
That many people in one place has to be tempting...
Published: 27 July 2006 13:50 GMT
Social networking portal MySpace is becoming a major target for cyber criminals, with credit card fraud, phishing attacks and spyware all growing concerns for users of the site.
One reason for the problems arising is the overwhelming popularity of the site which has created an ecosystem ripe for the picking by criminals, according to one security expert.
Mark Sunner, CTO of MessageLabs, told silicon.com: "MySpace appears to be coming under fire from all sorts of angles.
"Anywhere on the internet that you get a community you will make money. Whether it's Amazon or eBay - or now MySpace - it will make money for its owners but it also doesn't take the criminals long to wake up to the potential."
And as Amazon and eBay users have been targeted, most notably by phishing scams, so Sunner says it is now the turn of MySpace.
It is possible to buy tools that automate attacks on defined swatches of the MySpace community. They can even set up automated conversations with users - a technique gleaned from engines used to spam IM networks - which exploit social engineering to encourage users to either follow links or even, in some cases, hand over credit card numbers, supposedly for age verification.
Sunner directed silicon.com to one site where tools can be bought for less than $25 that enable users to launch conversations with thousands of users concurrently. (See more here). One example given is to inform users of a particular band playing a particular venue but Sunner suggests many users are finding far more malicious uses for the tools.
MySpace could not immediately be contacted for comment.
More info...
♦ How MySpace attacks can be tailored to individuals
Earlier this week, around the time MySpace was being plagued by downtime, security vendor McAfee blogged about spyware and adware applications that were being dropped onto users' machines from links on MySpace as users are tricked into clicking and downloading them.
Greg Day, security analyst at McAfee, told silicon.com there is a very basic rule in the security industry. "The more something becomes popular the more it becomes attacked," he said.
MessageLabs' Sunner said: "MySpace has suddenly appeared as this cultural phenomenon and it's created a large enough ecosystem to appeal to the bad guys."
As such, Sunner said the company must now act to protect its users. "They have a responsibility to take some steps," he said, suggesting the company should monitor what content is posted onto its site, or at the very least provide more education for users.
The office is located near excellent travel links, great for commuters! Benefits include working for an established growing international company, ...
Huxley Associates are recruiting for a Smart Card Security Analyst to work for a leading technology provider in the Thames Valley area. To be ...
Looking for a a native French speaking Community Support Lead to work with a popular online game played by millions of children worldwide. The role ...
Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Tim Ferguson Exclusive: Former MySQL boss Marten Mickos talks open source Why Microsoft could become one of the "biggest friends of open source" and why Oracle getting its hands on MySQL could be "one of the biggest open source coups ever"...
Naked CIO Naked CIO: Cloud computing more expensive than we thought? Smart IT leaders will examine the impact of how they pay for tech