Vulnerabilities / Threats
3/29/2007
03:35 AM
Connect Directly
RSS
E-Mail
50%
50%

Akonix: 200% Increase in IM Attacks

Akonix announced its IM Security Center researchers tracked 31 new malicious code attacks over IM networks during the month of March

SAN DIEGO -- Akonix Systems, the provider of the most deployed instant messaging (IM) security and compliance products in the world, today announced its IM Security Center researchers tracked 31 new malicious code attacks over IM networks during the month of March - three times more than the same month last year.

New IM worms identified include IMspam, QQPass and TrigXF. Maniccum and Hotmatom were the most common, with one variant each. Attacks on P2P networks such as Kazaa and eDonkey increased 32 percent this month over last, with 25 attacks.

During March, Akonix security analysts issued three new policy updates to protect customers against new malware, using the industry's only dynamic IM malware, spim and protocol update system. This automatically pushes updates to customers to block spyware, worms and viruses. Akonix customers were secure on day zero from each new threat with the in-depth protection and containment features of Akonix's 360° Security for Real-Time Communications(tm).

"So far this year, IM networks are being attacked much more frequently when compared with the same period in 2006," said Don Montgomery, VP of marketing at Akonix. "The upsurge of threats is indicative of the greater adoption of IM within corporate networks, which increases its appeal as a vector for viruses and worms."

Akonix Systems Inc.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Must Reads - September 25, 2014
Dark Reading's new Must Reads is a compendium of our best recent coverage of identity and access management. Learn about access control in the age of HTML5, how to improve authentication, why Active Directory is dead, and more.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-6856
Published: 2014-10-02
The AHRAH (aka com.vet2pet.aid219426) application 219426 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVE-2014-6857
Published: 2014-10-02
The Car Wallpapers HD (aka com.arab4x4.gallery.app) application 1.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVE-2014-6858
Published: 2014-10-02
The Mostafa Shemeas (aka com.mostafa.shemeas.website) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVE-2014-6859
Published: 2014-10-02
The Daum Maps - Subway (aka net.daum.android.map) application 3.9.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVE-2014-6860
Published: 2014-10-02
The Trial Tracker (aka com.etcweb.android.trial_tracker) application 1.1.9 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Chris Hadnagy, who hosts the annual Social Engineering Capture the Flag Contest at DEF CON, will discuss the latest trends attackers are using.