<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" 
      xmlns:thr="http://purl.org/syndication/thread/1.0">
  <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php" />
  <link rel="self" type="application/atom+xml" href="http://www.readwriteweb.com/atom.xml" />
  <id>tag:www.readwriteweb.com,2011:/1/tag:www.readwriteweb.com,2009://1.16956-</id>
  <updated>2011-08-16T16:22:39Z</updated>
  <title>Comments for How to Avoid Malware on Facebook and Twitter: 8 Best Practices</title>
  
  <generator uri="http://www.sixapart.com/movabletype/">Movable Type 4.35-en</generator>
  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956</id>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php" />
    <link rel="service.edit" type="application/atom+xml" href="http://www.readwriteweb.com/cgi-bin/mt/mt-atom.cgi/weblog/blog_id=1/entry_id=16956" title="How to Avoid Malware on Facebook and Twitter: 8 Best Practices" />
    <published>2009-10-31T00:00:00Z</published>
    <updated>2009-11-02T15:33:12Z</updated>
    <title>How to Avoid Malware on Facebook and Twitter: 8 Best Practices</title>
    <summary>Thanks to the popularity of social networking sites like Facebook and Twitter, it&apos;s a given that malicious hackers will devise ways to exploit the sites&apos; numerous users in order to infect their computers with malware. This unwanted software is designed to do a number of terrible things ranging from identity theft to turning computer into...</summary>
    <author>
      <name>Sarah Perez</name>
      
    </author>
    
    <category term="Facebook" />
    
    <category term="NYT" />
    
    <category term="Twitter" />
    
    <content type="html" xml:lang="en" xml:base="http://www.readwriteweb.com/">
      <![CDATA[<p><img src="http://www.readwriteweb.com/images/twitter_ facebook_logo.jpg">Thanks to the popularity of social networking sites like <a href="http://www.facebook.com">Facebook</a> and <a href="http://www.twitter.com">Twitter</a>, it's a given that malicious hackers will devise ways to exploit the sites' numerous users in order to infect their computers with malware. This unwanted software is designed to do a number of terrible things ranging from identity theft to turning computer into remote-controllable<a href="http://en.wikipedia.org/wiki/Zombie_computer"> "zombie" machines</a>. </p>

<p>Without sufficient anti-virus and malware protection programs installed, social networking users can easily become victims to these ever-evolving attacks. However, the best way to avoid becoming a victim yourself is to be aware of what's out there and what sorts of things you should avoid. Below are the best practices which you should use on Facebook and Twitter in order to keep yourself safe. </p>]]>
      <![CDATA[<p></p>

<h2>The Problem with Malicious Links</h2>

<p>One of the most common vectors for attacks are malicious links posted either to Twitter or to your Facebook wall. In the past, such as with the malware known as Kooface, the troublesome links could be easily identified because they would often use a consistent phrase followed by a URL. For example, <a href="http://www.readwriteweb.com/archives/twitters_a_mess_first_the_ddos_now_koobface_returns.php">in August, Koobface was posting links</a> that read "my home video :)" which was followed by a URL and then a random component on the end such as <em>&quot;HA-HA-HA!!&quot;, &quot;W.O.W.&quot;, &quot;WOW&quot;, &quot;L.O.L.&quot;, &quot;LOL&quot;, &quot;;)&quot; or &quot;OMFG!!!&quot;</em> </p>

<p>Although the end piece changed from tweet to tweet, the message itself remained the same. However, security researcher Costin Raiu of Kaspersky Lab tells us that easy-to-identify messages are not as common anymore. Today, it's much harder to identify malicious links thanks to two newer techniques being used by hackers. Below those two newer methods are described in more detail as is the tried-and-true method of spreading malware via email. </p>

<h2>Method 1: Hijacking Twitter's Trending Topics</h2>

<p>The first technique, which really became popular in August of this year, involves hackers creating Twitter new accounts and then posting messages related to whatever trending, or "hot," topic was being heavily discussed on Twitter at that time. This would allow the post to be aggregated in Twitter search results where unsuspecting users would click on the included link. The text accompanying the link would be intriguing to those interested in the subject, enticing them to click through. </p>

