Report: Malicious spam spikes in the enterprise

By Joan Goodchild, CSO |  Security, malware, Sophos Add a new comment

Cyber criminals are increasingly turning to spam as a means of infecting computers, according to a new report from IT security and control firm Sophos.
The Boston-based firm found an eight-fold increase in the number of spam emails containing dangerous attachments that were sent to business organizations between July and September 2008. The Q3 Dirty Dozen spam report not only documents an alarming rise in the proportion of spam emails, but an increase in spam attacks using social engineering techniques to snare unsuspecting computer users, according to Sophos senior technology consultant Graham Cluley.

The survey found that one in every 416 emails contained a dangerous attachment designed to infect the recipient's computer. That number is up from only one in every 3,333 the previous quarter, said Cluley.

Much of the increase is due to several large-scale malware attacks made by spammers during the period, he said. The worst single attack was the Agent-HNY Trojan horse, which was sent disguised as the Penguin Panic arcade game for Apple iPhones. Other major incidents included the EncPk-CZ Trojan, which pretended to be a Microsoft security patch, and the Invo-Zip malware, which masqueraded as a notice of a failed parcel delivery from firms such as UPS.

"While many people may know better than to click on an attachment that says 'sexy pictures', these new tactics are more alluring," said Cluley "Too many people are clicking without thinking -- exposing themselves to hackers who are hell-bent on gaining access to confidential information and raiding bank accounts."

Spammers continue to embed malicious links and spam out creative and timely attacks designed to prey on users' curiosity, said Cluley. In August, a wave of spam messages claimed to be breaking news alerts from MSNBC and CNN. Each email encouraged users to click on a link to read the news story, but instead took unsuspecting users to a malicious webpage which infected Windows PCs with the Mal/EncPk-DA Trojan horse.

"When a spam email appears to come from a trusted source, too many users are fooled and end up clicking through to a malicious webpage," said Cluley.

Education continues to be key to preventing infection, said Cluley, who encouraged business organizations to give users initial and also refresher instruction on avoiding suspicious emails.

"The advice is simple: you should never open unsolicited attachments, however tempting they may appear," he said.

The United States remained in the number one spot for relaying spam across the globe, generating 18.9 percent of the malicious emails. Russia has increased its contribution to the world spam problem, soaring from 4.4 percent last year, to 8.3 percent during this time period, according to the report. Turkey, China and Brazil were the other countries on the top-five spam relaying list.

    Add a comment

    Post a comment using one of these accounts
    Or join now
    At least 6 characters

    Note: Comment will appear soon after you have activated your account.
    Obscene/spam comments will be removed and accounts suspended.
    The information you submit is subject to our Privacy Policy and Terms of Service.

    ITworld LIVE

    SecurityWhite Papers & Webcasts

    White Paper

    Aberdeen Analyst Insight: Does Your Enterprise Have a Dropbox Problem?

    Without policies, awareness and supported alternatives for sharing files securely, end-users will often overlook security and compliance in favor of getting the job done. Read this whitepaper to determine if your enterprise has a "Dropbox Problem" and ways successful organizations address this problem.

    White Paper

    BYOD: How to Design Secure Usage

    With employee mobile devices springing up throughout your workplace, how can you establish an individual liable usage policy? Use these questions from Good Technology to help prepare your organization.

    White Paper

    Good Technology State of BYOD Report

    New data finds Finance and Healthcare industries dominate BYOD picture and that users are willing to pay device and service plan costs if they can use their own devices. Read More>>

    White Paper

    A Proactive Approach to Server Security

    Learn why security-conscious organizations are taking a more proactive approach to server security. Download this Spire Research whitepaper to understand how you can eliminate the threat caused by today's more advanced threats and protect your organization's most valuable data.

    White Paper

    Protection Against Modern Cybersecurity Threats

    Download this case study to learn how this accounting and consulting giant uses Bit9's adaptive application whitelisting to offer employees flexibility without jeopardizing enterprise safety.

    See more White Papers | Webcasts

    Ask a question

    Ask a Question