You are here: silicon.com > Software > Security Strategy

Security Strategy

Malware-infected site detected every five seconds

SQL injection attacks on the rise

Tags: sophos, malware

By Nick Heath

Published: 23 July 2008 15:52 BST

A website infected with malware is detected every five seconds - a dramatic increase over the last 12 months due to the rise in SQL injection attacks.

Websites poisoned with malware capable of infecting visitors' machines are being discovered at a rate of 16,173 per day - three times faster than in 2007.

Security from A to Z

Click on the links below to find out more...

A is for Antivirus
B is for Botnets
C is for CMA
D is for DDoS
E is for Extradition
F is for Federated identity
G is for Google
H is for Hackers
I is for IM
J is for Jaschan (Sven)
K is for Kids
L is for Love Bug
M is for Microsoft
N is for Neologisms
O is for Orange
P is for Passwords
Q is for Questions
R is for Rootkits
S is for Spyware
T is for Two-factor authentication
U is for USB sticks/devices
V is for Virus variants
W is for Wi-fi
X is for OS X
Y is for You
Z is for Zero-day

Antivirus firm Sophos found that more than 90 per cent of the web pages capable of spreading Trojan horses and spyware are legitimate websites. Recent infected websites include those of ITV, Sony PlayStation and a golf page on the BBC site - all these websites have now fixed their security hole.

Hackers place malware into the database running a website using SQL injection attacks, which can allow Trojans and keyloggers to be automatically installed on visitors machines.

According to the Sophos security threat report Blogspot.com, the blog publishing system owned by Google, was found to be hosting two per cent of the world's web-based malware in June 2008 - with hackers hosting malicious code on blog pages and posting links to malware infected websites in comments.

Senior technology consultant at Sophos, Graham Cluley, said: "Many businesses are increasingly putting themselves at risk by not scanning web activity and employees are going to these websites and getting infected."

He said the biggest threat comes from home workers because the wider range of websites visited in the home increased the risk of getting infected.

The security threat from email attachments has fallen dramatically during the same period, dropping from one infected attachment in every 332 emails in the first six months of 2007 to one in every 2,500 during the first six months of 2008.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Bob Tarzey The rise and rise of Infor Quocirca's Straight Talking: Where next for the apps giant?

Inbox: Vista, Bletchley Park and Cuil "Windows 98 was a far better and more capable OS..."


  • Jobs
Data Centre Operations Technician (Hardware, Server, IT, Windows, Linux) - West London

Since 2001 Rackspace has been hosting and supporting mission critical websites, internet applications, email servers, security and storage services ...

Knowledge Manager

They will also be responsible for procuring and managing the contracts for IT server and hosting services, software, hardware and mobile ...

HTML Developer Needed. Junior level developer needed. 20k - 25k

To be successful you must be an individual with a proven track record creating and developing HTML emails, web pages and templates. In order to be ...

CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.





Quick Sitemap Links: