Wikipedia
Hackers had created an article containing information about a new worm, along with a link to a 'fix'

Hackers use Wikipedia to spread malware

Beware geeks bearing gifts

Written by Will Head

Hackers are using online encyclopaedia Wikipedia to spread malware, according to a security firm. 

Sophos discovered that hackers had created an article on the German edition of Wikipedia containing false information about a new version of the Blaster worm, along with a link to a fix. 

However, the fix is actually a piece of malicious code designed to infect visitors' PCs.

Wikipedia is built from user contributions, allowing anyone to create or edit the content of a page.

The hackers sent spam messages to German computer users, which purported to come from Wikipedia, and directed recipients to the fraudulent information.

As the emails linked to a legitimate website, they were able to bypass some anti-spam solutions.

"The good news is that the authorities at Wikipedia quickly identified and edited the article on their site," said Graham Cluley, senior technology consultant for Sophos.

"Unfortunately, a version of the page remained in the archive, allowing the hackers to send spam and continue to direct visitors to the malicious code."

Wikipedia has now confirmed that it has permanently erased all versions of the page.

"The very openness of websites like Wikipedia, which allow anyone to edit pages, makes them terrific, but can also make them less trustworthy, " Cluley added.

"In this case, the article in question was not just misleading, it was downright malicious.

"Everyone should exercise caution and ensure they have appropriate defences in place to protect their computer systems.

"Additionally, people should remember that if there really is a new threat on the internet, you're likely to hear about it first from the security companies, not an online encyclopaedia."

Tags:

Further reading

Malware threat doubles in September

Huge rise in targeted attacks   More...

Macs 'open target' for malware

McAfee expands security coverage to Macs   More...

Social networks riddled with malware

One in 600 profiles host infection   More...

StopBadware.org names and shames malware

Badware Watch List identifies malicious programs   More...

Related articles

Halloween 'skeleton' spam hides Storm Trojan

Don't let your PC be turned into a zombie   More...

Hackers hit Sony PS3 website

SQL injection vulnerability compromises web pages   More...

Beware for celebrity porn experts warn

Won't make you blind, but will wreck your PC   More...

Malware-laden spam promises pop videos

Email links lead to malicious script and Trojan horse   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

25 Jul 2008

7.85 MBPodcast Special: Views from the Valley More...

24 Jul 2008

3.68 MBSpammer jailed, Esquire e-cover, and network passwords More...

23 Jul 2008

2.99 MBSmall time security, official 'spying' requests and a spammer jail break More...

Poll

EUROPEAN E-COMMERCE

EUROPEAN E-COMMERCE

Are you happy making an online purchase from another European country?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

Credit card transaction

Credit card fraud rampant in the UK

Attempted frauds go unreported and ignored, analysts claim   More...

Intel

Intel rolls out new embedded line-up

System-on-a-chip offerings promise footprint and power saving   More...

Advertisement

Network cables

Tech giants collaborate on wireless HD

Another attempt at cable-free transmission in the home   More...

iPhone fever fills AT&T coffers

US provider cashes in on Apple smartphone   More...

Advertisement