Hackers and spammers are taking advantage of the DDoS attack that hit Twitter and Facebook last week. The attack was apparently targeted at a single user of the sites, a Georgian blogger named Cyxymu. Cyxymu has used the sites to speak out against the 2008 war between Russia and his country.
Hackers are using the high profile nature of the attack to spread scareware. They are poisoning search engine results so that people searching using the keyword Cyxymu will be given results that redirect to malicious sites that push rogue anti-virus programs.
Spammers are also exploiting the attack. A new flood of spam has been detected that claims to be a grammatically garbled apology from Cyzymu and links to his blog. Experts say it is likely an attempt by those behind the DDoS attack to further alienate him and get him in trouble. His actual email address was spoofed, and as a result his email box was probably flooded with bounce messages, out of office auto responders, and similar noise. This, experts say, was the attacker’s way of sending a message to Cyzymu, and the link to the blog is an attempt to send a flood of traffic to the site in hopes of crashing it.
While it’s not yet known exactly who is responsible for the initial DDoS attack or the spam and malware attacks spawned from it, Cyzymu has told news outlets that he believes the Kremlin is behind it all.


