Predicting Malware
Pseudonymous B*ard writes "SANS has an interesting article showing how to predict what forms future malware will take. For example, last year there were many hurricane-related scams, while this year, another bad hurricane season is predicted. SANS has noticed that the scammers are gearing up for this and that many new domains with the words Alberto, Beryl, donation, and hurricane have been registered (Alberto & Beryl are the first two names on the hurricane list). The only question now is whether hackers will be able to preempt any of these scams before they have a chance to be used?"
SANS has noticed that the scammers are gearing up for this and that many new domains with the words Alberto, Beryl, donation, and hurricane have been registered (Alberto & Beryl are the first two names on the hurricane list).
This wouldn't be a problem if the Federal government wasn't in such a hurry to shovel cash out the door everytime there's a natural disaster to some politician's poll numbers.
Obligatory grammar post.
"Last year X, while this year X again." "And" for pete sakes. If you are comparing two things which are the same in nature but different in time, it should be "and". "While" would be used if, say, it was hurricanes last year and earthquakes this year (i.e., things which are different in their nature).
Unpleasantries.
Yeah, but in this case, it has to be pretty clear that the people who registered the domains have nefarious intent, so it might not be unreasonable to get them shut down early. Or at least blacklist 'em somehow (e.g. blacklist the URLs in your spam filters).
Unless, perhaps, your name is Alberto.
IMHO, the far more likely purpose of registering domains related to the next hurricane names are simply for SPAM. When the hurricanes hit, tens of thousands of people will mistype or find some other way of ending up on what I expect will be plain old ad serving pages. Considering the miniscule costs of setting this up, I'd suspect that it would make a few bucks. Especially compared to some of the other ad based domains I've stumbled on in the past...
I am not sure about you, but to me malware is clearly distinct from e-mail scams.
Malware is a program that do nasty things to your computer. e-mail scams have nothing to do with that.