Security Management
Published on Security Management (http://www.securitymanagement.com)
Security Researcher Warns of Cybercriminals Using Events in Iran to Spread Malware
By Matthew Harwood
Created 06/16/2009 - 11:57



    
Wrap-Up?: 
No
Weight: 
0
Lead Headline?: 
No
Date: 
06/16/2009
By Line: 
By Matthew Harwood
Teaser: 

John Bambenek, of the Sans Internet Storm Center, warns people to be wary of clicking on links within tweets regarding events in Iran.

While media outlets are reporting the Iranian opposition's embrace of social media [1], especially Twitter [2], to get around the government's attempts to control information regarding this weekend's contested election and subsequent protests, a security researcher is warning people that cybercriminals will use the crisis to spread malware.

John Bambenek, of the Sans Internet Storm Center, had this warning [3] for people clicking on links in random tweets on events in Iran.

From an information security perspective, the threat is leading people to malicious websites. Set up a blog with an archive of posts on the issue, "borrow" a few pictures of the conflict and post them.  Tweet a message that says "live images of protestors being shot at" and point to your blog that also includes pre-tested malware that is known to be not detected by AV vendors.  Twitter and social networking tools provide another mechanism to lead people to the cyber-threat where only e-mail was used before.  Twitter has no "anti-spam" features, everyone talking about a subject shows up.

So while the use of Twitter and other tools provide for a means to breach censorship rules of foreign regimes, it does not come without risks. Is the information valid? Is it leading you to malware infecting your machine?

As with anything regarding new, social media, don't let impulsiveness unnecessarily compromise your security. For those looking to stay up-to-date on tweets in real-time regarding events on the ground in Iran, check out Monitter [4], which monitors Twitter and aggregates tweets in one easy location.

But again, be wary of clicking on links.

♦ Photo of Iranian Protests by Hamed_Saber/Flickr [5]

♦ Photo of Twitter Cig Pack by carrotcreative/Flickr [6]

 

 

Related Resources: 
Thumbnail: 

Comments


Security Management is the award-winning publication of ASIS International, the preeminent international
organization for security professionals, with more than 38,000 members worldwide.

ASIS International, Inc. Worldwide Headquarters, 1625 Prince Street, Alexandria, Virginia 22314-2818 U.S.A.
703.519.6200 | fax 703.519.6299 | www.asisonline.org

ASIS

© 2013 Security Management
This site is protected by copyright and trade mark laws under U.S. and International law.
No part of this work may be reproduced without the written permission of Security Management.

Powered by: Phase2 Technology

Source URL: http://www.securitymanagement.com/news/security-researcher-warns-cybercriminals-using-events-iran-spread-malware-005761

Links:
[1] http://abcnews.go.com/Technology/story?id=7845377&page=1
[2] http://www.ynetnews.com/articles/0,7340,L-3731561,00.html
[3] http://isc.sans.org/diary.html?storyid=6586&rss
[4] http://monitter.com/
[5] http://www.flickr.com/photos/hamed/3630995605/
[6] http://www.flickr.com/photos/carrotcreative/2511539541/