Most malicious code hosted in US and UK - report
By Matt Whipp
Posted on 26 Mar 2007 at 16:49
Despite having computer crime laws, some 90 per cent of malicious traffic in the UK came from servers in the US or UK, according to security experts Finjan.
The US came top, hosting more than 80 per cent, but the UK was second, with just under 9 per cent, followed by Canada, Germany and Italy.
The problem behind the figures is a preponderance of free and low-cost web hosting services in the US and Europe. As organised crime industrialises cyber-criminality, attacks are run as a business, with hosting as a cost to be cut.
'The results of this study shatter the myth that malicious code is primarily being hosted in countries where e-crime laws are less developed,' stated Yuval Ben-Itzhak, CTO at Finjan. 'Our research shows that malicious content is much more likely to show up on a local server than one in Asia or Eastern Europe. Unfortunately this means that the traditional location-based reputation heuristics are decreasingly effective against modern attacks.'
Symantec's latest report for the latter half of 2006 puts the US at the top for malicious activity with 31 per cent, followed by China with 10 per cent, Germany with 7 per cent, France with 4 per cent, and the UK with 4 per cent.
Russia doesn't even feature in the top 10.
It's a similar story for phishing. Germany topped the European poll as hosting most phishing sites in Europe, and was second globally, followed by the UK, France, Netherlands and Spain (in Europe).
Security company F-Secure has long campaigned against the practice of allowing the registration of obviously malicious URLs such as signin-ebay-c.com - one of several thousand dodgy domains it found searching the records of registrars. It published an open letter in December calling for registrars to take some action over the issue.
Web hosting company Strato says it has witnessed much of what these companies describe first hand. 'We saw many spammers taking up [domain registration] offers,' said CEO Damian Schmidt. 'Now we call up every customer to check the line exists. If no-one answers we cancel the order.' But Schmidt says Strato is unique in making these checks. Despite its size - Strato handles roughly a quarter of all European traffic - it will need the co-operation of all companies taking domain registrations to make an impact on malicious URLs.
From around the web
advertisement
- Chrome's shine getting lost in translation
- BytePac: the cardboard hard disk enclosure
- How tech loosens our grip on reality
- Hokum watch: Safer Internet Day
- Why I'm deleting Adobe from my PC
- Prepare to be patronised: it's Safer Internet Day
- Dear Sony, Samsung and every other tech company in the world: stop trying to be Apple
- Will Apple's Final Cut Pro X update placate the pros?
- Smartr Contacts for iPhone review
- Switching to Office 365's Outlook Web App
- Why virtualisation hasn't slowed the growth of data
- How to make Google AdWords work for your business
- The curse of sloppily written software
- Paying for your crimes with Bitcoin
- Behind the scenes: tech support for Formula 1
- The security risk of fat fingers
- Why Windows Phone 7 isn't quite ready for business
- When will Microsoft stop fiddling with Windows 8?
- Flash down the pan?
- Metro Style apps vs desktop applications
advertisement
