Report: Attackers Adopt Stealth Tactics

LOS ANGELES — Computer security systems provider Symantec has released its 13th Internet Security Threat Report, which analyzed Internet attacks and vulnerabilities such as malicious code, phishing, spam and other security risks over the past six months.

One of the report's findings is that long-known vulnerabilities still exist, due to mistakes made by webmasters that allow hackers to gain control of their websites — and the computers of unsuspecting visitors to their websites.

Despite decade-old solutions for dealing with some of these problems, the Symantec report revealed that the number of these readily compromised (and readily secured) websites doubled in the latter part of 2007, providing many attractive opportunities for tech-savvy criminal enterprises that do not have to lure surfers into "bad neighborhoods" before launching attacks from legitimate — but poorly coded — websites.

"It overturns the whole notion that if you stay away from gambling and porn sites you are okay," said Kevin Hogan, Symantec director of security operations.

Cross-site scripting, or XSS, is the culprit behind some of these malicious attacks, and works by targeting improperly secured data transfers between web browsers and servers.

For example, XSS vulnerabilities can provide member login information to hackers, complicating paysite owners' efforts to fight password sharing.

XBIZ previously reported on a Flash bug that used XSS and that may be particularly common on adult websites.

The Symantec report attributes attackers' adoption of stealth tactics targeting individual computer users via the Internet to the effectiveness of enterprise networks in fighting "brute force" and other attacks on their systems.

End-users are more easily compromised by malicious activity because of their typically inadequate approach to security — a situation that is compounded by the fact that the site containing the compromised code is unlikely to detect it, guaranteeing further infections.

The Symantec report claims that social-networking sites are a favorite target for attackers, as they present a large audience that is likely to trust the site and reveal confidential or personal information, which could lead to fraud and identity theft.

According to the report, 11,253 specific XSS vulnerabilities were discovered in the final six months of 2007 — up from 6,961 during the first six months of the year — though many other cases have gone unreported.

"There are a lot more websites out there that are prone to this," Hogan said. "It's a much bigger proposition to make a safe website than it is to patch a browser."

Related:  

Copyright © 2025 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Report: UK Moving Ahead with Plan to Outlaw 'Choking' Content

The BBC and other sources are reporting that the U.K. government will follow through on criminalizing “choking” content, a plan that was announced earlier this year.

Italy to Require Age Verification for Adult Sites

Italian media regulator AGCOM has announced that all sites and platforms hosting adult content will be required to implement age verification systems starting Nov. 12 to prevent access by users under 18.

'MILFlicious' Launches Through YourPaysitePartner

MILFlicious.com has officially launched through YourPaysitePartner (YPP).

Op-Ed: The Guardian's XBIZ Amsterdam Podcast Dismisses Creators' Experiences

British newspaper The Guardian’s podcast coverage of XBIZ Amsterdam 2025 purports to investigate the power dynamics of today’s online adult industry. Instead, it ignores creators’ voices, airs tired and outdated preconceptions about the business, and rehashes the unsupported claims of anti-pornography crusaders.

Eva Maxim, BranditScan Launch 'Killer' Promo

Eva Maxim and BranditScan have partnered for the Killer Creator Giveaway promotion.

2026 XBIZ Exec Awards Nominees for Online Industry Announced

XBIZ is pleased to announce the nominees for the online industry edition of the 2026 XBIZ Exec Awards, set to be presented as part of the annual XBIZ Honors ceremony on Wednesday, Jan. 14 in conjunction with the XBIZ 2026 digital media conference.

AEBN Publishes Report on POV Trends

AEBN has published a report on POV and gonzo categories from its straight and gay theaters.

Joybear Pictures to Launch 'I Really Love' Studio Imprint

Joybear Pictures has announced that its new studio imprint, I Really Love, will launch in January.

Pineapple Support to Host 'Life Transitions' Support Group

Pineapple Support is hosting a free online support group on navigating transitional and liminal spaces.

CamSoda Launches 'Trick or Tease' AI Companions

CamSoda has launched its Halloween-themed Trick or Tease AI companions.

Show More