Looking at the online black market

| | Comments (0) | TrackBacks (0)

SC Magazine has a whitepaper from MessageLabs titled The Online Shadow Economy - A Billion Dollar Market. It reports on the research of MessageLabs Senior Architect of Development Maksym Schipka into the online criminal underworld, particularly Russian websites and forums.

You can buy customer written malware for as little as $250. Support is available for an extra $25 a month to ensure your malware continues to evade detection. As others have also reported, malware writers test their products against anti-virus software before release to guarantee that existing signatures will not detect it. This is where MessageLabs as been so great. The combination of established antivirus scan engines and their own Skeptic engine, a heuristic scanner, prevents malicious email attachments from getting through.

Schipka’s research suggests that malware authors can produce new, unique malware every 45 seconds
in order to keep it undetected. Signature based protections are not going to stand up to that attack.

If you do go to that link to read the research paper, be aware that SCMag will force you to register (I didn't find a bugmenot account). Also they will email the password you input in clear text. SCMag, thanks for cleartexting my password. I almost forgot the password in the one second between registering and receiving the "welcome" email.

Categories

0 TrackBacks

Listed below are links to blogs that reference this entry: Looking at the online black market.

TrackBack URL for this entry: http://www.infosecblog.org/mt-tb20071121.pl/700

Leave a comment

Powered by Ajax Comments

About this Entry

This page contains a single entry by Roger published on March 15, 2008 6:29 PM.

Firewire Attack Against Pointsec was the previous entry in this blog.

30 more is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.

Add to Google
Please contact me by leaving a comment where appropriate. Otherwise, you can click here to reveal an email address for me.
Got Backups? Get Safe Online Remember Rick Rescorla Powered by Movable Type 4.2-en