<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://pandalabs.pandasecurity.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>PandaLabs : Trends</title><link>http://pandalabs.pandasecurity.com/archive/tags/Trends/default.aspx</link><description>Tags: Trends</description><dc:language>en</dc:language><generator>CommunityServer 2.1 SP2 (Build: 61120.2)</generator><item><title>Rogueware campaign on Twitter continues...</title><link>http://pandalabs.pandasecurity.com/archive/Rogueware-campaign-on-Twitter-continues_2E002E002E00_.aspx</link><pubDate>Thu, 04 Jun 2009 08:13:00 GMT</pubDate><guid isPermaLink="false">b262f9bf-63e5-46e5-8a14-4069a6997bc7:1003</guid><dc:creator>Sean-Paul Correll</dc:creator><slash:comments>0</slash:comments><comments>http://pandalabs.pandasecurity.com/comments/1003.aspx</comments><wfw:commentRss>http://pandalabs.pandasecurity.com/commentrss.aspx?PostID=1003</wfw:commentRss><description>
&lt;p align="left"&gt;The Twitter Trends based  attack &lt;a href="http://pandalabs.pandasecurity.com/archive/Rogueware-Campaigns-now-blending-into-Twitter-Trends.aspx" target="_blank"&gt;we blogged about yesterday&lt;/a&gt; has expanded from just one trend to nearly  all of them! &amp;nbsp;&amp;nbsp;Over the past 24 hours,  there have been several thousand tweets targeting trending topics on Twitter and  the numbers continue to rise.&amp;nbsp;&lt;br /&gt;
 
  &lt;br /&gt;
    &lt;a href="http://www.flickr.com/photos/lithium-/3594094709/sizes/o/"&gt;&lt;img alt="@lithium" border="0" src="http://farm4.static.flickr.com/3553/3594094709_88d050b2dd.jpg" /&gt;&lt;/a&gt;&lt;br /&gt;
    &lt;br /&gt;
    &lt;strong&gt;Example Tweets:&lt;/strong&gt;&lt;br /&gt;
    &lt;br /&gt;
    &lt;a href="http://www.flickr.com/photos/lithium-/3594902566/sizes/o/"&gt;&lt;img alt="Malicious Tweets" border="0" src="http://farm4.static.flickr.com/3400/3594902566_ae651d6646.jpg" /&gt;&lt;/a&gt;&lt;br /&gt;
    &lt;br /&gt;
  As you can see from the example tweets, the cyber criminals  are targeting twitter trends in real-time.&amp;nbsp;  &amp;nbsp;&amp;nbsp;I went ahead and captured every tweet up until  about 8PM tonight and put together a Tag Cloud so that you can see what terms  were targeted more frequently.&lt;br /&gt;
  &lt;br /&gt;
  &lt;a href="http://www.flickr.com/photos/lithium-/3594094809/sizes/o/"&gt;&lt;img alt="Tag Cloud" border="0" height="400" src="http://farm4.static.flickr.com/3377/3594094809_c266bbb150.jpg" width="500" /&gt;&lt;/a&gt;&lt;br /&gt;
  &lt;br /&gt;
  Clicking on any of the links will put you through a series of redirects,  at which point you will arrive at a website prompting you to install a fake  Adobe Flash plugin (flash_player_plugin.exe).&amp;nbsp; If the so-called &amp;ldquo;plugin&amp;rdquo;  is installed, then the computer will be infected with &lt;a href="http://www.pandasecurity.com/homeusers/security-info/about-malware/encyclopedia/overview.aspx?lst=det&amp;amp;idvirus=207660"&gt;Adware/PrivacyCenter&lt;/a&gt;.&lt;br /&gt;
  &lt;br /&gt;
  &lt;a href="http://www.flickr.com/photos/lithium-/3594094885/sizes/o/"&gt;&lt;img alt="Malicious Site" border="0" height="375" src="http://farm4.static.flickr.com/3609/3594094885_642aeb28a2.jpg" width="500" /&gt;&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;The emergence of this type of threat distribution method demonstrates  how cyber criminals are adjusting and evolving to the newer services offered on  the Internet.&amp;nbsp; It&amp;rsquo;s especially dangerous  with sites like Twitter, which offer up to the second updates (or live tweets)  of events as they unfold in real time.&amp;nbsp;  In the future, sites which promote an unfiltered and open dialog through  a global hive of users will have to think twice about the potential threats exposed  by features or even API services that they offer.&amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;/p&gt;&lt;img src="http://pandalabs.pandasecurity.com/aggbug.aspx?PostID=1003" width="1" height="1"&gt;</description><category domain="http://pandalabs.pandasecurity.com/archive/tags/Rogueware/default.aspx">Rogueware</category><category domain="http://pandalabs.pandasecurity.com/archive/tags/Twitter/default.aspx">Twitter</category><category domain="http://pandalabs.pandasecurity.com/archive/tags/flash_5F00_player_5F00_plugin.exe/default.aspx">flash_player_plugin.exe</category><category domain="http://pandalabs.pandasecurity.com/archive/tags/Trends/default.aspx">Trends</category></item></channel></rss>