Member Sign In
Not a member?

A Wired.com user account lets you create, edit and comment on Webmonkey articles. You will also be able to contribute to the Wired How-To Wiki and comment on news stories at Wired.com.


It's fast and free.

Sign in with OpenID
Sign In
Webmonkey is a property of Wired Digital.
processing...
Join Webmonkey

Please send me occasional e-mail updates about new features and special offers from Wired/Webmonkey.
Yes No

Please send occasional e-mail offers from Wired/Webmonkey affiliated web sites and publications, and carefully selected companies.
Yes No

I understand and agree that registration on or use of this site constitutes agreement to Webmonkey's User Agreement and Privacy Policy.
Webmonkey is a property of Wired Digital.
processing...

Retrieve Sign In

Please enter your e-mail address or username below. Your username and password will be sent to the e-mail address you provided us.

or
Webmonkey is a property of Wired Digital.
processing...

Welcome to Webmonkey

A private profile page has been created for you.
As a member of Webmonkey, you can now:
  • edit articles
  • add to the code library
  • design and write a tutorial
  • comment on any Webmonkey article
Close
Webmonkey is a property of Wired Digital.

Sign In Information Sent

An e-mail has been sent to the e-mail address registered in this account.
If you cannot find it in your in-box, please check your bulk or junk folders.
Sign In
Webmonkey is a property of Wired Digital.

Blogspot Domain Most Likely Place to Catch a Virus

BloggerlogoThe web is dangerous place, viruses, malware and other threats lurk seemingly everywhere and things are getting worse. At least that the word from Sophos, a security company that tracks viruses and malware threats.

According to a report Sophos just released, the company detects a page with malicious content every 5 seconds, which is three times more than it found in 2007.

It probably wasn’t the number one rating it was looking for, but Google’s Blogger service takes the top honors for Most Likely to Give You a Virus — the Blogspot.com domain accounts for nearly 2 percent of all malware pages.

Given that Blogger offers a “next blog” link at the top of most sites, which will take you to a random blog, it’s particularly problematic for overly trusting users.

The other troubling aspect of Sophos report is the news that over 90 percent of the pages spreading Trojans and spyware are legitimate websites (some belonging to Fortune 500 companies) that have been hacked through SQL injection.

The most common technique is to sneak a snippet of HTML code onto a legitimate site through an SQL-injection attack. The HTML is generally a single pixel element that then loads malicious code from an outside site. It’s a tough problem for security software because to effectively block such sites would mean blocking what is an otherwise legitimate site.

If there’s one single takeaway from Sophos’ report it’s that web developers aren’t following best practices, or even taking basic security precautions. We’ve said it before and we’ll keep saying it: sanitize all incoming content before you run your database operations.

[via CNet]

See Also:

Post Comment Comments Permalink Print
Reddit Digg

 
Subscribe now

Special Offer For Webmonkey Users

WIRED magazine:
The first word on how technology is changing our world.

Subscribe for just $10 a year