+Share on LinkedInShare on FacebookShare on RedditTweet about this on TwitterEmail this to someone


Posted in Archive|