<h2>Method 2: Hijacking Legitimate Accounts</h2>

<p>The second technique involves infiltrating legitimate accounts through phishing attempts and other methods so that the hacker essentially has control over a "real" account. After control has been established, if on Twitter, the hacker will then tweet out links that redirect users to malware-infected sites. Because the tweets come from an account that already has an established set of followers, those reading the tweets assume it's safe and don't hesitate to click the links. </p>

<p>After infecting the account of a Facebook user, malware often uses that particular person's account to spread, too. As with the malicious links on Twitter, because it appears that the links posted are from a trusted friend, other users don't realize that the posted link is harmful. </p>

<p>On Facebook, one of the most problematic malware programs is Koobface, a particular type of malicious software that sees 20 to 30 new variations per day. Despite the number of variants out there, Koobface's M.O. is relatively consistent: it tricks people into clicking links. These links appear on social networks like Facebook and Twitter, but also on MySpace, hi5, Bebo, Friendster, and others. </p>

<h2>Method 3: Dangerous Email</h2>

<p>A third method to encourage social networking users to click on infected links is the old but still effective technique of sending out spoofed email. Hackers can create email messages that appear to be sent from a social networking site. The messages prompt you to "update your account" or open an attachment containing your new password among other things. </p>

<p><em>Image Credit: <a href="http://lastwatchdog.com/unstoppable-phishing-attacks-blanket-facebook-twitter/">Last Watchdog</a></em></p>

<p><em>Image Credit: <a href="http://lastwatchdog.com/unstoppable-phishing-attacks-blanket-facebook-twitter/">Last Watchdog</a></em></p>

<p>Although many users are now wary of email, these techniques are still being seen in the wild, so it's clear that to some extent they still work. </p>

<h2>How To Stay Safe</h2>

<p>There are a number of best practices that you should follow in order to stay safe and avoid infection. They are as follows:</p>

<ol>
  <li><strong>Don't assume a link is "safe" because it's from a friend:</strong> As noted above, your friend's account may be infected. You should never assume that a link is safe just because a friend tweeted it or posted it to your wall. Use your common sense. If it doesn't sound like something they would say, be wary, don't click. If you're unsure, try to contact them through another channel and see if the link is legit. </li>

<p>  <li><strong>Don't assume Twitter links are safe because Twitter is now scanning for malware:</strong> <a href="http://www.readwriteweb.com/archives/twitter_starts_filtering_malicious_urls.php">In August, Twitter partnered with Google</a> to use <a href="http://code.google.com/apis/safebrowsing/">Google's Safe Browsing API</a>, a technology that checks URLs against Google's blacklist. This prevents spammers from posting malicious URLs to Twitter, but it does NOT prevent them from posting shortened URLs which direct users to those same malicious sites. It's better than no protection at all, but it's not going to keep you entirely safe.</li></p>

<p>  <li><strong>Don't Assume Bit.ly Links are Safe:</strong> Earlier this year, Twitter's default URL-shortening service <a href="http://bit.ly">Bit.ly</a>, began warning users of malware. Bit.ly also uses Google's Safe Browsing API along with two other blacklists to identify malicious links. Although the service doesn't prevent users from posting these links, it will warn upon clicking that the site being linked to is infected. However, as Raiu tells us, this is not 100% effective either. Kaspersky has identified a number of malicious links which Bit.ly did not block. However, you can assume that Bit.ly is generally <em>safer </em>than the other URL-shortening services because it uses this technology and because the hackers are generally avoiding this service at the moment because of its built-in protection. But it is not completely safe - nothing ever is. </li></p>

<p>  <li><strong>Use an up-to-date web browser:</strong> Kaspersky recommends using the latest version of your web browser and keeping it up-to-date with the necessary patches. That means Internet Explorer users should be on IE8 - and since this browser is attacked the most, it's critical that you make sure it stays updated as needed. Firefox is the second most attacked browser, but fortunately, it has a self-updating feature built in. Google Chrome is also good because it has a self-updating feature as well as another security feature that runs plugins in "sandboxes," or restricted environments. If an attacker was able to exploit the browser and run malicious code, it would be isolated to this sandbox and would not able to effect the entire machine. Opera and Safari are also good browsers and should be kept current, too. </li></p>

<p>  <li><strong>Keep Windows up-to-date:</strong> As always, Windows users should make sure their systems are current with the latest patches from Microsoft. Automatic updates should be turned on. </li></p>

