News Blog

News Blog


New Koobface worm lets hackers play tricks on Facebook, MySpace members

Is there a new generation of the so-called "Koobface" worm that's been plaguing social networking sites?

Apparently so. Rik Ferguson, a researcher with computer security software maker Trend Micro, earlier this week reported on the company's Web site that he had found a new variant of Koobface, which first surfaced in December, after investigating a Facebook message he received that appeared to have come from someone on his friends list and directed him to a spoofed YouTube site. The worm contacted him after stealing his pal's log-in credentials (from a cookie created by Facebook and stored on that person's computer), accessing the pal's Facebook account and sending out messages people he listed as friends.

At the bogus YouTube site, Ferguson was asked to install a file that would supposedly update his Adobe Flash Player. The file turned out to be a program that attempted to install the new Koobface variant (known as WORM_KOOBFACE.AZ). Ferguson and his Trend Micro colleagues studied the file and found that it was being made available by more than 300 computers around the world. (This is a common trick that hackers use: by routing the malicious software through a large number of IP addresses, it is more difficult to trace the source of it back to them.)

Trend Micro found that Facebook wasn't the only social networking site to have been hit by Koobface. Variations of the phony message that Ferguson received were sent to users of 10 different sites, including Hi5, Friendster and MySpace. Trend Micro recommends that Web users ignore these messages and refrain from clicking on them (even out of curiosity). Fortunately, this latest incarnation of Koobface doesn't appear to be widespread. Trend Micro has only found 28 computers infected by it worldwide (26 in the U.S. and the other two in France).

It's been a rough several days for Facebook from a security perspective: Four hoax applications have surfaced on the site, in addition to the Koobface problem, BBC News reports. One of these malicious applications tries to trick people into adding it by claiming that their friends were having trouble looking at their profiles. If the application is added it spams itself to every Facebook friend that a member of the site has, according to the BBC.

Facebook has tried to alleviate the problem of hackers targeting its members. In November, the company launched its application verification program, through which software developers could have their work inspected before it was added to the Facebook site. For their troubles (as well as a $375 fee), developers' software making the grade would receive a verification badge graphic as a symbol that the application was trustworthy and safe for members to use. Facebook's verification process is optional, but CNET in November reported that other social networks, including LinkedIn, require all apps to go through a verification process before they can go live.

Image ©iStockphoto.com/ Robert Creigh

Tags: Facebook. MySpace, Koobface, LinkedIn
More News Blog: Next: What's "surprising" about HIV in 50-somethings? Previous: Cassini spacecraft spots a new moonlet in Saturn's rings

2 Comments

Add Comment
View
  1. 1. benjaminwright 10:11 PM 3/4/09

    My <a href="http://computersafety.wordpress.com/2009/01/19/security-threat-facebook-and-myspace-at-work/">research documents reports of the Koobface worm infecting</a> (or attempting to infect) workplace-related computers by way of Facebook. Employers/organizations thus have security as a reason to block social network sites. http://computersafety.wordpress.com/2009/01/19/security-threat-facebook-and-myspace-at-work/ --Ben

    Reply | Report Abuse | Link to this
  2. 2. dog1 06:45 PM 3/18/09

    Whats science?

    Reply | Report Abuse | Link to this
Leave this field empty

Add a Comment

You must sign in or register as a ScientificAmerican.com member to submit a comment.
Click one of the buttons below to register using an existing Social Account.

More from Scientific American

See what we're tweeting about

Scientific American Editors

More »

Free Newsletters


Get the best from Scientific American in your inbox

Solve Innovation Challenges

Powered By: Innocentive

  SA Digital
  SA Digital

Email this Article

New Koobface worm lets hackers play tricks on Facebook, MySpace members: Scientific American Blog

X
Scientific American Magazine

Subscribe Today

Save 66% off the cover price and get a free gift!

Learn More >>

X

Please Log In

Forgot: Password

X

Account Linking

Welcome, . Do you have an existing ScientificAmerican.com account?

Yes, please link my existing account with for quick, secure access.



Forgot Password?

No, I would like to create a new account with my profile information.

Create Account
X

Report Abuse

Are you sure?

X

Institutional Access

It has been identified that the institution you are trying to access this article from has institutional site license access to Scientific American on nature.com. To access this article in its entirety through site license access, click below.

Site license access
X

Error

X

Share this Article

X

About the Bering in Mind Blog

In this column presented by Scientific American Mind magazine, research psychologist Jesse Bering of Queen's University Belfast ponders some of the more obscure aspects of everyday human behavior. Ever wonder why yawning is contagious, why we point with our index fingers instead of our thumbs or whether being breastfed as an infant influences your sexual preferences as an adult? Get a closer look at the latest data as "Bering in Mind" tackles these and other quirky questions about human nature. Sign up for the RSS feed or friend Dr. Bering on Facebook and never miss an installment again.

X

About the Cross-check Blog

Every week, John Horgan takes a puckish, provocative look at breaking science. A former staff writer at Scientific American, he is the author of several books—most notably, The End of Science: Facing the Limits of Knowledge in the Twilight of the Scientific Age. He currently directs the Center for Science Writings at Stevens Institute of Technology. He lives in New York State's Hudson Highlands, where he plays ice hockey each winter to hone his cross-checking skills.

X

Expeditions Blog

Ever wonder what it's really like to be working in Antarctica or collecting core samples from the middle of the Pacific Ocean? Get a first-hand feel for scientific exploration by following the blog posts of researchers out in the field.

X

About the Extinction Countdown Blog

Several times a week, John Platt shines a light on endangered species from all over the globe, exploring not just why they are dying out but also what's being done to rescue them from oblivion. From unusual or little-known organisms like the giant spitting earthworm and the stinking hawk's-beard to popular favorites like cheetahs and koalas, Platt, a journalist specializing in environmental issues and technology, does his part to slow the countdown.

X

About the Guest Blog

The editors of Scientific American regularly encounter perspectives on science and technology that we believe our readers would find thought-provoking, fascinating, debatable and challenging. The guest blog is a forum for such opinions. The views expressed belong to the author and are not necessarily shared by Scientific American.

X

About the Solar at Home Blog

Follow Scientific American editor George Musser as he installs--or tries to install--solar photovoltaic panels on the roof of his suburban New Jersey home. You'll learn the literal nuts and bolts of going green with the sun and get energy-saving tips even if you aren't putting up panels.

Write to us with tips or comments at blog@sciam.com and follow us on Twitter: http://twitter.com/sciam.

X