30 Nov 2009

Click fraud

Un article du SC Magazine explique ce qu’est le Click Fraud et pourquoi les compagnies de publicités doivent être vigilentes.
C’est une attaque qui implique une(des) personne(s) ou programme(s) qui cliquent à répétition sur une annonce publicitaire en-ligne pour augmenter le compte des références payables par les clients des compagnies de publicité.
Cette attaque se prête très bien à une architecture de botnet dont le Bahama Botnet.
Increasingly, click fraud seems to be underpinned by botnets, according to a report from Click Forensics, an online advertising auditing service. In fact, botnets accounted for nearly 43 percent of all click fraud in the third quarter of this year, the study, released Thursday, found. This was a big jump in the use of botnets, marking a doubling in two years, and an increase of 27.5 percent over the same quarter last year.
One botnet, a highly sophisticated click-fraud network of zombie computers dubbed the “Bahama botnet,” was implicated in a recent scareware incident involving NYTimes.com display ads. The source of that attack was traced back to the Ukrainian Fan Club, a known group of online fraudsters, which redirected traffic through 200,000 parked domains located in the Bahamas.
Click fraud involves a person, or script, clicking on an ad repeatedly to drive up countable hits that are paid for by unknowing advertisers. “Botnets perpetrating click fraud and other online schemes continue to grow in number and sophistication,” Paul Pellman, CEO of Click Forensics, said in a statement. “Advertisers and ad providers need to be especially vigilant about such activity as we enter the competitive search marketing holiday season.”
via Botnet use in click fraud skyrockets – SC Magazine US.

13 Nov 2009

Coupe-feu virtuel Altor VF

SC Magazine vient d’émettre quelques mots sur Altor VF: Altor Networks Altor VF – SC Magazine US.

Altor VF protects all of the VMs, but even better, it lets you know what you actually have so you can get rid of what you don’t need. And, as they say on the late-night infomercials, “Wait! There’s more!” Altor VF works directly with either its own IDS or with an external IDS, such as Snort, Juniper or ArcSight. Of course, this capability works all the way down to the VM and allows deep analysis of data to and from the individual VMs.
As well, Altor VF works with other important virtual products, such as VSwitch or Cisco V1000. And, again as one would expect, it is policy driven, which makes management easy and straightforward.