<p>  <li><strong>Keep Adobe Reader and Adobe Flash up-to-date</strong>: At the moment, Adobe Reader and Flash are the two most targeted programs by hackers. A lot of malware specifically goes after known vulnerabilities within Adobe's software. In addition, a common method of attack, such as that used by Koobface, is to redirect a victim to a malware-infested site where the user is prompted to update their Flash player or Adobe Reader in order to see the website content. NEVER do this. Always go to Adobe's site on your own to download the latest version or update the software on your computer using its own built-in update mechanisms. </li></p>

<p>  <li><strong>Don't assume you're safe because you use a Mac:</strong> While it's true that Mac users are <em>less </em>targeted than Windows users, they are not immune to malware, despite what those commercials may say. Although Apple did include some malware protection in their latest operating system, it only protects users from two trojans; you cannot count on it alone to protect you. There are <em>a couple of hundred</em> of trojans currently in the wild that specifically target Mac machines, according to Kaspersky. In fact, there may even be as many as a thousand, but researchers are unable to identify all of them because Mac users don't typically run anti-virus software which is how much of the data is collected. These days, when a user clicks an infected link, the malicious web page will now sometimes identify whether that user is coming from a Windows or Mac machine and then display the appropriate version of the trojan accordingly. A particular family of trojans known as "DNS Changer" trojans are the most common ones used to attack Mac machines. The only way to really be sure that you're protected against these malicious programs is to run anti-malware software on your Mac, but most Mac users won't do so, preferring to take their chances since their risk is lower. </li></p>

<p>  <li><strong>Be wary of email messages from social networks:</strong> Because email addresses can be "spoofed" by hackers, you can't assume that an email from Facebook or Twitter is <em>really</em> from those the site it claims to be from. As always, you should never open attachments you were not expecting to receive and you should be wary of clicking on links - especially if you're being told to "update your account." If you do click on a link and are taken to a web page that asks you to log into the site, DON'T DO IT. It would be handing over your password to the hackers. Instead, you should always access the sites directly by typing in their URL in your browser or clicking a saved link in your Favorites. </li><br />
</ol></p>

<h2>It's Not Just a Matter of Common Sense Anymore</h2>

<p>As the above best practices show, a lot of the things you can do to protect yourself from malware are the same as they have been in the past - keep your computer and browser up-to-date, don't open attachments, etc. However, malware is trickier to identify these days thanks to social networking sites. It now uses the trusted identities of your friends in order to lull its victims into a false sense of safety. You can no longer simply assume that because someone you know posted a link, it's automatically safe. You can't even assume that the networks themselves are safe, either. They're not always scanned for malware-laden links, and when they are, such as is the case with Twitter, it's not a 100% effective method. </p>

