Share

Related Links

Related Stories

  • Twitter not adequately checking URLs, says Kaspersky
    Twitter is failing to block malicious websites that are being posted to it via URL shortening services, according to researchers from Kaspersky, who have applied their own back-end service to help solve the problem.
  • Twitter quietly checks tweeted URLs - draws criticism
    Twitter has quietly started checking URLs entered into tweets (user messages) on its microblogging service and immediately flown into a barrage of criticism about its checking methodology.
  • Twitter worm steals user details
    A worm on Twitter is tricking users into giving up their user details at the same time as redirecting victims to a dating website where the aggregate number of views result in affiliate revenue.
  • Conficker and Facebook / Twitter attacks dominate Q1 email threats
    The Conficker worm and attackers’ social engineering techniques exploiting users on Facebook, Myspace and Twitter, dominated the email threats in the first quarter (Q1) of 2009, according to identity-based unified threat management (UTM) solutions provider Cyberoam and its Israeli messaging and web security partner Commtouch.
  • Infosecurity gets twittered up
    Infosecurity magazine are now on Twitter. Please ‘follow’ us to receive our latest news, views and industry comments.
  • Obama's Twitter Account Hacked
    President-elect Obama was among 33 celebrities whose Twitter accounts were hacked this week. Attackers managed to compromise the accounts on the microblogging service by hacking into the company's support tools.

Top 5 Stories

News

Bit.ly tools up to stop spam

02 December 2009

URL shortening service Bit.ly has announced that it will be using three new services to help secure its service from spam and malware.

VeriSign, Websense and Sophos will all be helping Bit.ly to ensure that as little malware and spam as possible makes it through its URL shortening service.

VeriSign's iDefense IP reputation service uses a blacklist of URLs, domains, and IP addresses serving up malicious content to analyze incoming URLs and block unwanted destinations.

Websense will be providing its Threatseeker Cloud, which analyzes web content using heuristic tools and reputation data.

Finally. Sophos will be providing behavioral analysis technology to look for spam and malware.

"Sophos is an innovative security service whose behavioral-analysis technology goes beyond blacklists, to proactively detect spam and malware", said Bit.ly on its blog.

This is part of a general move on Bit.ly's part to use multiple independent providers when scanning the URLs that it shortens. The defense in depth idea, in which it uses different scanning engines and techniques, is the best way to stop as many malicious URLs as possible. The service also allows users to add a '+' sign to the end of shortened Bit.ly URLs if they want to preview the destination behind a URL before opening it.

The Twitter micro-blogging site uses Bit.ly as its official URL shortening service.

The announcement will come as something of a slap in the face for Kaspersky, which recently announced Krab Krawler, an internal project that scans the URLs being served up by Bit.ly and tries to ensure that they are secure.

This article is featured in:
Internet and Network Security • Malware and Hardware Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.