Please wait while the page is being loaded Skip this advertisement >
ARN

O.J. Simpson guilty verdict could lead to malicious spam

Spammers look to cash in on another big news story.
Gregg Keizer (Computerworld (US))  07 October, 2008 10:47:00

Users should be on guard for spam touting the guilty verdict of former professional football star O.J. Simpson, a security company warned.

"Anytime there's a big news story, spammers latch on to it to get people to click on a link and download their malware," said Sam Masiello, vice president of information security at MX Logic.

Although MX Logic has not yet spotted any Simpson-related spam, Masiello said that company researchers have found evidence of an impending campaign. "We've seen poisoned search results on Microsoft's Live Search that lead to some Live Spaces hosting fake video codecs," said Masiello. The tactic, dubbed "search engine poisoning," is frequently used alongside malware spam.

Hackers try to dupe search engines into ranking malicious sites at or near the top of the results list by flooding blogs and message boards with bogus entries added by automated bots. "They'll use anything they can to pump up the search engine results," said Masiello.

The most likely Simpson spam strategy would resemble the massive August campaigns that lured users to malware-hosting sites by promising video clips from the CNN and MSNBC cable news channels, Masiello said. At the time, criminals tricked people into downloading attack code by telling them that the file was a codec required to play the video.

"Based on the results we've already seen, I think [a spam campaign] is pretty imminent, and very likely," Masiello added.

O.J. Simpson, 61, was found guilty late last Friday by a Las Vegas jury on multiple charges stemming from the armed robbery of two sports memorabilia dealers in 2007. The verdict was handed down 13 years to the day after Simpson was acquitted of the murders of his former wife, Nicole Brown Simpson, and her friend, Ronald Goldman.

Simpson, scheduled for sentencing Dec. 5, faces life in prison.

Comments

Post new comment

Users posting comments agree to the ARN comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
The content of this field is kept private and will not be shown publicly.
Enter the fully qualified URL, eg. http://www.example.com/
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.

More information about formatting options

Syndicate content Syndicate content
 
ARN Vendor Directory
ARN Community Comments
ARN Library

RSA - Secure Web Access

What can be done to protect web access? The Web has created a wealth of new opportunities, but as organizations shift from an internal to external focus, the traditional view of identity and access management (IAM) is changing. In many different ways, including regulations around the globe aimed at data protection and other processes, securing web access is creating many new challenges.

Subscribe to ARN

ARN has been the premier provider of information to the Australian IT channel for more than 12 years. As the only weekly publication dedicated to the channel, ARN produces timely, accurate news and analysis about IT business issues, products and services, new technology and market opportunities.
Sponsored Links