NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security > Advisories

Advisories


Fake LinkedIn Profiles Spread Malware

Bogus accounts for numerous celebrities have been created

By Lucian Constantin, Web News Editor

7th of January 2009, 13:09 GMT

Adjust text size:


Hackers spread malware through LinkedIn fake profiles
Enlarge picture
Hackers are using the LinkedIn professional networking service to spread trojans, antivirus researchers warn. The fake profiles of tens of celebrities are enticing users to visit malicious links claiming to point to their nude videos.

LinkedIn is a popular social networking website for professionals, allowing them to maintain business relationships with each other. The site currently has a global traffic rank of 190, according to Alexa, which makes it a very profitable place for hackers to spread their malware.

Trend Micro's TrendLabs Malware Blog reports that threats researcher Ivan Macalintal has identified bogus profiles for personalities such as Beyoncé Knowles, Victoria Beckham, Christina Ricci, Kirsten Dunst, Salma Hayek, Kate Hudson, and others.

Paris Hilton's fake LinkedIn profile
Enlarge picture
Graham Cluley, senior technology consultant for antivirus vendor Sophos, who also investigated the matter, has completed the celebrity list with the likes of Paris Hilton, Kim Kardashian, Jaime Pressly, Christina Aguilera, Keri Russell, Zooey Deschanel, Lizzy Caplan, Brooke Hogan, and Tila Tequila.

When visiting the alleged nude video links, a user is taken through several redirects, which eventually lead to a website distributing a trojan. The malicious application is detected as TROJ_DLOAD.ML by Trend Micro, and as Troj/Decdec-A by Sophos. If successfully deployed, the trojan will proceed to downloading and installing even more malware, including a rogue security application identified as TROJ_FAKEAV.GDS.

Kim Kardashian's fake LinkedIn profile
Enlarge picture
“Undoubtedly, spammers, malware authors, and other cybercriminals may be abusing the system to link to their webpages in the hope that it will generate a higher ranking in search engines like Google,” Graham Cluley explains. In addition to providing a solid base of potential victims, using social networking websites increases the credibility of these scams, because people tend to trust messages coming from users in their friends lists. This is demonstrated by the constant phishing campaigns hitting networks like Facebook, MySpace, hi5, or Twitter.

The Trend Micro report points out that there is actually an entire underground business focused on pre-registering and leasing or selling such high profile accounts on popular websites. Clearly, LinkedIn is not the only service abused by hackers, but this is no excuse for not developing better security policies  in order to filter out such attacks. “It’s a shame that LinkedIn aren’t keeping a closer eye on obviously bogus profiles being created on their site,” Graham Cluley also concludes.

TAGS:

TROJ_DLOAD.ML | Troj/Decdec-A | LinkedIn | fake profile | malware spam
Read by 1,832 user(s) | Add comment | Link to this article TWEET THIS


Article rating:
NOT RATED 0 vote(s)    

Subscribe to news | Print article | Send to friend

© Copyright 2001-2010 Softpedia
Contact:

 

 

SEARCH THE NEWS ARCHIVE :




Today's News
| Yesterday's News | News Archive


MORE RELATED ARTICLES:


Several High Profile Twitter Accounts Hacked

Phishing Campaigns Spotted on Twitter

New Hi5 Phishing Campaign

Facebook Worm Active Again

Facebook Worms Use Google Services

Google Calendar Phishing Scam Resurfaces

The President of France Falls Victim to Online Banking Fraud

User opinions:

No user comments yet.
Be the first to express your opinion using the form below!

Share your opinion:

Your Name:
Your Email Address:
(will not be used for commercial purposes)
Solve this to prove you're not a bot: =
Your review/opinion:

 




Windows tabGames tabDrivers tabMac tabLinux tabScripts tabMobile tabHandheld tabGadgets tabNews tab

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   ENTER NEWS SITE   |   ENGLISH BOARD   |   ROMANIAN FORUM