Facebook targeted by Boonana

Posted by   Virus Bulletin on   Nov 4, 2010

Windows, Mac and Linux users affected by new social networking threat.

Another malware family has been discovered targeting popular social networking site Facebook. Boonana, which is written in Java, has cross-platform capability, infecting Windows, Mac and Linux users.

Boonana is sent as a video link to Facebook users but of course rather than seeing a video, by clicking on the link the user will actually download a malicious application and by clicking to allow this application to run the rest of the payload will be downloaded and executed on the computer.

Detailed descriptions of the threat can be found at ESET here and at Microsoft here.

Facebook has half a billion active users worldwide, of which 56% log into the site every day - making the site a prime target for attackers.

Sophos's Senior Technology Consultant Graham Cluley will present 'Web 2 woe: cybercrime on social networks' at the VB Seminar, 25 November, London, UK, covering how attacks against social networks have evolved, how social networking sites are trying to defend against exploitation, and what companies and people can do to better defend themselves.

The VB Seminar takes place at the IET London, UK from 9am to 4pm on 25 November 2010. Secure your place by booking online now. (Or download a PDF copy of the booking form and fax the completed form to +44 (0)1865 543153.)

Posted on 04 November 2010 by Virus Bulletin



Latest posts:

VBSpam tests to be executed under the AMTSO framework

VB is excited to announce that, starting from the Q3 test, all VBSpam tests of email security products will be executed under the AMTSO framework.

In memoriam: Prof. Ross Anderson

We were very sorry to learn of the passing of Professor Ross Anderson a few days ago.

In memoriam: Dr Alan Solomon

We were very sorry to learn of the passing of industry pioneer Dr Alan Solomon earlier this week.

New paper: Nexus Android banking botnet – compromising C&C panels and dissecting mobile AppInjects

In a new paper, researchers Aditya K Sood and Rohit Bansal provide details of a security vulnerability in the Nexus Android botnet C&C panel that was exploited in order to gather threat intelligence, and present a model of mobile AppInjects.

New paper: Collector-stealer: a Russian origin credential and information extractor

In a new paper, F5 researchers Aditya K Sood and Rohit Chaturvedi present a 360 analysis of Collector-stealer, a Russian-origin credential and information extractor.

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.