<p>Security researchers are actively working on better ways to fight this problem - for example, Kaspersky just announced their "Krab Krawler" project which will help keep their blacklists current by scanning for malicious links on Twitter, but it's not a tool that end-users can download to protect themselves; it's only one of many methods that security firms use to collect data about the malware on the internet. The best way to stay safe is to follow through with all the best practices - not just one or two. Malware isn't ever going away, so everyone must do their own part in order to stay safe on the web. </p>]]>
    </content>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:293982</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c293982" />
    <title>Comment from George Wall on 2010-12-23</title>
    <author>
        <name>George Wall</name>
        <uri>http://www.facebook.com/george.wall1</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.facebook.com/george.wall1">
        <![CDATA[<p>The best way to avoid malware is just common sense if something looks too good to be true it usally is..<br /><br />George<br /><a href="http://www.looking4parking.com" rel="nofollow"><a href="http://www.looking4parking.com" rel="nofollow">http://www.looking4parking.com</a></a></p>]]>
    </content>
    <published>2010-12-23T19:18:07Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:281411</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c281411" />
    <title>Comment from david on 2010-12-02</title>
    <author>
        <name>david</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>Never ceases to amaze me that Mac and Linux users are so sensitive to any perceived slur on their Mac os. Even though someone calmly and sensibly explains the situation, they are not having it, so off they go ... Rant, rant, rant.  </p>]]>
    </content>
    <published>2010-12-02T10:16:05Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:255528</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c255528" />
    <title>Comment from buy steroids online on 2010-10-26</title>
    <author>
        <name>buy steroids online</name>
        <uri>http://www.athletespharmacy.net/</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.athletespharmacy.net/">
        <![CDATA[<p>Re the FUD - interesting then that, after searching Kaspersky's own virus database, I can find only one malware dated later than Nov 2007, and the vast majority of the items they list, 85 only in total, were pre 2006, and relate to the older, non BSD unix origined, Mac OS 7-9 platform. Only three of the items had any decent description or identification info, and only one of those related to the modern Mac OS X platform. In fact, searching for malware with ".osx." in the item name, as per the naming convention, delivered only 9 results.<br />
I understand that in the interest of providing a balanced posting and being able to address both Win and Mac platforms, you asked the questions, not intending to drive and FUD based agenda.<br />
However, the info obtained in your research, and in particular the comments attributed to the Kaspersky researcher, are definitely pedalling FUD, and bear no resemblance to the reality of using the Mac OS X platform.</p>]]>
    </content>
    <published>2010-10-26T11:34:35Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:253087</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c253087" />
    <title>Comment from Joe on 2010-10-16</title>
    <author>
        <name>Joe</name>
        <uri>http://www.dentalartgallery.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.dentalartgallery.com">
        <![CDATA[<p>Internet crime is no less than someone breaking into your house and destroying or stealing your property. Lets just hope the security measures stay one step ahead of the criminals. Thanks for the post, awareness is one of things people definitely need.</p>]]>
    </content>
    <published>2010-10-16T14:08:09Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:240418</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c240418" />
    <title>Comment from sean on 2010-08-31</title>
    <author>
        <name>sean</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>you know what - those little frickin idiots who seem to get a kick out of writing code and screwing up the internet for people are just plain SAD!<br />
its NOT a power trip - you are SAD SAD SAD people. Get a life and leave things alone so people can get on with work and play online.<br />
</p>]]>
    </content>
    <published>2010-09-01T00:45:08Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:225436</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c225436" />
    <title>Comment from Matt on 2010-07-17</title>
    <author>
        <name>Matt</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>Mac and Windows. Two completely different operating systems, designed totally different.<br />
This is the reason for Mac's being virus free.</p>

<p>If Windows keeps a "registry" based operating system, the problem will never go away.  </p>]]>
    </content>
    <published>2010-07-18T02:21:34Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:186461</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c186461" />
    <title>Comment from ribble1001 on 2010-02-06</title>
    <author>
        <name>ribble1001</name>
        <uri>http://www.logbook-loans.org.uk</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.logbook-loans.org.uk">
        <![CDATA[<p>Great post!</p>

<p>You should always be careful on Social bookmarking sites. Security of personal info. is a major issue.</p>]]>
    </content>
    <published>2010-02-06T10:03:10Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:186082</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c186082" />
    <title>Comment from Jason Remillard  on 2010-02-04</title>
    <author>
        <name>Jason Remillard </name>
        <uri>http://www.sitesecuritymonitor.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.sitesecuritymonitor.com">
        <![CDATA[<p>Sarah;</p>

<p>What is unfortunate as many of these destination websites don't you realize Malware detection or web vulnerability scanning solutions like ours.  We feel it is extremely important to document and certified these endpoints against these terrible flaws.  </p>

<p>If Bit.ly and these other services would simply scan ahead to the destination website before publishing the URL would see a lot less attacks.  Potentially someone will get smart enough into this and offer it as a value-add.</p>

<p>Jason Remillard<br />
www.sitesecuritymonitor.com </p>]]>
    </content>
    <published>2010-02-04T19:16:33Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:182611</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c182611" />
    <title>Comment from oyunlar on 2010-01-23</title>
    <author>
        <name>oyunlar</name>
        <uri>http://www.oyundefteri.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.oyundefteri.com">
        <![CDATA[<p>Interesting development, it seems as though there’s another bank in the news today in California where people are standing in line to withdraw all of their money.</p>

