Facebook
A number of Facebook pages attempt to infect users by promising free videos

Fresh Facebook malware attack spotted

New attacks spread via networking site

Written by Shaun Nichols in San Francisco

Security experts are warning users and administrators of a new crop of Facebook malware.

F-Secure said in a recent blog posting that the company has tracked down a number of pages on the social networking site which attempt to infect users by promising free videos.

Advertisement

The new attacks propagate by way of a malicious worm which hijacks Facebook information. The user is sent a message from an infected friend which promises a link to a YouTube video.

On clicking the link, the victim is directed to a third-party site which scans the user's operating system. Users running Windows are forwarded to the attack page while users running other operating systems are sent to the actual YouTube front page.

Once landing on the attack page, users are prompted to download what purports to be an updated version of Flash which is needed to view the file.

The would-be installer, however, simply delivers the malware payload in what is known as a 'fake codec' attack.

The malware package installs and launches a new copy of the worm which then scans the user's system for Facebook cookies and uses the information to send new attack messages to the victim's friend list.

"This propagation method is effective because the message is supposedly posted by a friend," said F-Secure.

"A person receiving such a message is far more likely to click the included link, greatly increasing the chances of infection."

Security on Facebook has become a growing concern of late. In addition to its use as a means for spreading malware, researchers have suggested that the site could also be used as a platform for denial-of-service attacks on third-party sites.

Related whitepapers

Related jobs

Do you agree?

IT white papers

Search vnunet IThound

Top categories

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Watch

Shaun Nichols

19 Dec 2008

2.93 MBPodcast Special: Views from the Valley More...

Podcast image

18 Dec 2008

17.6 MBComputing podcast - the highlights of 2008 More...

Shaun Nichols and Iain Thomson

15 Dec 2008

4.98 MBPodcast Special: Views from the Valley More...

Poll

Communications super-database

Communications super-database

Should the government be allowed to track our emails and internet use?

Previous poll results

Spotlight

CES 2009

CES 2009 Special Report

All the latest coverage from Las Vegas   More...

Green lightbulb

Electronics makers urged to go greener

Greenpeace research finds much work still needs to be done   More...

Stressed IT worker

Abused IT workers ready to quit

Research finds a quarter of tech staff looking for a...  More...

Macworld 2009

Macworld 2009 Special Report

All the latest coverage from San Francisco   More...

Primary Navigation