On TechRepublic: 12 tech terms that make you sound old
BNET Business Network:
BNET
TechRepublic
ZDNet

August 27th, 2009

The most dangerous celebrities to search for in 2009

Posted by Dancho Danchev @ 1:27 pm

Categories: Anti Virus, Botnets, Browsers, Hackers, Malware, Passwords, Russia, Ukraine, Uncategorized, Web 2.0

Tags: Web, Digg, Malware, Spyware, Adware & Malware, Cyberthreats, Viruses And Worms, Security, Dancho Danchev

Searching for which celebrity has the highest probability of tricking you into visiting a malware-friendly web site?

Last year it was Brad Pitt, but according to this year’s McAfee report “Riskiest Celebrities to Search on the Web“, it’s Jessica Biel related searches that have “one in five chance of landing at a Web site that’s tested positive for online threats, such as spyware, adware, spam, phishing, viruses and other malware“.

Just like previous editions of the report, the latest one has also excluded the dominant adult content theme, as well as the fact that static lists of dangerous keywords to search for are long gone from the arsenal of the experienced blackhat SEO campaigner. In 2009, cybercriminals enjoy the benefits of the real-time Web at its best, by dynamically serving malware based on trending topics, or occupying as many keywords as possible through blackhat SEO (search engine optimization) tactics.

A good example of the current situation is an ongoing malicious campaign abusing Digg’s high page rank, which is redirecting to scareware-serving sites by hijacking keywords related to any of the top 15 celebrities listed in McAfee’s report.

Taking into consideration Digg’s high page rank and the near real-time crawling of Digg submitted content, cybercriminals are systematically abusing major Web 2.0 services in order increase the visibility of their malicious content. Moreover, not only are they diversifying the themes, but also, by abusing multiple Web 2.0 services there are instances where the first 10 search results for a particular keyword are all populated by malicious sites part of a single campaign.

The bottom line is that any celebrity related search can lead to a malicious site depending on the momentum of a particular campaign, or the type of theme the cybercriminal chose to use. Therefore, relying on static lists for potentially dangerous keywords is unrealistic in a cybercrime ecosystem that’s taking advantage of the traffic peak momentum in real-time.

Dancho DanchevDancho Danchev is an independent security consultant and cyber threats analyst, with extensive experience in open source intelligence gathering, malware and cybercrime incident response. He's been an active security blogger since 2007, and maintains a popular security blog. See his full profile and disclosure of his industry affiliations.

Email Dancho Danchev

Subscribe to Zero Day via Email alerts or RSS.

  • Talkback
  • Most Recent of 6 Talkback(s)
RE: The most dangerous celebrities to search for in 2009
Judging by some of the "headline malware" we've seen, and search engine SEO we've observed, malware writers are using automated methods to take advantage of the latest news headlines.

Jessica B... (Read the rest)
Posted by: savio.lau Posted on: 08/28/09 You are currently: a Guest | | Terms of Use
In 3... 2... 1... (nt)  NonZealot | 08/27/09
RE: The most dangerous celebrities to search for in 2009  freebird1974 | 08/28/09
You don't talk about ...  Ronny102 | 08/28/09
RE: The most dangerous celebrities to search for in 2009  wizodd@... | 08/28/09
RE: The most dangerous celebrities to search for in 2009  shanedr | 08/28/09
RE: The most dangerous celebrities to search for in 2009  savio.lau | 08/28/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

  • Smart Tech Expert advice on innovations in healthcare and the green technologies that make it happen. Find out more
  • Smart Business Discussion and advice on management issues that revolve around making your world smarter and more useful. More Smart Advice
  • Smart People The best and worst moves in the management and strategy trenches. Learn More