Scareware On the Rise, Microsoft Report Warns
April 10, 2009 8:21 AM
Overall most threats have dropped, but "Misc Trojans" which include fake antivirus suites, are on the rise.
Two rogue security software families are on millions of computers
When it comes to computer security, most users are aware that there are dangers, but are
of what these dangers are. They rely blindly on security software to protect them against these unseen evils. Unfortunately, malware makers have caught on to this and have began releasing fake security suites that essentially do little-to-nothing to protect users, and even sometimes perform malicious actions.
Microsoft sixth Security Intelligence Report, covering the second half of 2008 details the
rise of so-called "scareware"
-- fake security suites feeding off user fear. Microsoft takes a great deal of interest in computer security. Not only is it going to soon be offering
free antivirus software
to Windows users, but it also has much at stake -- as the the operating system leader, its systems are the primary target of elicit internet activity.
While the new report covers many topics, perhaps the most interesting is its analysis of the rise of scareware mongers -- modern snake oil salespeople. Describes the report, "
The prevalence of rogue security software has increased significantly over the past [year and a half].
Rogue security software uses fear and annoyance tactics to convince victims to pay for 'full versions' of the software in order to remove and protect themselves from malware, to stop the continual alerts and warnings, or both."
The report identifies two software families --
Win32/FakeXPA and Win32/FakeSecSen -- which were the biggest threat. The fake security suites associated with these families were found on over 1.5 million machines, making them among the most dangerous security threats.
This kind of deception has led some -- like
Alex Stamos, co-founder and partner at software security company ISEC Partners -- to suggest that "normal" users avoid internet use. He stated at a recent conference, "
The Internet cannot be safely used by normal people.
Most people are not prepared to make the technical decisions necessary to safely use the Internet."
Still, others argue that increased legitimate protection, which should expand to include better means of removing illegitimate security suites, can make up for user gullibility, to some extent. Ultimately gullibility and irresponsibility continue to be key factors in the insecurity of the internet. Of system breaches in the second half of 2008, over half (50 percent) were caused by lost or misplaced equipment by network users.
The report also finds that while operating systems like Windows are increasingly secure, the number of attacks on the application layer is vastly increasing. Applications require a level of trust, but that trust in turn allows abuse. Over 90 percent of vulnerabilities covered in the report targeted the application layer. This explains why increasingly Mac computers are being
hacked and made vulnerable
, despite the general lack of interest in attacking the underlying OS.
Evidence of Windows Vista's improvements in security over Windows XP were evident in the survey. Approximately
40.9 percent of browser exploits on Windows XP machines targeted Microsoft software, while only 5.5 percent did on Vista. Microsoft's additions to the application layers, such as Microsoft Office, also have greatly reduced in number of unpatched exploits. Describes the report, "
The most frequently exploited vulnerabilities in Microsoft Office software were also some of the oldest.
Over ninety-one percent of attacks examined exploited a single vulnerability for which a security fix had been available for more than two years (CVE-2006-2492)."
While the report represents good news for Microsoft -- that its security efforts are working -- it's also bittersweet. Microsoft is finding that security threats are increasingly not targeting its software. That puts tremendous pressure on Microsoft to deliver with its upcoming antivirus software offerings, as customers have come to expect much from the OS provider in terms of security.
"It's okay. The scenarios aren't that clear. But it's good looking. [Steve Jobs] does good design, and [the iPad] is absolutely a good example of that." -- Bill Gates on the Apple iPad
Apple Tells Users "Get a Mac... Antivirus Program"
December 2, 2008, 9:30 AM
Microsoft Announces Free Antivirus Software for H2 2009
November 19, 2008, 9:40 AM
Americans Still Somewhat Befuddled by Cyber Security
October 6, 2008, 10:05 AM
Science & Environment
February 20, 2017, 6:37 AM
The USA’s newest weather satellite sends first photos.
January 24, 2017, 6:41 AM
Netflix took a decision to invest in original content
January 19, 2017, 7:00 AM
Amazon Airborne Fulfillment Center – Your Merchandise Drop-Shipped from the Clouds
December 29, 2016, 5:00 AM
Amazon is experimenting with a new kind of grocery stores, Amazon Go
December 8, 2016, 5:00 AM
Google has developed Deep Learning Algorithm to detect Diabetic Eye Disease
December 4, 2016, 5:00 AM
Most Popular Articles
Samsung Galaxy S8, Rumored Launch Date!
March 18, 2017, 6:45 AM
Lenovo MIIX 510 – Excellent 2-In-One Tablet with Unique Watchband Hinge
March 17, 2017, 7:50 AM
Gigabyte GA-Z170X-Gaming G1 – Intel Thunderbolt 3 Certified Motherboard
March 9, 2017, 6:25 AM
Lenovo ThinkPad T460 - Ultra-Thin and Feather-light
March 3, 2017, 6:00 AM
Nokia has ditched this camera technology in its new smartphones
March 7, 2017, 8:45 AM
Latest Blog Posts
Apple buys an automation app called Workflow. The deal was completed today and brings the app along with its developers.
Mar 23, 2017, 7:35 AM
Apple Announces new color for iPhones and iPads
Mar 22, 2017, 7:45 AM
Instagram: You Can Now Save Live Videos For Later
Mar 21, 2017, 7:49 AM
Samsung Galaxy S8 to Get New Color Scheme
Mar 20, 2017, 7:45 AM
What else to worry about?
Mar 17, 2017, 6:45 AM
Icon of the Day: Intel/ NVIDIA or Mobileye
Mar 16, 2017, 6:15 AM
JUST IN - Twitter Hijacked : High-Profile Account Accesses
Mar 15, 2017, 7:07 AM
Mar 14, 2017, 7:30 AM
News and Tips
Mar 13, 2017, 6:30 AM
iPhone 8 – May Not Get Curved Screen
Mar 11, 2017, 8:00 AM
California paves way to self-driving car tests without humans
Mar 11, 2017, 7:18 AM
Smart Machines V hackers
Mar 10, 2017, 7:00 AM
Uber Can Resume Autonomous Car Testing in California
Mar 9, 2017, 6:50 AM
Mar 8, 2017, 7:09 AM
Mar 7, 2017, 8:45 AM
World news 3-6
Mar 6, 2017, 5:40 AM
Mar 4, 2017, 7:40 AM
Mixed News of the Day
Mar 4, 2017, 6:32 AM
Jaguar Land Rover invests in ride-sharing
Mar 3, 2017, 7:00 AM
Mixed News of The World:
Mar 2, 2017, 7:02 AM
World New 3-1
Mar 1, 2017, 6:30 AM
Gaming News of The Day
Feb 28, 2017, 6:56 AM
More Blog Posts
Copyright 2017 DailyTech LLC. -
Terms, Conditions & Privacy Information