• On GameSpot: Thinking about buying a Wii?
July 23, 2008 2:23 PM PDT

Blogspot.com cited as the No. 1 host for malware

by Robert Vamosi
  • Font size
  • Print
  • 6 comments

According to a report out Wednesday, antivirus vendor Sophos says it detects one Web page with malicious content every 5 seconds--a trend that is up 300 percent from 2007.

In its Security Threat Report for the first half of 2008, Sophos says it finds just over 16,000 malicious pages each day, mostly the result of malicious SQL-injection attacks on legitimate Web sites such as the attack on Sony's U.S. PlayStation site in July. Tricks used by criminal hackers include using simple HTML code to place via SQL-injection a 1x1 pixel element (about the size of a pin prick) on an infected page. In loading the page, the Internet browser would then contact a server running exploit scripts and malicious code. But because the sites are legitimate, some security vendors struggle with blocking infected Web pages.

As for illegitimate sites, Sophos notes that Geocities and Blogger both make it easy for anyone to set up a Web site without much identification. Blogger, owned by Google, is particularly problematic, says Sophos, with the blog site alone accounting for nearly 2 percent of all malware hosts. It is not only possible for the Blogger sites to host malicious code, but criminal attackers can also inject links to malicious sites in the comments sections of the blogs.

A spokeperson for Google said "Google takes the security of our users very seriously, and we work hard to protect them from malware. Using Blogger, or any Google product, to serve or host malware is a violation of our product policies. We actively work to detect and remove sites that serve malware from our network."

As CNET's resident security expert, Robert Vamosi has been interviewed on the BBC, CNN, MSNBC, and other outlets to share his knowledge about the latest online threats and to offer advice on personal and corporate security. Listen to his podcast at securitybites.cnet.com or e-mail Robert with your questions and comments.
Recent posts from Security
Malware found on HTC Android phone from Vodafone
Microsoft warns of zero-day IE hole on Patch Tuesday
Drudge Report accused of serving malware, again
Backdoor found in Energizer Duo USB battery charger
Police get Webcam pictures in school spy case
RSA 2010: Taking on cyberthreats
Microsoft to fix eight Windows and Office holes
Symantec exhibit makes cybercrime tangible
Add a Comment (Log in or register) (6 Comments)
  • prev
  • next
by Penguinisto July 23, 2008 4:44 PM PDT
Err, how hard is it to simply block IFRAME and php tags in the site software? Any competent CMS has that as a setup option nowadays.

Bleah.
Reply to this comment
by mnovickar July 24, 2008 2:56 AM PDT
Simple as that - let's face it.
When something on the web it's free and open to anyone the quality will be low and the risks will be high.
So if you are visiting blogspot and they aren't personal friends, check your sanity!

Science news: <a class="jive-link-external" href="http://www.chilipress.com/science.php" target="_newWindow">http://www.chilipress.com/science.php</a>
Reply to this comment
by JCPayne July 24, 2008 8:50 AM PDT
www. SMS . ac is yet another site to stay away from....
They just renamed themselves as www.fan | box.com I think or something... They tack on all sorts of stuff to your cell phone bill... They push fake avatars that will add you and start sending you fake SMS messages that they bill you for via your cell phone provider... Plus--- they will continually raid your email address book and continue sending themselves to your contacts... BEWARE.
Reply to this comment
by gmbidols August 26, 2008 5:59 AM PDT
Very Nice Blog. I Like Your <a href="http://www.marble-murti.blogspot.com/">Blog</a> Please Visit My <a href="http://www.lipsigprice.com">Website</a> and Give Your Review.<br/>
<a href="http://www.gmb.in/">http://www.gmb.in/</a> <a href="http://www.ancientpeaks.com/">http://www.ancientpeaks.com</a> <a href="http://www.marble-murti.blogspot.com/"></a>
Reply to this comment
by xperya October 4, 2008 10:51 AM PDT
Helolo im Jenny Glover.
I using AdwareAlert.com to remove spyware/adware from his computer!


Jenny Glover
--------------------
&lt;a href="http://www.downloademaillist.com/record/jenny_glover_dover_19901_usa_state_de.html" title="Jenny Glover, Dover, Delaware 19901 - SSN, Credit Records, Arrest Records, Court Records, Criminal Records .."&gt;Jenny Glover, Dover, Delaware 19901 - SSN, Credit Records, Arrest Records, Court Records, Criminal Records ..&lt;/a&gt;
Reply to this comment
by xperya October 4, 2008 10:52 AM PDT
Helolo im Jenny Glover.
I using AdwareAlert.com to remove spyware/adware from his computer!


Jenny Glover
--------------------
&lt;a href="http://www.downloademaillist.com/record/jenny_glover_dover_19901_usa_state_de.html" title="Jenny Glover, Dover, Delaware 19901 - SSN, Credit Records, Arrest Records, Court Records, Criminal Records .."&gt;Jenny Glover, Dover, Delaware 19901 - SSN, Credit Records, Arrest Records, Court Records, Criminal Records ..&lt;/a&gt;
Reply to this comment
(6 Comments)
  • prev
  • next
advertisement
CNET River
advertisement

100Mbps broadband closer than you think

Super fast broadband speeds are possible today, but the problems are what to do with all that bandwidth and who really wants to pay for it?

FAQ: All about the Apple iPad

CNET has answers to the most frequently asked questions about Apple's new touch-screen tablet, due April 3.

About Security

Online security is threatened by more than hacking and phishing attempts. Check here for the latest updates on software vulnerabilities, data leaks, and rapidly spreading viruses--and learn how to protect your systems.

Add this feed to your online news reader

Security topics

advertisement
advertisement

Inside CNET News

Scroll Left Scroll Right