<p>With FDIC Insurance, surely there shouldn’t really be a need for this?<br />
</p>]]>
    </content>
    <published>2010-01-23T12:07:42Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:176265</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c176265" />
    <title>Comment from Aleksander on 2009-12-23</title>
    <author>
        <name>Aleksander</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>I saw a very similar article over on the Sophos site. They have some white papers that talk about this exact same thing, and other ways to avoid <a href="http://www.sophos.com/products/malware-protection/" rel="nofollow">malware</a> in general. I would recommend checking them out.</p>]]>
    </content>
    <published>2009-12-23T15:57:41Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:172018</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c172018" />
    <title>Comment from Nasif on 2009-12-02</title>
    <author>
        <name>Nasif</name>
        <uri>http://bdtechie.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://bdtechie.com">
        <![CDATA[<p>The best thing is not to add unwanted applications...</p>]]>
    </content>
    <published>2009-12-02T15:33:14Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:170352</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c170352" />
    <title>Comment from James Anderson on 2009-11-24</title>
    <author>
        <name>James Anderson</name>
        <uri>http://www.bristolairportparking.info</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.bristolairportparking.info">
        <![CDATA[<p>Socila networking at its very worst. I think this article is great as it highlights all the possible issues that arise.</p>]]>
    </content>
    <published>2009-11-24T17:40:39Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:166918</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c166918" />
    <title>Comment from MichaelB on 2009-11-04</title>
    <author>
        <name>MichaelB</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>I think the amount of trojans and malware infectors for MAC OSX is speculative at best; but the point should not be lost that no one really knows because most MAC users don't load any kind of AV/Malware scanner that would report the data.</p>

<p>  The danger is in assuming that because you are on a MAC, that you haven't picked up a keylogger, DNS redirector or other spyware that is collecting and sending data somewhere unintended.  Until a mass infector hits the MAC, there won't be enough 'noise' to cause alarm.  Most of what is being seen these days is not that disruptive to the user's OS, it's stealthy and steals passwords and account information.  It's not until the information is used that MAC users will realize they might be infected; and then only if they bother to think that their computer was the source of the information, and not some other phishing scam.</p>]]>
    </content>
    <published>2009-11-04T21:25:45Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:166577</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c166577" />
    <title>Comment from PeterB on 2009-11-03</title>
    <author>
        <name>PeterB</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>Re the FUD - interesting then that, after searching Kaspersky's own virus database, I can find only one malware dated later than Nov 2007, and the vast majority of the items they list, 85 only in total, were pre 2006, and relate to the older, non BSD unix origined, Mac OS 7-9 platform. Only three of the items had any decent description or identification info, and only one of those related to the modern Mac OS X platform. In fact, searching for malware with ".osx." in the item name, as per the naming convention, delivered only 9 results.<br />
I understand that in the interest of providing a balanced posting and being able to address both Win and Mac platforms, you asked the questions, not intending to drive and FUD based agenda.<br />
However, the info obtained in your research, and in particular the comments attributed to the Kaspersky researcher, are definitely pedalling FUD, and bear no resemblance to the reality of using the Mac OS X platform.</p>]]>
    </content>
    <published>2009-11-03T10:32:07Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:166467</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c166467" />
    <title>Comment from Sarah Perez on 2009-11-02</title>
    <author>
        <name>Sarah Perez</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>To be clear, to those calling FUD, during the interview I asked the question as to whether Mac users were at all affected by any of this Twitter/FB malware - Raiu did not bring it up on his as some sort of pitch for his company's products. I also prompted him to reveal the numbers of Mac trojans in the wild - I was curious as to how widespread (or more likely not) malware was in the Mac community at the present time. </p>

<p>What is interesting is that as the Mac user base increases, there is more Mac malware created too. In the past, hackers wouldn't have bothered writing two versions of their malware - one for Windows, one for Mac - as they do now in some instances.</p>

<p>We also discussed the Mac botnets the firm has seen, although that was not mentioned in the article. </p>

<p>It's always fair to debate whether there is less malware for Mac because the OS is inherently more secure, as Apple claims, or because it has a lower install base. That's a touchy subject with experts weighing in on both sides. However, this article was not meant to push any agenda, just to point out that no matter how secure you feel, nothing is 100% - you should always be cautious, Mac user or not.</p>]]>
    </content>
    <published>2009-11-02T20:08:32Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:166448</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c166448" />
    <title>Comment from D W on 2009-11-02</title>
    <author>
        <name>D W</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>Coincidental that Kaspersky just launched their Mac AV product two weeks ago?</p>

<p><a href="http://www.kaspersky.com/news?id=207575937" rel="nofollow">http://www.kaspersky.com/news?id=207575937</a></p>

