Friday July 3, 2009 2:32 PM AEST
 
Latest Comments
"Agree that wireless hotspots are an easy way for hackers to gather information from connected ..."
by Patrick Hooper | Jul 3, 2009 4:06 AM
 
"Katarzyna what has this got to do with Symantec?? "
by PaulC | Jul 2, 2009 12:55 PM
 
"Hi Nadim, I'm the chief marketing officer at Ounce Labs, and I disagree with your statement. ..."
by Jennifer Sullivan | Jun 30, 2009 11:56 PM
 
"noobs!"
by webappsec | Jun 30, 2009 4:53 PM
 
"Jude makes a good point: by increasing the amount of false information provided to phishers, it ..."
by webappsec | Jun 30, 2009 4:43 PM

Spammers hijacking legit newsletters

  • Email a Friend
  • Print Page
Spammers hijacking legit newsletters
By Frank Washkuch
Jan 17, 2007 6:31 AM
Tags: Spammers | hijacking | legit | newsletters
Hackers have begun using newsletters to launch spam, joining legitimate newsletter creators in the hope to defy spam filters.
Researchers at Symantec say they've uncovered email messages that appear to be genuine newsletters - only to find the emails have been hijacked by spammers.

According to the US based anti-virus firm, Spammers embed their messages within a single file, which pops up after an affected user reads what he or she thinks is a normal newsletter message for a few minutes. 

Doug Bowers, senior director of anti-abuse engineering for Symantec, told SCMagazine.com today that the new spammer strategy is ironic, considering the problems legit newsletters once had avoiding spam filters.

"For us, [what stands out] is the irony that just a few years ago, a lot of legitimate newsletters were being classified as spam, and now it's being flipped the other way," he said.

An affected user will rarely see more than one "newsletter spam" message per day, meaning there is an obvious measure of control to the attacks, according to Symantec.

Bowers also said that the emails have so far only been seen within newsletters in HTML format. Symantec has captured spam pretenting to be newsletters from a fantasy football league, US Airways, Kohl's and 1-800-flowers.com.

"What we're seeing right now is that spammers are leveraging the format of that newsletter and inserting small modifications. It might look like that [legitimate] newsletter would appear, and then a message or some additional text would pop up," said Bowers.

"It potentially leads to confusion on the user's part because they're assuming a certain level of trust, and it's also a way to confuse filters. As far as whether or not it can be used to deliver or other security risks, that remains to be seen."

Click here to email Online Editor Frank Washkuch Jr.

 
Ads by Google
Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 
Exclusive Data Centre - Sponsored Content by Microsoft
 
Messaging Whitepapers