A new spammed malware attack is impersonating messages from micro-blogging site Twitter.
Researchers at Symantec say that the attack attempts to pose as an invitation for the target to join the Twitter site with the message 'your friend has invited you to Twitter.'
The message also contains images from the Twitter logo and front pages.
Rather than send the user to Twitter by way of a URL, however, the message asks the user to open an attachment under the name 'InvitationCard.zip.'
Upon launching the attached file, the user is infected with a malicious worm that attempts to send out mass e-mail messages.
Users are advised not to open the invitation attachments or any other unsolicited or suspicious email attachments.
"As Twitter continues to gain popularity among social networking users, people are regularly receiving invitations and email updates from fellow users, " wrote Symantec researcher Sammy Chu in a blog posting.
"We expect that spammers will continue to use Twitter and other popular social networks as bait in their attacks."
The practice of disguising malware as email attachments and greeting cards is not new. Attacks such as the infamous Storm worm were routinely spread under the guise of greeting card attachments.
Attacks targeting Twitter have also become more common in recent months as the site has seen its popularity soar. Attacks have ranged from account-stealing hacking attempts to cross-site scripting attacks and malware distribution attacks.
New malware threat targets Twitter users
By
Shaun Nichols
on Jun 19, 2009 3:07PM

Got a news tip for our journalists? Share it with us anonymously here.
Partner Content

Channel can help lead customers to boosting workplace wellbeing with professional headsets

Secure, integrated platforms enable MSPs to focus bringing powerful solutions to customers

Tech For Good program gives purpose and strong business outcomes

Kaseya Dattocon APAC 2024 is Back

Build cybersecurity capability with award winning Fortinet training from Ingram Micro
Sponsored Whitepapers
-1.jpg&w=100&c=1&s=0)
Stop Fraud Before It Starts: A Must-Read Guide for Safer Customer Communications

The Cybersecurity Playbook for Partners in Asia Pacific and Japan

Pulseway Essential Eight Framework

7 Best Practices For Implementing Human Risk Management

2025 State of Machine Identity Security Report