US authorities to put pinch on site hijackers

Daily Newsletters

Sign up to ZDNet UK's daily newsletter.

NEWS
The US' Federal Trade Commission (FTC) is set to announce a sweeping crackdown on the hijacking of legitimate Web pages to redirect Web surfers to porn sites. The crackdown is set to be announced next week. The practice affects "millions of legitimate Web pages and innocent Web surfers, including children", the FTC says. ZDNet partner MSNBC in May first reported on a cyber-twist on the old "bait-and switch" scam that threatens trademarks and ensnares unwitting Web surfers by trapping them in a loop that hurls a series of pornographic Web sites at them with every click of the mouse. That story prompted an investigation by the FTC, according to David Landrigan, a professor at the University of Massachusetts, Lowell, who brought the scam to MSNBC's attention. Landrigan, who found several hundred hijacked Web pages warehoused on the Alta Vista search engine and dubbed the practice the "snake in the grass scam", said he was contacted by the FTC asking for information. The FTC declined to comment beyond a brief press release announcing it would reveal a "new Internet scam" that has become the agency's 100th Internet case. The agency also said it will unveil a new high-tech Internet lab next week. The exact nature of the crackdown, how many people are targeted and what enforcement actions the FTC is taking isn't known. The agency will, however, be bringing in "victims" affected by the scam to speak at its news conference. That event, which had been scheduled for Thursday, has been delayed until next week because of Hurricane Floyd. The FTC has been particularly aggressive in attacking scams that have migrated from the "real world" to cyberspace. During a recent congressional hearing set to examine how federal agencies were dealing with the proliferation of Web sites illegally dispensing prescription drugs, the Food and Drug Administration was upbraided by House members for its lack of investigation and enforcement efforts The FTC, which also testified at the hearing, escaped unscathed. The FTC has broad authority to go after unfair or deceptive practices in or affecting commerce. Such hijacking scams divert potential customers from legitimate sites, possibly affecting the revenue potential of those sites. Speaking generally and without commenting on any specific case, Paul Luehr, assistant director of marketing practices for the FTC, previously told MSNBC that for some time the FTC has had "concerns about how some operators may be using a variety of technical tricks to divert consumers from their intended search results. There's a number of different ways that some companies appear to be manipulating search engines, and we're concerned about a variety of those techniques." Professor Landrigan found that hijackers were equal opportunity offenders, stealing traffic from news organisations, community groups, government sites and even sites directed at Internet-based games for children. Here's how the scam works. A Web page that contains common words, such as "news" or "maps" or "kids' games" is targeted by the scamster and then duplicated. The counterfeit pages are then hosted on a computer run by the scam artist. When a search engine "spider" -- software that automatically roams the Net cataloguing the keywords of millions of Web pages -- runs across the purloined page, it has no idea the page has been hijacked and robotically inputs the bogus URL into its database along with the keywords. When someone enters a keyword, such as "kids' games" into the search engine, among the results are the legitimate Web page as well as the duplicate, which now lives on a rogue server. The original and stolen highlighted links offered up by the search engine look identical save for the underlying URL, which is easily overlooked by a Web surfer trying to sort through a morass of information. The trick comes in how the scamster has modified the stolen page. Using a one-line piece of Java scripting that has been inserted into the stolen page, the scam artist can automatically redirect a user to any number of sites without the user's ever seeing the real page. The exact extent of such re-direction scams isn't known. However, MSNBC has received dozens of messages from readers who have been snagged in such schemes. Several of those have informed MSNBC that they filed formal complaints with the FTC's consumer protection office. Typically, the FTC evaluates such citizen complaints and begins an investigation if warranted. Once that investigation begins, the agency looks for trends in an attempt to ferret out just how extensive the new scam might be. It's likely that this FTC cyberspace investigation has identified several variations on the snake in the grass scam and will be announcing steps it's taking to first alert consumers to the practice and second, what its doing to crack down on the scam artists. Take me to the Hackers news special

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

dede0202

Hello ALL USERS OF THE PIRATE BAY I WOULD PUT AN EXPLANATION ON PIRACY Story Idea ILLIGALE AND SHARING THOSE THAT NET Dissent NOT WELL BUT TO CA...

48 minutes ago by dede0202 on The Pirate Bay infringes copyright, High Court decides
Sungwoo

do You know that? it can install 4G Ram. So i buy 4g and install It work! I can run call of duty 4,6,7 [Modern war... 1,2,3] Call of duty 1 was...

