Users snared in URL shortening quagmire

URL shorteners exploit redirection to aid phishing attacks.

URL shortening has led to an increase in spam by almost 3 per cent in May, according to research.

This includes 'fake URL redirection' where spammers establish phoney URL-shortening services to perform redirection.

According to the MessageLabs Intelligence Report, shortened links created on fake URL-shortening sites are not included directly in spam messages.

Instead, the spam emails contain shortened URLs created on legitimate URL-shortening sites. The shortened URLs lead to another shortened URL on the spammer's fake URL-shortening website, which in turn redirects to the spammer's own website.

Symantec also detected that the new domains were registered several months before they were used, potentially as a means to evade detection by legitimate URL-shortening services.

 “We have been monitoring the way that spammers abuse URL-shortening services for a number of years using a variety of different techniques, so it was only a matter of time before a new technique appeared,” MessageLabs Intelligence senior analyst Paul Wood said.

“What is unique about the new URL-shortening sites is that the spammers are treating them as ‘stepping stones', a link between public URL-shortening services and the spammers' own sites”.

The report also found some 3142 websites each day harboured malware, an increase of 30.4 per cent since April, while 36.8 per cent of malicious domains blocked were new in May, an increase of 3.8 per cent since April.

Copyright © SC Magazine, US edition
Users snared in URL shortening quagmire
Company/Organisation
Technology

What are your thoughts on this article? Add your comment below.

To begin commenting right away, you can log in below or register an account if you don't yet have one. Please read our guidelines on commenting. Offending posts will be removed and your access may be suspended. Abusive or obscene language will not be tolerated. The comments below do not necessarily reflect the views or opinions of SC Magazine, Haymarket Media or its employees.

NOTE: You must be a registered member of SC Magazine to post a comment.

Click here to login | Click here to register
comments powered by Disqus
Sign up to receive SC Magazine email newsletters
   FOLLOW US...
Most Read