You are here: silicon.com > Software > Security Strategy

Security Strategy

Short URLs on spammers' hit-lists

Where does it really lead?

Tags: url, twitter

By Elinor Mills

Published: 8 July 2009 10:53 GMT

Email security provider MessageLabs said on Tuesday it saw a dramatic spike in the number of spam emails that include shortened URLs.

Shortened URLs, which allow spammers to hide the real web address from web surfers and are commonly used on social media sites like Twitter where message character length is restricted, began a sharp rise last week and now appear in more than two per cent of all spam caught in the company's spam trap, according to MessageLabs.

Matt Sergeant, a senior anti-spam technologist at MessageLabs, said: "Usually when we see a spike of this nature it tends to indicate that a spammer has found some method of automating the creation of these short URLs."

The many URL shortening services make it more convenient to post long URLs on sites like Twitter but they also make it easy for attackers to lead web surfers to sites hosting malware.

A major spam botnet called Donbot has aggressively moved to using this technique, Sergeant said. Donbot appears to be primarily focused on displaying advertisements but could be linking to sites that drop malware onto visitors' computers too, he said.

Spam-filtering software can block spam from getting into inboxes and programs like Long URL Please and shortText make it easy to see what the real URL is.

Original article: MessageLabs: Short URLs in e-mail spam spikes from silicon.com

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business

Jon Collins Is losing a mobile device really such a big deal? How to minimise the damage to your business


  • Jobs
Field Sales Executive - 35K-50K + OTE

You can be from a Distribution, Reseller or Vendor background but must have sold IT security based products extensively working with solutions that ...

Content Editor

Collate and distribute event URLs to optimise linkbuilding with internal and external agencies (Labels, official artist sites, etc). Daily ...

Product Mgr Internet and Security

DOS, Spam, Anti-Virus, email filtering, encryption, authentication, intrusion detection, security monitoring)? Product Manager Internet & Security ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: