Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 45 guests and 1 member online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Malwarearrow Tool Lets Twitter Be Used to Control Botnet
EH-Net
May 21, 2013, 01:03:48 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Tool Lets Twitter Be Used to Control Botnet  (Read 4358 times)
0 Members and 1 Guest are viewing this topic.
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 4165


Editor-In-Chief


View Profile WWW
« on: May 18, 2010, 08:59:17 AM »

Story by Dan Kaplan of SC Mag:

Quote

Researchers have discovered a simple-to-use program that can be used to send botnet commands from Twitter.

The builder tool, dubbed Trojan.Twebot by Symantec, allows the creator to construct a copy of the trojan and specify a particular Twitter account to be associated with it.

If users are hit with the trojan, the malware will run silently on the victim's machine until the Twitter account being used distributes an instruction, such as "DOWNLOAD" or ".DDOS (distributed denial-of-service)," according to Symantec, which posted a video to illustrate how the threat works.

"Once done, an executable file is created that will keep an eye on the named Twitter account for a series of commands used to infect, download [and] attack with DDoS and even kill the connection between [the] bot-and-command channel," Chris Boyd, senior threat researcher at Sunbelt Software, who first discovered the tool, said in a Thursday blog post.

What may make the the new tool particularly attractive is that it allows attackers to send instructions remotely, through means such as mobile Twitter applications.

But Boyd said there are some reasons the threat may not become all that widespread.

"[T]his doesn't work if the person controlling the bots attempts to hide their commands with a private Twitter page," he said. "The bots will just flail aimlessly as they wonder where their master has gone."

In addition, Twitter security staff can likely can easily track down offenders.

This is not the first time Twitter has been used as a command-and-control hub.


Original story:
http://www.scmagazineus.com/tool-lets-twitter-be-used-to-control-botnet/article/170236/

Don
Logged

CISSP, MCSE, CSTA, Security+ SME
Equix3n-
Sr. Member
****
Offline Offline

Posts: 386



View Profile
« Reply #1 on: May 20, 2010, 03:39:20 AM »

Symantec has come out with a video which demonstrates how this trojan works.
http://www.youtube.com/watch?v=r_F3VheC9ww
Logged
Manu Zacharia (-M-)
Sr. Member
****
Offline Offline

Posts: 393


c0c0n Hacking Conference - where hackers unite


View Profile WWW
« Reply #2 on: May 20, 2010, 06:11:03 AM »

Nice find Equix3n-

Simple and well narrated video.
Logged

Manu Zacharia
MVP (Enterprise Security), ISLA-2010 (ISC)˛, C|EH, C|HFI, CCNA, MCP,
Certified ISO 27001:2005 Lead Auditor

There are 3 roads to spoil; women, gambling & hacking. The most pleasant with women, the quickest with gambling, but the surest is hacking - c0c0n
Ketchup
Hero Member
*****
Offline Offline

Posts: 1021



View Profile
« Reply #3 on: May 20, 2010, 08:10:59 AM »

I love the text to speech option!  Smiley
Logged

~~~~~~~~~~~~~~
Ketchup
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.088 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.