Title
Exploiting social networking sites for spam
Abstract
In the ongoing arms race between spammers and the multi-million dollar anti-spam industry, the number of unsolicited e-mail messages (better known as "spam") and phishing has increased heavily in the last decade. In this paper, we show that our novel friend-in-the-middle attack on social networking sites (SNSs) can be used to harvest social data in an automated fashion. This social data can then be exploited for large-scale attacks such as context-aware spam and social-phishing. We prove the feasibility of our attack exemplarily on Facebook and identify possible consequences based on a mathematical model and simulations. Alarmingly, all major SNSs are vulnerable to our attack as they fail to secure the network layer appropriately.
Year
DOI
Venue
2010
10.1145/1866307.1866400
ACM Conference on Computer and Communications Security
Keywords
Field
DocType
major snss,social networking site,social data,harvest social data,large-scale attack,novel friend-in-the-middle attack,last decade,automated fashion,context-aware spam,attack exemplarily,phishing,social network,spam,mathematical model
Arms race,Internet privacy,Social spam,Social network,Phishing,Computer science,Computer security,Network layer,Spambot,Liberian dollar,Spamming
Conference
Citations 
PageRank 
References 
4
0.48
8
Authors
5
Name
Order
Citations
PageRank
Markus Huber133426.26
Martin Mulazzani223320.01
Edgar Weippl3856105.02
Gerhard Kitzler490.92
Sigrun Goluch590.92