Authors
Kurt Thomas, David M Nicol
Publication date
2010/10/19
Conference
2010 5th International Conference on Malicious and Unwanted Software
Pages
63-70
Publisher
IEEE
Description
As millions of users flock to online social networks, sites such as Facebook and Twitter are becoming increasingly attractive targets for spam, phishing, and malware. The Koobface botnet in particular has honed its efforts to exploit social network users, leveraging zombies to generate accounts, befriend victims, and to send malware propagation spam. In this paper, we explore Koobface's zombie infrastructure and analyze one month of the botnet's activity within both Facebook and Twitter. Constructing a zombie emulator, we are able to infiltrate the Koobface botnet to discover the identities of fraudulent and compromised social network accounts used to distribute malicious links to over 213,000 social network users, generating over 157,000 clicks. Despite the use of domain blacklisting services by social network operators to filter malicious links, current defenses recognize only 27% of threats and take on average 4 …
Total citations
2009201020112012201320142015201620172018201920202021202220232024211122212017162215798631
Scholar articles
K Thomas, DM Nicol - 2010 5th International Conference on Malicious and …, 2010