SonicWALL Releases Mid-Year Assessment of Top Cybercrime Threats for 2010
Top threats exploit the increased corporate use of cloud computing, social networking, and use of Macs and smart phones for remote access
SonicWALLÂ released its mid-year summary of the top cybercrime trends for 2010. From July 1, 2009 to June 30, 2010, the company tracked computer threats worldwide using its Global Response Intelligence Defense (GRID) network. The GRID contains millions of SonicWALL anti-spam and e-mail security servers located worldwide, to proactively protect networks from intrusions and malware attacks. Based on GRID data, SonicWALL identified the current and future top security threats, including intrusions, malware, antivirus and e-mail security breaches that consumers and institutions face.
“For nearly 20 years, we have tracked cybercrime and reliably protected our customers against the latest threats,” said Boris Yanovsky, vice president of software engineering at SonicWALL. “Each day, SonicWALL helps corporations stop over 3 million malware attempts, 400 million intrusions, and 400 million SPAM e-mails. We watched cybercrime shift from simple scams, such as phishing exploits, spoofing of organizations, worms and viruses, to more sophisticated attacks shutting down network servers and cloud-based systems affecting both companies and individuals. Our research is part of an ongoing mission to dynamically adapt our products and services to enhance security for our customers.” Read more
SonicWALL identifies growing threat of cybercriminals attacking new searches
Over 284 Top Search Terms attacked over the last 7 days with 6600 Malicious URLS; Threat team outlines tips to protect against searching threats
SonicWALL announced it identified that cybercriminals are continuing to attack Google’s top search items. In the last 7 days, more than 284 top search terms have been attacked by more than 6600 malicious URLS. The threat team has found up to nine of the top 20 search terms are under attack at any one time. To help individuals defend against these types of threats, SonicWALL’s threat research team has identified certain search terms that have returned the greatest number of malicious sites and has developed several tips for combing through search terms.
“Cybercriminals use whatever is at their disposal to spread malware. In this instance they are launching attacks against Google’s top search terms that identify the most popular stories of the day,” said Deepen Desai, Lead Malware Researcher, SonicWALL. “These criminals are now going after these top search terms using their knowledge to insert malware infected websites almost immediately after people show interest in a particular news site.”
Using social engineering tactics, cybercriminals are able to jump onto the latest news events ranking high on Hot Search to draw more traffic to their infected websites. Search Engine Optimization (SEO) tactics are then used to make the websites show up higher in the search results, thus making it more likely that individuals will click on them.
The counter offensive to remove these threats is on-going. However, some sites have remained within search results for a number of hours before being removed. Recent and topical infected searches include:
- A search on “elinor burkett” within a 24 hour period between March 8th and 9th presented 40 unique malicious URLs appearing in Google search’s top 30 results.
- A search on “the new tenants” on March 8th presented 56 unique malicious URLs appearing in Google search’s top 30 results.
SonicWALL suggests you remember the following tips when searching for a news event:
- Be diligent when clicking on the links that show up in search engine results. Be sure to look at the URL before you click on it. Quite often the legitimate sites show up with complete readable sentences in their description whereas the malicious sites show up with jumbled keywords.
- If you do click on a malicious website, quickly get out of it. Most of the malware found redirect to fake antivirus websites that pretend to discover malware on a computer and offers to sell antivirus software that will clean it up.
- Make sure that your antivirus is up to date. Use defense-in-depth by layering protection, having antivirus both on the gateway and the client.
- Steer clear of any kind of video codecs or protection software executables downloads prompted by most of these sites.
- Do not execute any files that come through e-mail attachments.
For more information and to track the latest network and e-mail security threats, go to: http://www.sonicwall.com/securitycenter.asp?tab=NS

