Share

Related Links

Related Stories

  • Symantec report observes surge in malicious code for 2008
    Security provider, Symantec, found that malicious code activity continued to grow at a record pace throughout 2008, with the most prominent target being confidential information, according to the Symantec Internet Security Threat Report Volume XIV.
  • Lumension survey predicts ITsec trends for 2009
    End of year research commissioned by enterprise endpoint security specialist Lumension has found that outsourcing is likely to be a major IT security talking point in 2009.
  • End point security: a five-year craze?
    Deperimeterization secures sensitive corporate data. End point security is an essential ingredient in this concept. But how effective is it? Will everyone be jumping on the EPS bandwagon or will it prove too expensive and too impractical for small and medium sized companies? Cath Everett reports.
  • Web 2.0 sites prime hacker target says report
    Web 2.0-driven websites are now a premier target for hackers, amounting to 21% of all reported hacking incidents, according to an IT security report from the Secure Enterprise 2.0 Forum.
  • Security Education: A Lesson Learned?
    Despite users being the most integral part of information security, only one to two percent of security budgets are being spent on awareness and education. Stephen Pritchard reports
    Members' Content

Top 5 Stories

News

19% of online attacks targetting social networking sites

19 August 2009

Research just released says that 19% of all hacking incidents centered on social networking sites during the first half of 2009. The study, from Nebulas Solutions Group, noted a 30% rise in the percentage of online attacks compared with the first half of 2008.

The study - conducted in concert with Breach Security, the virtualisation and security firm's US partner - found that the planting of malware and overt changes remain the most common outcome of web attacks, accounting for 28%.

Leakage of sensitive data, meanwhile, came a close second at 26%  - up from 19% in H1 2008 - and 'disinformation' came a distant third at 19%, mainly due to the hacking of celebrity online identities, said the company.

On the attack vector front, injection remains the number one attack methodology, accounting for nearly one-fifth of all security breaches, with authentication abuse at 11% tracking in second place.

Cross Site Request Forgery, meanwhile, rose to number five with 5% of the reported attacks, said the study.

Commenting on the the Web Hacking Incidents Database (WHID) 2009 Bi-Annual Report, Nick Garlick, managing director of Nebulas Solutions Group said: "The report's findings clearly show that social networking sites are being targeted."

"We've seen and heard anecdotal evidence that web 2.0 applications are being attacked more frequently and more aggressively, but the scale of these findings show very clearly that organisations must now look very closely at their security policies and procedures around web 2.0," he said.

"Many companies still don't fully comprehend the security risks that social networking sites and user-generated content can represent, so this report is a wake-up call for them and highlights the need to address these issues as a key priority," he added.

 

 


 

This article is featured in:
Data Loss  • Internet and Network Security • Malware and Hardware Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.