2 hours ago by Sungwoo on Loose Ends - Upgrading the Aspire One 522
itsajob

2. Bad idea. Making up patch cables loses you your commission from the cable supplier. 3. If you tidy up, other people can understand where the...

7 hours ago by itsajob on Ten IT jobs to save up for those rare lulls
Roberto_Store

Now On Sale, Unlocked iPhone 4S / Galaxy Note In Factory Box. Roberto-Techie(UK) ”Now on Sales” Smartphone, Android,Tablets,Gadget &...

11 hours ago by Roberto_Store on Samsung Galaxy S III lined up for sale
Paul Smyth

Is this classic FUD? One thing I would definitely have notice is a Mozilla threat to stop supporting GNU/Linux.

13 hours ago by Paul Smyth via Facebook on Firefox rapid release improves Fedora Linux
UnderINK

I agree with the previous commenter wholeheartedly. I couldn't say it better myself. This is very 'Big Brother'. And while I agree with protecting...

17 hours ago by UnderINK on European e-identity plan to be unveiled this month
Simon Bisson and Mary Branscombe

Nice to see that Turing's idea of a general purpose computer doing once-hardware-powered tasks in software is now universal ;-) Mary

23 hours ago by Simon Bisson and Mary Branscombe on Software with everything
Jason Burchell

seriously now. I've only bothered to read a small bit of the comments. do me and the rest of the world a favour. stop saying it does not work or...

1 day ago by Jason Burchell via Facebook on Music industry negotiating over 24-bit downloads
Philip Charles Cohen

Read about it and weep, John Donahoe ... In addition to Visa’s V.me, there is now MasterCard’s PayPass digital wallet soon to arrive; another...

1 day ago by Philip Charles Cohen via Facebook on PayPal takes phone-based payments to the high street
apexwm

Leslie Satenstein : Where have you ever seen Mozilla even mention this? Firefox is the most popular browser in the GNU/Linux OS, so I don't see...

1 day ago by apexwm on Firefox rapid release improves Fedora Linux
songmaster

SHleG: Do you remember building a clockwork scorpion kit (I'm pretty sure I have a photo of it somewhere) — I think it was called something like...

1 day ago by songmaster on Software with everything
Chris Wortman

Good I love Yahoo! Their search engine is getting better than Google as of late. I find more of what I want on the first page, and usually within...

1 day ago by Chris Wortman via Facebook on Linux Mint 13 ramps up for KDE release
PatrickG

openhgs has made the point for Windows 8 multiple monitors without realising it! With Windows 7 you have to switch the mouse and so your focus...

1 day ago by PatrickG on Windows 8 could speed multi-monitor uptake
Leslie Satenstein

Mozilla has threatened to stop supporting Linux. I guess that UBUNTU is going with another browser. I indicated that if Mozilla stops supporting...

2 days ago by Leslie Satenstein via Facebook on Firefox rapid release improves Fedora Linux
Andy Bolstridge

Much as I abhor Microsoft's licensing practices, this is almost certainly down to purchasing IT equipment via 3rd party consultants - you get the...

2 days ago by Andy Bolstridge via Facebook on 6 million wasted licences and £1,200 PCs: welcome to government IT
Jack Schofield

@openhgs Windows users have had multiple desktops since Linus started writing Linux. They just haven't shipped as standard because not enough...

2 days ago by Jack Schofield on Windows 8 could speed multi-monitor uptake
Jack Schofield

@Phil at Cloud4 What, Microsoft gets £1,200 per PC and £1,622 per server? Gosh, I'm amazed....

2 days ago by Jack Schofield on 6 million wasted licences and £1,200 PCs: welcome to government IT
craigsc

You guys have no idea what is going on at Autonomy. Autonomy could have been a much more profitable organization. The sales operations at Autonomy...

2 days ago by craigsc on HP cuts 27,000 staff as Autonomy chief Lynch leaves
Moley

How does this impact on dual or multi booting? Seems to me to more or less prohibit this, from Windows 8 anyway. Will Grub 2 recognise Windows 8,...

2 days ago by Moley on Windows 8 start-up speed forces USB boot workaround
apexwm

I don't understand why there cannot be a slight pause during the boot process so the user can press a key. Many operating systems do this, even if...

2 days ago by apexwm on Windows 8 start-up speed forces USB boot workaround