<p>Nothing like FUD (that was republished in the New York Times) to get a product sale.</p>]]>
    </content>
    <published>2009-11-02T18:04:43Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:166297</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c166297" />
    <title>Comment from Gurudatt on 2009-11-01</title>
    <author>
        <name>Gurudatt</name>
        <uri>http://www.easysecured.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.easysecured.com">
        <![CDATA[<p>To avoid phishing, key loggers and most types of attempts to hijacking your online account, try out 0pass.com</p>]]>
    </content>
    <published>2009-11-01T20:08:58Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:166252</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c166252" />
    <title>Comment from Jered on 2009-11-01</title>
    <author>
        <name>Jered</name>
        <uri>http://www.theeverythingist.net</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.theeverythingist.net">
        <![CDATA[<p>@Garen good call on that. It never hurts to double check with a friend. </p>

<p>Great post RWW</p>]]>
    </content>
    <published>2009-11-01T07:28:10Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:166246</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c166246" />
    <title>Comment from Garen on 2009-10-31</title>
    <author>
        <name>Garen</name>
        <uri>http://www.report-online-scams.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.report-online-scams.com">
        <![CDATA[<p>Wow, this is a good blog post.  I run a scam site and get a ton of messages a day from people that have fallen victim to a Facebook, Twitter, or Myspace scam.  I have personally seen scams where they actually ask me to to send them money (from what looks like a friend) however, there account has been infected, and I know it is just a scam.  </p>

<p>I think the best rule to follow when on these sites is, if you don't believe it either call or contact your friend by phone or email.  Watch out there is a lot of fraud that goes on online.</p>

<p><a href="http://www.report-online-scams.com" rel="nofollow">http://www.report-online-scams.com</a></p>]]>
    </content>
    <published>2009-11-01T06:26:28Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:166240</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c166240" />
    <title>Comment from Tommyr on 2009-10-31</title>
    <author>
        <name>Tommyr</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>"Couple of hundred"? What are those Mac Malwares? This is PURE FUD. Nice try though Microsoft shill. Keep pushing the BS, we're not buying it. </p>]]>
    </content>
    <published>2009-11-01T02:52:25Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:166180</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c166180" />
    <title>Comment from Lawrence @ CRB on 2009-10-31</title>
    <author>
        <name>Lawrence @ CRB</name>
        <uri>http://www.creditrestorationbureau.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.creditrestorationbureau.com">
        <![CDATA[<p>Excellent post! I believe that most anyone that uses these social media sites would benefit from reading this informative article.</p>]]>
    </content>
    <published>2009-10-31T20:58:02Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:166172</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c166172" />
    <title>Comment from lollipop10 on 2009-10-31</title>
    <author>
        <name>lollipop10</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>Good post, informative.  Any recommendations on anti-virus software for Mac?</p>]]>
    </content>
    <published>2009-10-31T20:01:34Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:166033</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c166033" />
    <title>Comment from laurist on 2009-10-30</title>
    <author>
        <name>laurist</name>
        <uri>http://www.goarticles.com/cgi-bin/showa.cgi?C=1989925</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.goarticles.com/cgi-bin/showa.cgi?C=1989925">
        <![CDATA[<p>I cosidered your comment in the Bases of the How to Avoid Malware on Facebook and Twitter: 8 Best Practices its really nice information which you provide in this commenting site.<br />
<a href="http://www.goarticles.com/cgi-bin/showa.cgi?C=1989925" rel="nofollow">http://www.goarticles.com/cgi-bin/showa.cgi?C=1989925</a>        </p>]]>
    </content>
    <published>2009-10-31T05:07:25Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:165996</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c165996" />
    <title>Comment from Jim on 2009-10-30</title>
    <author>
        <name>Jim</name>
        <uri>http://watchvancouverolympics.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://watchvancouverolympics.com">
        <![CDATA[<p>Awesome Post. People should be aware of these problems with social networking. </p>

<p>Jim</p>]]>
    </content>
    <published>2009-10-31T00:32:45Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.16956-comment:165994</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.16956" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/how_to_avoid_malware_on_facebook_and_twitter_8_best_practices.php#c165994" />
    <title>Comment from oyun on 2009-10-30</title>
    <author>
        <name>oyun</name>
        <uri>http://www.oyunover.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.oyunover.com">
        <![CDATA[<p>facebook should protect their users.</p>]]>
    </content>
    <published>2009-10-30T23:55:18Z</published>
  </entry>

</feed>
