Worm Steals At Least 45,000 Facebook Logins

vansau

Mortician of Love
May 25, 2010
6,107
0
0
Worm Steals At Least 45,000 Facebook Logins



Next time you're on Facebook and get a link from some friends, be careful: It might be part of a scam to snag your login info and hack into financial institutions.

Stories of Facebook accounts getting hacked <a href=http://www.google.com/url?sa=t&rct=j&q=&esrc=s&source=web&cd=1&ved=0CB4QFjAA&url=http%3A%2F%2Fwww.escapistmagazine.com%2Fforums%2Fread%2F7.320322-600-000-Facebook-Accounts-Get-Hacked-Daily&ei=aS4GT4_fEcOWiQLRr5VC&usg=AFQjCNGMQVoO79QXyFrSzxosQCUvoM5JUg&sig2=jP0OmgxmIB0J5kaEFcsf4A>aren't all that uncommon, but this latest case is a doozy. A worm that was originally designed to compromise bank systems has been repurposed and is now stealing Facebook login credentials.

Security company Seculert has been actively keeping track of the worm Ramnit, which was originally discovered in April 2010. Microsoft, meanwhile, <a href=http://www.microsoft.com/security/portal/Threat/Encyclopedia/Entry.aspx?Name=Win32/Ramnit>has explained that the worm is "a family of multi-component malware that infects Windows executable files, Microsoft Office files and HTML files. Win32/Ramnit spreads to removable drives, steals sensitive information such as saved FTP credentials and browser cookies. The malware may also open a backdoor to await instructions from a remote attacker."

Basically, Ramnit is capable of bypassing two-factor authentication systems, which means it's been able to gain remote access to financial institutions.

Seculert has discovered that approximately 800,000 machines were infected with Ramnit between September and December. On top of that, a variant of the worm has stolen the login information for over 45,000 Facebook accounts.

According to Seculert:

"We suspect that the attackers behind Ramnit are using the stolen credentials to log-in to victims' Facebook accounts and to transmit malicious links to their friends, thereby magnifying the malware's spread even further. In addition, cybercriminals are taking advantage of the fact that users tend to use the same password in various web-based services (Facebook, Gmail, Corporate SSL VPN, Outlook Web Access, etc.) to gain remote access to corporate networks."

If your friends start sending out a bunch of links, be extra careful. Don't let yourself wind up a part of this statistic.

Source: <a href=http://blog.seculert.com/2012/01/ramnit-goes-social.html>Seculert via <a href=http://arstechnica.com/business/news/2012/01/worm-steals-45000-facebook-login-credentials-infects-victims-friends.ars?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed%3A+arstechnica%2Findex+%28Ars+Technica+-+Featured+Content%29>Ars Technica

Permalink
 

gigastar

Insert one-liner here.
Sep 13, 2010
4,419
0
0
The easiest way to not get involved in that statistic is to not use Facebook.

I, personally, fail to see the downside.
 

Gyrohelix

New member
Aug 3, 2011
84
0
0
Hilarious, simply hilarious, now I have written proof of why not to use facebook.

On another note, you should just take facebook, and PUSH IT SOMEWHERE ELSE!
 

DannyJBeckett

New member
Jun 29, 2011
493
0
0
While it is a lot of people, and it shows Facebook's security is lacking (again), 45'000 is less than a drop in the ocean. Bear in mind Facebook has over 800 million users. The odds of any of us being affected are astronomical. That being said, it really sucks for those people who have had their accounts hacked, here's hoping Facebook's programmers get onto the problem sharpish.
 

Nouw

New member
Mar 18, 2009
15,615
0
0
Next time? Pretty much every time anyone gives you a link it's going to be a scam and screw you over. 'OMG, Justin Bieber attacked by crazed fan!' 'You won't believe what Miley Cyrus does.' Facebook needs to make people more aware of things like this.

I do hope that the virus gets removed. Your Facebook account doesn't need to be even less private.
 

TheLastSamurai14

Last day of PubClub for me. :'-(
Mar 23, 2011
1,459
0
0
Gyrohelix said:
Hilarious, simply hilarious, now I have written proof of why not to use facebook.

On another note, you should just take facebook, and PUSH IT SOMEWHERE ELSE!
Maybe we should send the resident cowboy squirrel and her sponge friend to wrangle that worm?

...I 'unno, seems worth a try to me.
 

Terminate421

New member
Jul 21, 2010
5,773
0
0
I changed my password....simple as that.

Though, I should change it to somethingelse.....
 

Elementary - Dear Watson

RIP Eleuthera, I will miss you
Nov 9, 2010
2,980
0
0
Terminate421 said:
I changed my password....simple as that.

Though, I should change it to somethingelse.....
I don't know... 'simple as that' would have been pretty good until you told us! :p

OT: Thanks for the warning, *Dons Helmet* Time to be extra vigilant!
 

Samurai Silhouette

New member
Nov 16, 2009
491
0
0
gigastar said:
The easiest way to not get involved in that statistic is to not use Facebook.

I, personally, fail to see the downside.
I found a lot of new friends and members of my band to hang with through facebook. For a social person like me, it'd be hard not to use it, so I fail to see your point.
 

Helloo

New member
Jan 6, 2012
16
0
0
So that's what all those "OMG RIHANNA'S SEX TAPE HAS LEAKED" links are all about. Thanks for the warning but everyone on the internet should be more intellegent than to open a link they know nothing about.
 

Shifty Tortoise

New member
Sep 10, 2008
365
0
0
According to Seculert's analysis, around 69 percent of those targeted were in the UK and 27 percent in France.

Kinda important that people know that, and that a lot of it is out of date information anyway.
 

Unhappy Crow

New member
Mar 14, 2010
659
0
0
This is why I ignore those messages that says "Nicki Minaj Sex Tape Leaked." It gets annoying so quickly, it makes me curious to know how the fuck were they to post that.
 

Marmooset

New member
Mar 29, 2010
895
0
0
Samurai Silhouette said:
I found a lot of new friends and members of my band to hang with through facebook. For a social person like me, it'd be hard not to use it, so I fail to see your point.
Finally, someone who is more honest than edgy! A tip of the hat.


OT: I think Lovecraft put it best about worms when he said:
"Great holes secretly are digged where the internet's portals ought to suffice, and things have learnt to logon to your account that ought to crawl."
 

Tharwen

Ep. VI: Return of the turret
May 7, 2009
9,145
0
41
Hey, remember when steam got hacked last year? Yeah. Shut up. Facebook is convenient.
 

Shockolate

New member
Feb 27, 2010
1,918
0
0
I dunno. Every link I've clicked is exactly something my friends would link.

Can the worm learn to mimic my friends and predict what to post to trick me into clicking!?

FUUUUUUU-
 

Steve the Pocket

New member
Mar 30, 2009
1,649
0
0
Tharwen said:
Hey, remember when steam got hacked last year? Yeah. Shut up. Facebook is convenient.
This. If this worm was designed to hack into freaking banks, chances are it's not exploiting particularly shoddy security.

(Then again, I've heard things about some of them bank websites...)