SEO poisoning attack hits big sites; Can the defenses scale?

Summary:Security researcher Dancho Danchev said Friday that SEO poisoning attacks have scaled up and are attacking well known sites. Google has been filtering its results as a defense, but Danchev's latest finding brings up an interesting question: Can the defenses scale?

Security researcher Dancho Danchev said Friday that SEO poisoning attacks have scaled up and are attacking well known sites. Google has been filtering its results as a defense, but Danchev's latest finding brings up an interesting question: Can the defenses scale?

First, a few key points. SEO poisoning isn't new. In fact, targeted IFRAME attacks have been around for months. Danchev's point (Techmeme):

What has changed since the last time? The number and importance of the sites has increased, Google is to what looks like filtering the search results despite that the malicious parties may have successfully injected the IFRAMEs already, thus trying to undermine the campaign, new malware and fake codecs are introduced under new domain names, and a couple of newly introduced domains within the IFRAMES themselves.

These attacks are impacting ABCNews.com, News.com, Target.com, Walmart and dozes of other sites.

Danchev's findings are a must read--especially if you follow all the coding behind the scenes. But these attacks have a whack-a-mole quality to them. These attacks keep popping up and at some point you get tired of whacking them. What will be interesting to watch is how Google's defenses scale up in defense of these attacks. Google can scale. And malicious hackers can scale. It's an interesting race to say the least.

Topics: Google, Security

About

Larry Dignan is Editor in Chief of ZDNet and SmartPlanet as well as Editorial Director of ZDNet's sister site TechRepublic. He was most recently Executive Editor of News and Blogs at ZDNet. Prior to that he was executive news editor at eWeek and news editor at Baseline. He also served as the East Coast news editor and finance editor at CN... Full Bio

zdnet_core.socialButton.googleLabel Contact Disclosure

Kick off your day with ZDNet's daily email newsletter. It's the freshest tech news and opinion, served hot. Get it.

Related Stories

The best of ZDNet, delivered

You have been successfully signed up. To sign up for more newsletters or to manage your account, visit the Newsletter Subscription Center.
Subscription failed.