Catch up on stories from the past week (and beyond) at the Slashdot story archive

 



Forgot your password?
typodupeerror
×
Security Businesses Google The Internet IT

Google Says Spam, Virus Attacks to Get More Clever 108

eweekhickins writes "Google's Postini team says new attacks will take the form of sneaky viruses that will blend with spam, leveraging specific current events, such as the Super Bowl or the Summer Olympic Games. Better yet, virus attacks will target executives at companies whose intellectual property is deemed valuable on the black market. A lot of these attacks will masquerade as legitimate business agencies, such as the Internal Revenue Service, the Better Business Bureau and the SEC."
This discussion has been archived. No new comments can be posted.

Google Says Spam, Virus Attacks to Get More Clever

Comments Filter:
  • And you know (Score:5, Insightful)

    by WindBourne ( 631190 ) on Monday March 10, 2008 @12:40PM (#22703018) Journal
    that these will be successful. So many suckers, so little time.
  • Re:And you know (Score:5, Insightful)

    by Brian Gordon ( 987471 ) on Monday March 10, 2008 @12:46PM (#22703166)
    I'm thinking the suckers are the ones paying these guys to wildly speculate about things everyone suspects..
  • Re:And you know (Score:2, Insightful)

    by KublaiKhan ( 522918 ) on Monday March 10, 2008 @12:46PM (#22703168) Homepage Journal
    Absolutely. The IRS ones, especially, are bound to be extremely successful this year, as everyone knows about the little bonus coming sometime in May, so a little phishing trip to "confirm your details" on an official-looking website will likely take in a few hundred folks...
  • YAWN (Score:4, Insightful)

    by samos69 ( 977266 ) on Monday March 10, 2008 @12:54PM (#22703334)
    This is a sales pitch, there's nothing new in that article. Google is just fishing for more business for postini...
  • by LurkerXXX ( 667952 ) on Monday March 10, 2008 @12:57PM (#22703372)
    No one should be surprised at all. Everything in that /. topic that google says is going to happen has already happened. Those exploits have already been tried. This is not news. This is not a prediction. This is a newsflash that the sky is likely to be blue tomorrow.
  • by querist ( 97166 ) on Monday March 10, 2008 @01:34PM (#22704098) Homepage
    The underlying concept of your idea is good.

    However, I can see a few issues that would impact the rate of adoption and the overall utility of your approach (assuming, for the sake of simplicity, that the cryptographic aspects are implemented in a truly secure manner, the crypto itself is strong, etc. I fully realize that this is like the proveribial "frictionless surface" and the proverbial "ideal conductor" used in science books. I'm just trying to cover the big points here, OK?):

    1. It will not happen until Verisign (for example) decide that there is enough of a market that they can make a decent profit.

    2. It will either price small businesses out of the market (given Verisign's prices, this is likely) or it the price will be such that small businesses can afford it and then so can the spammers. Before you start claiming that is why there is a vetting process, I would suggest that hurdles low enough for small "mom-and-pop" businesses to jump will be low enough for a determined spammer.

    3. Either we need a "Root CA" mechanism like other certificates (again, profit and "are you sure you can trust this") or the whole "web of trust" thing from PGP. The web of trust would be difficult in that it would make legit messages appear fake until you can determine it. Also, how would "Joe Sixpack" know the difference between a legit cert for the IRS and a faked one?

    Your idea is good. Unfortunately, the current environment is not ready for it. I hope we will see the day when it will work.

Understanding is always the understanding of a smaller problem in relation to a bigger problem. -- P.D. Ouspensky

Working...