Posted on

Social Engineering – The Real E-Terrorism?

The reputation of the weblog, or weblog, at the net has lately been exploited by means of hackers, making the blog the next in a long line of on line elements of which to watch out. If you have been following the Black Hat safety occasion, you may have heard about the presentation wherein spokespeople from SPI Dynamics discussed the new chance surrounding weblog web page visitation. In case you neglected it, it is going a touch something like this:

According to an SPI Dynamics new launch, Hackers have began transferring malicious JavaScript code to a user’s pc via RSS and Atom feeds through which famous blogs are subscribed. The code is designed to run at the subscriber’s laptop, leaving it open for a hacker to install keyloggers, spyware, and different malware; test the laptop and community for open ports; and make the most vulnerabilities in the pc. Ways wherein the code can be transmitted to a consumer’s laptop consist of:

Hackers can piggyback the code in the remarks of a public blog.
Links on an internet feed when clicked may want to cause an inflamed blog.
The writer of a web feed can also by accident paste the code into his blog.
The feeds themselves would possibly without delay transmit code via person down CCISO Test load.
According to Business Week Online, the Pew Internet and American Life Project reviews that during September 2005, 27 percent of person net customers admitted to studying blogs, which translates to a big variety of those who might be suffering from this new assault. Reading blogs, that may embody each subject matter below the solar from international news to knitting to celebrity gossip, may appear like a harmless online interest, but due to this new transferal method, they may be extra dangerous than maximum hacker attacks. Since the JavaScript instructions are code and can act with out putting in an out of doors file, the commands are capable of skip most antivirus software. Hence, there honestly isn’t any manner for a user to ensure that the blogs they experience aren’t infecting their pc.