Latest news
Marking the five-year anniversary since the CAN-SPAM act was signed into law in the United States, Barracuda Networks predicts that spam volumes will rise slightly higher than 95 percent in the year ahead as growing use of botnets continues to proliferate. An analysis of data from the more than one billion daily emails targeted at Barracuda Spam Firewalls worldwide, finds that spam levels in 2008 were largely unchanged over the previous year, making up between 90 and 95 percent of total email attempts.One such factor that may cause an increase in spam levels in the months to come is the emergence of spam originating from countries that had not previously been known for sending spam. For instance, Barracuda Central’s top 10 spam countries list ranks Brazil (6.77%) and Turkey (4.24%) in the second and fifth spots respectively.
Analysis of data from the more than one billion daily emails received by Barracuda Spam Firewalls found that identity obfuscation techniques were prevalent in a vast majority of spam campaigns sent in 2008. Hacked Web sites, the use of free hosting providers, as well as the rotation of new Web domains within the same campaign were all techniques that played major roles in hiding the identities of spammers in 2008.
In addition to botnet proliferation and identity obfuscation techniques, clever socially engineered phishing emails also continued to be a dominant force in 2008. In just the last quarter, several spam campaigns increased the use of trusted brands such as Microsoft and Google as well as more consumer-centric brands like Hallmark and McDonald’s in attempts to lure recipients into providing personal account information, or as an attempt to persuade users to execute potentially malicious downloads onto their PCs.
Stephen Pao, VP of product management for Barracuda Networks commented:
We believe that the combination of social engineering and sender identity obfuscation techniques will continue to merge, making it even more essential that customers use caution when accessing applications or providing personal information via URLs provided in emails.


Spotlight

The security of WordPress plugins
Posted on 18 June 2013. | Checkmarx’s research lab identified that more than 20% of the 50 most popular WordPress plugins are vulnerable to common Web attacks, such as SQL Injection.

Information security executives need to be strategic thinkers
Posted on 17 June 2013. | George Baker, the Director of Information Security at Exostar, talks about the challenges in working in a dynamic threat landscape, offers tips for aspiring infosec leaders, and more.

Large orgs in denial about own security breaches?
Posted on 14 June 2013. | Over two thirds (66%) of large organizations said they either had not experienced a security incident in the last 12-18 months or were unsure if they had.

Vulnerability scanning with PureCloud
Posted on 12 June 2013. | nCircle PureCloud is a cloud-based network security scanning product built upon the companies' vulnerability and risk management system IP360.

Reactions from the security community to the NSA spying scandal
Posted on 11 June 2013. | Read on for comments on this scandal that Help Net Security received from a variety of security professionals and analysts.
By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.







