Language Selection

English French German Italian Portuguese Spanish

RSS, Spyware’s next frontier.

Filed under
Security

Richard Stiennon VP of Threat Research at anti-Spyware company Webroot Software, Inc earlier this year announced his predictions for 2005 in relation to security vulnerabilities and Spyware problems. Most of the predictions were fairly predictable like:

The number of new Microsoft vulnerabilities will grow.

Which isn’t a surprise to anyone in the IT industry and probably a good many people that aren’t. Other predictions like: The US and European nations will pass anti-spyware laws, and the number of different types of spyware will double to 3,000 are not exactly unexpected either.

However at least one of the predictions causes a pause for further thought. In short one prediction that RSS syndication will soon be used as a tool to distribute advertising, Spyware and other malicious code. RSS is basically just XML so the medium isn’t potentially dangerous by itself, but flaws that target specific RSS readers could conceivably result in the transfer of Spyware. RSS is already being used to distribute advertising so that one isn’t a surprise either. RSS has most of the benefits of E-mail and that means it also has most of the problems. One of those problems is that malicious parties can use social engineering tricks to get people to follow links in RSS to download malicious content, which is probably what Mr Stiennon meant. The problem with that theory is that a user must first subscribe to an RSS feed to be at risk at all, which makes it considerably less reliable a method of transferring malicious content then E-mail or web pages.

One other prediction Mr Stiennon made was that Firefox would become the target of Spyware sometime in the first half of this year. I’m not so sure about this one because it is mostly the more techie users that have become hooked on Firefox and they would not be particularly good targets for Spyware since they are also the kind of users most likely to have anti-Virus and anti-Spyware software running, if they are using Windows that is.

Source.

More in Tux Machines

Leftovers: Gaming

Today in Techrights

Basic Image Editing With GIMP In Linux

GIMP is an acronym for GNU Image Manipulation Program, is a raster image editing program for Linux, OSX, Windows and other OS/es. This is not a free photoshop program as many say so. Graphics enthusiasts and professionals rely on GIMP for image retouching or complete creation of images for artwork (which is a daunting task for novice). And yes GIMP is open source that means you get to keep it on your PC or laptop for free without legal hiatus. Read
more

Debian Packages and Derivative

  • Debian package dependency browser
    The Debian package browser is great but it is somewhat limited. As an example even though you can get dependencies and build dependencies for any package but not reverse dependencies (i.e. list all packages that depend or build-depend on this package).
  • Proxmox VE 5.0 to Be Based on the Great Debian GNU/Linux 9 "Stretch," Linux 4.10
    Martin Maurer, the Proxmox VE (Virtual Environment) project leader, announced the release and immediate availability for download of the first Beta of the upcoming Proxmox VE 5.0 series of the Debian-based operating system.