2012 Web Security Report Reveals the Evolution of Sophisticated Cybercriminal Infrastructure to Deliver Web Attacks
February 13, 2012 07:45 ET
2012 Web Security Report Reveals the Evolution of Sophisticated Cybercriminal Infrastructure to Deliver Web Attacks
Malicious Sites Increase 240% in 2011 With Average Business Facing 5,000 Threats per Month
SUNNYVALE, CA--(Marketwire - Feb 13, 2012) - Blue Coat Systems, Inc. (
The report is available, free of charge, from Blue Coat by clicking [ here. ]
Malnets are distributed network infrastructures within the Internet that are built, managed and maintained by cybercriminals for the purpose of launching a variety of attacks against unsuspecting users over extended periods of time. The end game for malnets typically is either stealing personal information or transforming end-user systems into botnets. The Blue Coat 2012 Web Security Report details the strategies and tactics that malnet operators deploy to snare users and funnel them to dynamic malware payloads, or software which surreptitiously installs on users' computers designed for malicious or criminal purposes.
"In 2011, the ease of buying, customizing and deploying malicious software kits, coupled with a faster rotation through domain names, drove a 240% increase in malicious sites," said Chris Larsen, senior malware researcher, Blue Coat Systems. "With the average business now facing 5,000 threats per month, identifying and tracking malnets to block attacks at the source before they are launched is the most effective protection. Blue Coat uniquely provides protection from malnet-launched attacks even before they happen."
According to the report, the most common entry point into these malicious infrastructures relies on the path of least resistance, utilizing entry points that are easy to exploit, such as search engines/portals and email, or are utilized by large, diverse populations of users. Malnets have become so effective at launching attacks through search engines/portals that one in 142 searches leads to malicious links.
The 2012 Web Security Report examines the malnet ecosystem in depth, examining user behavior, malnet strategies and tactics, as well as highlighting the best defenses against these aggressive infrastructures. The report includes topics, such as:
- Most common content categories for intentionally or inadvertently hosting malware
- Malvertising attacks that funnel users into malnets via malicious Web advertisements
- Internet within an Internet that exists on social networking sites
- Negative day defense as a protection against the dynamic nature of malnets
It also explores how the existence of these malnets is driving broader changes in the threat landscape, including:
- The growing use of social networking to conduct trust and reputation-based attacks
- A shift away from news-driven topics for search engine poisoning attacks
- A significant increase in email attacks
The report analyzes data from the Blue Coat® WebPulse™ service. WebPulse is a cloud-based, real-time analysis and ratings service that unites users in a common defense. Delivered via Blue Coat ProxySG® appliances and the Blue Coat Cloud Service, WebPulse receives one billion Web requests each day from 75 million globally diverse users. With comprehensive visibility into the Web ecosystem, WebPulse can automatically identify abnormal traffic and correlate it to known malnets to block attacks before they are launched. Utilizing these techniques and other advanced analysis tools, WebPulse blocks 3.3 million threats per day.
About Blue Coat Systems
Blue Coat Systems is a leading provider of Web security and WAN optimization solutions. Blue Coat offers solutions that provide the visibility, acceleration and security required to optimize and secure the flow of information to any user, on any network, anywhere. This application intelligence enables enterprises to tightly align network investments with business requirements, speed decision making and secure business applications for long-term competitive advantage. Blue Coat also offers service provider solutions for managed security and WAN optimization, as well as carrier-grade caching solutions to save on bandwidth and enhance the end-user Web experience. For additional information, please visit [ www.bluecoat.com ].
Blue Coat, ProxySG, WebPulse and the Blue Coat logo are registered trademarks or trademarks of Blue Coat Systems, Inc. and/or its affiliates in the United States and certain other countries. All other trademarks mentioned in this document are the property of their respective owners.