.

Tool Lets Twitter Be Used to Control Botnet

<<

don

User avatar

Administrator
Administrator

Posts: 4226

Joined: Sun Aug 28, 2005 10:47 pm

Location: Chicago

Post Tue May 18, 2010 8:59 am

Tool Lets Twitter Be Used to Control Botnet

Story by Dan Kaplan of SC Mag:


Researchers have discovered a simple-to-use program that can be used to send botnet commands from Twitter.

The builder tool, dubbed Trojan.Twebot by Symantec, allows the creator to construct a copy of the trojan and specify a particular Twitter account to be associated with it.

If users are hit with the trojan, the malware will run silently on the victim's machine until the Twitter account being used distributes an instruction, such as "DOWNLOAD" or ".DDOS (distributed denial-of-service)," according to Symantec, which posted a video to illustrate how the threat works.

"Once done, an executable file is created that will keep an eye on the named Twitter account for a series of commands used to infect, download [and] attack with DDoS and even kill the connection between [the] bot-and-command channel," Chris Boyd, senior threat researcher at Sunbelt Software, who first discovered the tool, said in a Thursday blog post.

What may make the the new tool particularly attractive is that it allows attackers to send instructions remotely, through means such as mobile Twitter applications.

But Boyd said there are some reasons the threat may not become all that widespread.

"[T]his doesn't work if the person controlling the bots attempts to hide their commands with a private Twitter page," he said. "The bots will just flail aimlessly as they wonder where their master has gone."

In addition, Twitter security staff can likely can easily track down offenders.

This is not the first time Twitter has been used as a command-and-control hub.



Original story:
http://www.scmagazineus.com/tool-lets-t ... le/170236/

Don
CISSP, MCSE, CSTA, Security+ SME
<<

Xen

User avatar

Sr. Member
Sr. Member

Posts: 386

Joined: Tue Feb 03, 2009 3:59 am

Post Thu May 20, 2010 3:39 am

Re: Tool Lets Twitter Be Used to Control Botnet

Symantec has come out with a video which demonstrates how this trojan works.
http://www.youtube.com/watch?v=r_F3VheC9ww
<<

morpheus063

User avatar

Sr. Member
Sr. Member

Posts: 393

Joined: Sun Jun 25, 2006 10:08 am

Location: Cochin - India

Post Thu May 20, 2010 6:11 am

Re: Tool Lets Twitter Be Used to Control Botnet

Nice find Equix3n-

Simple and well narrated video.
Manu Zacharia
MVP (Enterprise Security), ISLA-2010 (ISC)², C|EH, C|HFI, CCNA, MCP,
Certified ISO 27001:2005 Lead Auditor

[b]There are 3 roads to spoil; women, gambling & hacking. The most pleasant with women, the quickest with gambling, but the surest is hacking - c0c0n
<<

Ketchup

User avatar

Hero Member
Hero Member

Posts: 1021

Joined: Fri Jul 04, 2008 7:44 pm

Location: Philadelphia, PA

Post Thu May 20, 2010 8:10 am

Re: Tool Lets Twitter Be Used to Control Botnet

I love the text to speech option!  :)
~~~~~~~~~~~~~~
Ketchup

Return to Malware

Who is online

Users browsing this forum: No registered users and 1 guest

cron
.
Powered by phpBB® Forum Software © phpBB Group.
Designed by ST Software