<?xml version="1.0" encoding="UTF-8"?><?xml-stylesheet type="text/css" media="screen" href="http://s2.wp.com/wp-content/themes/vip/newyorkobserver/stylesheets/rss.css"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Betabeat &#187; The Whole Point of That Mac Virus? Stealing Google Ad Money</title>
	<atom:link href="http://betabeat.com/2012/05/the-whole-point-of-that-mac-botnet-stealing-google-ad-money/feed/" rel="self" type="application/rss+xml" />
	<link>http://betabeat.com</link>
	<description>Just another WordPress.com site</description>
	<lastBuildDate>Sun, 19 May 2013 04:58:29 +0000</lastBuildDate>
	<language></language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='betabeat.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Betabeat &#187; The Whole Point of That Mac Virus? Stealing Google Ad Money</title>
		<link>http://betabeat.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://betabeat.com/osd.xml" title="Betabeat" />
	<atom:link rel='hub' href='http://betabeat.com/?pushpress=hub'/>
		<item>
				
		<title>The Whole Point of That Mac Virus? Stealing Google Ad Money</title>

		<comments>http://betabeat.com/2012/05/the-whole-point-of-that-mac-botnet-stealing-google-ad-money/#comments</comments>
		<pubDate>Tue, 01 May 2012 17:32:22 -0400</pubDate>
					<link>http://betabeat.com/2012/05/the-whole-point-of-that-mac-botnet-stealing-google-ad-money/</link>
			<dc:creator>Kelly Faircloth</dc:creator>
				
		<guid isPermaLink="false">http://www.betabeat.com/?p=43228</guid>
		<description><![CDATA[<p><div id="attachment_40893" class="wp-caption alignleft" style="width: 307px"><a href="http://www.betabeat.com/2012/04/19/bad-news-fanboys-your-macs-arent-invincible-after-all/sad_mac-2/" rel="attachment wp-att-40893"><img class="size-full wp-image-40893" title="Sad_mac" src="http://nyobetabeat.files.wordpress.com/2012/04/sad_mac.png" alt="" width="297" height="234" /></a><p class="wp-caption-text">He doesn&#039;t feel so good. (Wikimedia Commons)</p></div></p>
<p>Turns out, cybercriminals can bring home some decent money, <a href="http://www.betabeat.com/2012/04/16/dont-quit-your-day-job-drug-traffickers-cybercrime-isnt-that-lucrative/" target="_blank">after all</a>--at least until someone catches on and shuts down their latest revenue stream. After some reverse-engineering, the sleuths at Symantec have <a href="http://www.symantec.com/connect/blogs/osxflashbackk-motivation-behind-malware" target="_blank">puzzled out</a> the motivation behind the <a href="http://www.betabeat.com/2012/04/19/bad-news-fanboys-your-macs-arent-invincible-after-all/" target="_blank">Mac Flashback botnet</a>: Stealing Google's ad revenue. Because, as a clever man once said, that's where the money is.<!--more--></p>
<p>Translating the <a href="http://www.symantec.com/connect/blogs/osxflashbackk-motivation-behind-malware" target="_blank">highly technical Symantec post</a>, PC Magazine <a href="http://securitywatch.pcmag.com/none/297323-flashback-malware-robs-google-of-10-000-day-in-ad-revenue" target="_blank">explains</a>:</p>
<blockquote><p>Here's how it works: when an infected user conducts a Google search, Google will return its normal search results. Flashback waits for someone to click on an ad, and once this happens the user is silently directed to another, irrelievant ad that generates revenue for the attackers.</p></blockquote>
<p>Symantec concludes, "This ultimately results in lost revenue for Google and untold sums of money for the Flashback gang." How much money? At the height of the infection, ballpark $10,000. Per day.</p>
<p>Though we can't imagine that's hurting the GOOG's bottom line too much.</p>
<p>&nbsp;</p>
]]></description>
		<content:encoded><![CDATA[<p><div id="attachment_40893" class="wp-caption alignleft" style="width: 307px"><a href="http://www.betabeat.com/2012/04/19/bad-news-fanboys-your-macs-arent-invincible-after-all/sad_mac-2/" rel="attachment wp-att-40893"><img class="size-full wp-image-40893" title="Sad_mac" src="http://nyobetabeat.files.wordpress.com/2012/04/sad_mac.png" alt="" width="297" height="234" /></a><p class="wp-caption-text">He doesn&#039;t feel so good. (Wikimedia Commons)</p></div></p>
<p>Turns out, cybercriminals can bring home some decent money, <a href="http://www.betabeat.com/2012/04/16/dont-quit-your-day-job-drug-traffickers-cybercrime-isnt-that-lucrative/" target="_blank">after all</a>--at least until someone catches on and shuts down their latest revenue stream. After some reverse-engineering, the sleuths at Symantec have <a href="http://www.symantec.com/connect/blogs/osxflashbackk-motivation-behind-malware" target="_blank">puzzled out</a> the motivation behind the <a href="http://www.betabeat.com/2012/04/19/bad-news-fanboys-your-macs-arent-invincible-after-all/" target="_blank">Mac Flashback botnet</a>: Stealing Google's ad revenue. Because, as a clever man once said, that's where the money is.<!--more--></p>
<p>Translating the <a href="http://www.symantec.com/connect/blogs/osxflashbackk-motivation-behind-malware" target="_blank">highly technical Symantec post</a>, PC Magazine <a href="http://securitywatch.pcmag.com/none/297323-flashback-malware-robs-google-of-10-000-day-in-ad-revenue" target="_blank">explains</a>:</p>
<blockquote><p>Here's how it works: when an infected user conducts a Google search, Google will return its normal search results. Flashback waits for someone to click on an ad, and once this happens the user is silently directed to another, irrelievant ad that generates revenue for the attackers.</p></blockquote>
<p>Symantec concludes, "This ultimately results in lost revenue for Google and untold sums of money for the Flashback gang." How much money? At the height of the infection, ballpark $10,000. Per day.</p>
<p>Though we can't imagine that's hurting the GOOG's bottom line too much.</p>
<p>&nbsp;</p>
]]></content:encoded>
		<wfw:commentRss>http://betabeat.com/2012/05/the-whole-point-of-that-mac-botnet-stealing-google-ad-money/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:thumbnail url="http://nyobetabeat.files.wordpress.com/2012/04/sad_mac.png?w=150" />
		<media:content url="http://nyobetabeat.files.wordpress.com/2012/04/sad_mac.png?w=150" medium="image">
			<media:title type="html">Sad_mac</media:title>
		</media:content>

		<media:content url="http://2.gravatar.com/avatar/becf95fa833b8aeb13f7720732bd6dc6?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">jhanasobserver</media:title>
		</media:content>

		<media:content url="http://nyobetabeat.files.wordpress.com/2012/04/sad_mac.png" medium="image">
			<media:title type="html">Sad_mac</media:title>
		</media:content>
	</item>
	</channel>
</rss>
