Home > Security News > Twitter, Facebook hit by denial-of-service attacks
Security News:
EMAIL THIS

Twitter, Facebook hit by denial-of-service attacks

By SearchSecurity.com Staff
06 Aug 2009 | SearchSecurity.com

Security Wire Daily News
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google

Twitter was shut down by a denial-of-service attack for at least two hours this morning. The site was back up shortly before noon EDT.

Facebook also confirmed it was hit by a DoS attack, but remained up despite some impact on service.

Based on Twitter status postings, the site went down around 9 a.m. EDT. The initial message said the site was down and was investigating the cause of the Twitter attack. That posting was updated to say Twitter was defending against a DoS attack.

The most recent update said the site was but "we are continuing to defend against and recover from this attack."

The motives behind the attacks weren't readily apparent.

"Most attacks are for fame and fortune," said Kevin Haley, director Symantec Security Response. "One of the first things Conficker did was to monetize by downloading rogue antivirus programs. The Dozer attacks [Dos attacks against government and commercial sites in the U.S. and South Korea] r moved from fame to fortune."

Haley said it's too soon to tell if the Twitter and Facebook attacks came from the same source, or why Twitter shut down while Facebook was merely impaired. In any case, he said it underscores the need for organizations to protect themselves by taking basic precautions, working with their ISPs in terms of limiting traffic and setting filters to drop packets that are characteristics of a DoS attack. and, of course, he recommended end users keep their desktop protection up-to-date to avoid bot infections.

"On this otherwise happy Thursday morning, Twitter is the target of a denial of service attack," Twitter co-founder Biz Stone wrote on the company blog page. "Attacks such as this are malicious efforts orchestrated to disrupt and make unavailable services such as online banks, credit card payment gateways, and in this case, Twitter for intended customers or users.

"We are defending against this attack now and will continue to update our status blog as we continue to defend and later investigate."

"Earlier this morning, Facebook encountered network issues related to an apparent distributed denial of service attack, that resulted in degraded service for some users," Facebook said in statement issued Thursday.

" No user data was at risk and we have restored full access to the site for most users. We're continuing to monitor the situation to ensure that users have the fast and reliable experience they've come to expect from Facebook."

Twitter, the enormously popular social networking website has been the target of a number of attacks against users. Spam bots, for example, have been used to generate Tweets from phony accounts, and URL-shortener attacks have been used to redirect users to malicious Web sites. Twitter and Facebook users have been targeted by numerous phishing and social engineering scams.



Tags: IndustryWeb Application and Web 2.0 ThreatsApplication Attacks (Buffer Overflows, Cross-Site Scripting)VIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google



RELATED CONTENT
Industry
Breach forces payroll service provider PayChoice to shut down again
SSH key compromise shuts down Apache website
Is a partnership certification worth the money? Part III -- security
Experts weigh in on spyware's defining moment
Presentation: Employee monitoring -- Balancing best practices and privacy
Presentation: Security budgets -- Getting what you need
Presentation: Understanding business requirements -- A blueprint for digital security
Presentation: Staffing security positions -- How to choose the right personnel
Organized fraud: Internet hackers conduct coordinated hacking attempts
Sarbanes-Oxley issues rattle executives

Web Application and Web 2.0 Threats
Web security firm ranks Firefox, Safari browsers as flaw prone
Web application vulnerability assessment shows patching progress
Layoffs prompt insider threat fears, cybersecurity survey finds
Botnet masters turn to Google, social networks to avoid detection
Computer worm infections up, scareware antivirus down, Microsoft says
Web-based attacks skyrocket, pirating sites surge, security firms say
Kaspersky system analyzes malicious URLs on Twitter for malware
Pushdo botnet uses Facebook to spread malicious email attachment
Do Facebook URL security concerns justify blocking social networks?
Gumblar Trojan drive-by exploits spike following Adobe update

Application Attacks (Buffer Overflows, Cross-Site Scripting)
Quiz: How to build secure applications
Black box and white box testing: Which is best?
Adobe warns of critical update for Reader, Acrobat 9.1.3
9 Ways to Improve Application Security After an Incident
Developers Need Help with Security Errors
Buffer overflow tutorial: How to find vulnerabilities, prevent attacks
SQL injection protection: A guide on how to prevent and stop attacks
Experts rebuke programmers who use SQL injection as feature
SANS: Application threats, website flaws pose biggest security threats
Mozilla helps Adobe push out faster patches
Application Attacks (Buffer Overflows, Cross-Site Scripting) Research

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
content filtering  (SearchSecurity.com)
Web filter  (SearchSecurity.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



More Tips to Secure Your Network
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts