Wikipedia
Hackers had created an article containing information about a new worm, along with a link to a 'fix'
R E L A T E D   C O N T E N T
ADVERTISEMENT

Hackers use Wikipedia to spread malware

Beware geeks bearing gifts

Will Head, vnunet.com 03 Nov 2006
ADVERTISEMENT

Hackers are using online encyclopaedia Wikipedia to spread malware, according to a security firm. 

Sophos discovered that hackers had created an article on the German edition of Wikipedia containing false information about a new version of the Blaster worm, along with a link to a fix. 

However, the fix is actually a piece of malicious code designed to infect visitors' PCs.

Wikipedia is built from user contributions, allowing anyone to create or edit the content of a page.

The hackers sent spam messages to German computer users, which purported to come from Wikipedia, and directed recipients to the fraudulent information.

As the emails linked to a legitimate website, they were able to bypass some anti-spam solutions.

"The good news is that the authorities at Wikipedia quickly identified and edited the article on their site," said Graham Cluley, senior technology consultant for Sophos.

"Unfortunately, a version of the page remained in the archive, allowing the hackers to send spam and continue to direct visitors to the malicious code."

Wikipedia has now confirmed that it has permanently erased all versions of the page.

"The very openness of websites like Wikipedia, which allow anyone to edit pages, makes them terrific, but can also make them less trustworthy, " Cluley added.

"In this case, the article in question was not just misleading, it was downright malicious.

"Everyone should exercise caution and ensure they have appropriate defences in place to protect their computer systems.

"Additionally, people should remember that if there really is a new threat on the internet, you're likely to hear about it first from the security companies, not an online encyclopaedia."

See also:

The number of new malware threats doubled in SeptemberHuge rise in targeted attacks  03 Oct 2006
Spyware, adware and Trojan authors tap Ryder Cup zeitgeist  25 Sep 2006
One in 600 profiles host infection  10 Aug 2006
Be afraid, be very afraid  24 Jul 2006
Anti-spyware organisation StopBadware.org aims to name and shame applications that contain embedded malwareBadware Watch List identifies malicious programs  25 May 2006
Security firm McAfee has unveiled antivirus support for Intel-based Apple Macs, after claiming that the computers are an "open target" for malwareMcAfee expands security coverage to Macs  07 May 2006

All Enterprise Security Technology

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
C++ Research Developer Global Pharmaceutical Company London C++ Research Developer Biotechology Global Medical Company London Global Biotechnology Company specialising in the research and development of cutting edge health care products is looking for an innovative, ... more >
| Aston Carter
Your role will be working on direct market access and exchange connectivity part of the application built in C++ on a Unix platform. The team is currently just 9 people including architect and team lead, ... more >
| Aston Carter
This is a fantastic opportunity working for a leading global software house, which is part of a larger multi media company. The role is working in the core development team in central London developing a ... more >
| Aston Carter
C++, Developer, OO, Unix/NT, API, London, City, Graduate A senior core C++/ Unix developer wanting to work in the heart of the city for one of London's most successful companies is required. The successful candidate ... more >
More job opportunities