Welcome Guest. | Log In| Register | Membership Benefits
  • Email this page E-mail this page
  • |  Print Print this page
  • |   Bookmark and Share

Report: Worldwide Spam Hits Highest Rate in 15 Months

Spammers shift from email attachments to exploiting free hosted services, according to new MessageLabs research

Jun 05, 2008 | 04:45 AM

By Kelly Jackson Higgins
DarkReading

Spam email spiked to its highest rate in over a year last month, accounting for 76.8 percent of all email in May, according to a new report from MessageLabs. That’s the biggest chunk of spam email since February of 2007, when spam levels were at 77.8 percent of all email.

Spam email increased by over three percent from April, with 1 in 1.3 emails being spam -- this after a slight decline, with spam at about 73 percent of emails in December of last year. Why the jump? Spammers are starting to ditch email attachments in favor of exploiting links to free hosted services like Google Docs, Calendar, and Microsoft SkyDrive, according to MessageLabs.

“The savvy, intelligent, and accurate cybercriminals of today seem to have abandoned the attachments tactic that was so innovative in late 2007 and are now focused on exploiting free hosted applications which have become mainstream in 2008,” says Mark Sunner, chief security analyst for MessageLabs in a prepared statement. “The spammers are taking advantage of the fact that these services are free, provide ample bandwidth, and are rarely blacklisted; this is one more addition to the growing list of ways the spammers have succeeded in outsmarting traditional detection devices.”

Spammers are basically looking for ways to evade filters, which for the most part don’t block links to Google Docs or Microsoft’s SkyDrive, according to the report. And MessageLabs says spammers are also tracking their spam performance via Google Analytics. According to the report, spammers insert a URL in an email that leads the victim to a Google Docs-hosted page. “In this way the spammer is actually creating what looks like spam content, not the full Website, but an advertisement for the Website they want the recipient to visit,” according to the report.

The most spammed country is still Hong Kong, with spam at 85.9 percent of all of its email. Spam in the U.S. reached 73.4 percent of all email last month.

— Kelly Jackson Higgins, Senior Editor, Dark Reading

  • MessageLabs Ltd.


  • Subscribe to RSS










    Bugs
    ENTERPRISE VULNERABILITIES
    Vulnerability:suse linux
    Published:2010-01-22
    Severity:High
    Description:SUSE Linux Enterprise 10 SP3 (SLE10-SP3) configures postfix to listen on all network interfaces, which might allow remote attackers to bypass intended access restrictions.
    Vulnerability:ie
    Published:2010-01-22
    Severity:High
    Description:The URL validation functionality in Microsoft Internet Explorer 7 and 8 does not properly process input parameters, which allows remote attackers to execute arbitrary local programs via a crafted URL, aka "URL Validation Vulnerability."
    Vulnerability:bind
    Published:2010-01-22
    Severity:Medium
    Description:ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta does not properly validate DNSSEC (1) NSEC and (2) NSEC3 records, which allows remote attackers to add the Authenticated Data (AD) flag to a forged NXDOMAIN response for an existing domain.
    Vulnerability:ie
    Published:2010-01-22
    Severity:High
    Description:Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-2530 and CVE-2009-2531.
    Vulnerability:ie
    Published:2010-01-22
    Severity:High
    Description:Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-3671, CVE-2009-3674, and CVE-2010-0246.


    Briefing Centers
    POWERFUL INFORMATION
    AT YOUR FINGERTIPS
    (SPONSORED LINKS)