The folks from eBay have done an analysis on the attacks that they experience. They discovered that the majority of attacks were originating from rootkitted Linux boxes. Now, before the Windows koolaid drinkers start pointing and hooting realize this point. The Linux boxes are being targeted by phishers as they are prized for their reliability.
From Computer World NZ:
“The vast majority of the threats we saw were rootkitted Linux boxes, which was rather startling. We expected Microsoft boxes,” he said.
Rootkit software covers the tracks of the attackers and can be extremely difficult to detect. According to Cullinane, none of the Linux operators whose machines had been compromised were even aware they’d been infected.
Although Linux has long been considered more secure than Windows, many of the programs that run on top of Linux have known security vulnerabilities, and if an attacker were to exploit an unpatched bug on a misconfigured system, he could seize control of the machine.
Because Linux is highly reliable and a great platform for running server software, Linux machines are desired by phishers, who set up fake websites, hoping to lure victims into disclosing their passwords.
An example of that reliability can be found in one of my own Linux boxes. It has been running smoothing with an uptime of 942 days. Not too shabby. Mind you it is also not directly attached to the internet.
Tags: Phishing, Phishers, eBay Security




























