Web malware exploded in 2006
By Rene Millman,
The amount of malware targeting web browsers exploded in 2006 compared to previous years, a new report said.
The study, carried out by IBM's Internet Security Systems X-Force research team, found that web-targeted attacks and scripting vulnerabilities saw a massive increase with 7,247 vulnerabilities disclosed that year, 88 per cent of these were remotely exploitable by hackers.
The research found that 50 per cent of all websites hosting browser-targeted attacks used various obfuscation and encryption techniques to hide payloads from traditional detection techniques.
"Malicious individuals have stepped up efforts to defeat traditional client-side protection systems to help sustain profitable cyber crime," said the reports authors said. "Divisions between classic threat types are becoming blurred making it increasingly difficult to address cyber threats."
The report also found that malware is increasing in functionality and complexity. Downloaders dominated this area, comprising 22 per cent of total malware tracked. Worms such as Luder and Mytob continued to be a threat, while content-based malware has become one of the top threat risks to users and businesses.
Analysts at X-Force noted a five per cent increase in the number of vulnerabilities identified in April from the previous month. But there has been a seven per cent decrease in the number of vulnerabilities year on year for April.
The authors said that each vulnerability should be analysed along with the threat it posed.
"Paying attention to only a few purchased or internally discovered vulnerabilities could lead to risks in the network environment," said the authors. "Vulnerability discovery, while important, is only one of many activities that should be performed to mitigate risk."
You may also like...
advertisement
Latest Security Features
Q&A: The ID card commissioner talks cards and controversy
We spoke to ID card commissioner Sir John Pilling about his thoughts on the identity scheme and why we might all think he's a bit of prat down the line.
- So you've been hacked, now what?
- The problems facing Internet Explorer
- Year in Review: 2009 in your words
- Top 10 security predictions for 2010
- Year in Review: Top tech stories of 2009
- The worst IT disasters of 2009
- Five free security software suites
- How to stay safe shopping online
- Is it time to switch to IPv6?
Latest Security Reviews
Symantec Backup Exec 2010 review
Rating: ![]()
advertisement
Most popular
- App market will be worth $17.5 billion by 2012
- Open source developers ditch iPhone for Android
- Report: Macs cost less to run than Windows PCs
- Why is Microsoft accelerating Service Pack 1?
- Head to Head: Office 2010 vs Open Office 3.1
- Symantec Backup Exec 2010 review
- Q&A: Conrad Wolfram on communicating with apps in Web 3.0
- Fraudsters focus on ID theft, not stealing cash
- Google Nexus One review: A week with the superphone
- HTC Legend review
Latest News Videos in Security
Video: Why security is everybody's responsibility
Rik Ferguson, senior security advisor at Trend Micro says it's up to all of us to make security work.
Whitepapers
Want more background on today's hottest IT trends?
Visit IT PRO's whitepaper library for more on virtualisation, encryption and other topics.
Register for IT PRO
You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.






