Web Threat Traffic Soars in Fortinet June ’09 Threatscape Report

Increase in Phishing and Malware Reinforces Ongoing Trend Targeting Next Generation of Online Services and Threats

SUNNYVALE, Calif. - July 7, 2009 - Fortinet® - a market-leading network security provider and worldwide leader of unified threat management (UTM) solutions – today announced that its June 2009 Threatscape Report showed dominance and significant growth in Web threat traffic, marked by increased volumes of malware and the highest rate of phishing attacks to date. Building off a year-high rate of active exploits in the May Threatscape Report, threat activity jumped even further ahead during this period, marking an all-time high. Key highlights of the June Threatscape Report include:

  • Making Room for Web-Borne Malware:Bumping the resilient Netsky out of the malware Top 10 list, Zbot variants grabbed top positions in second and third place, with the most active variants, W32/Zbot.M and W32/Zbot.V, spreading keylogging and data siphoning Trojans through fake eCard mail and directing users to malicious sites. Also contributing to the overall trend of malicious redirects, JS/PackRedir.A jumped 36 positions in the top ten list by redirecting visitors to sites containing malicious content in PDF and SWF files. With all of the new activity, online gaming Trojans still maintained top positions, holding tight to number one, while W32/Virut.A grabbed hold of the number four spot, albeit dropping a couple of ranks.
  • Spam Take-Down Disappoints: Spam levels were unchanged this period, despite efforts to take down the alleged spam-centric network, 3FN/Pricewert. Many campaigns remained aggressive, including the Canadian Pharmacy gang which mirrored the efforts of Zbot with a fake eCard hook.
  • Vulnerabilities and Active Exploits Prove Consistency: On Par with the May Threatscape Report, threat rates during this period continued to climb. Out of 108 newly reported vulnerabilities this period, 62 were reported to be actively exploited, indicating an all time high of 57.4 percent of active exploits. A majority of overall exploit activity was observed to come out of the U.S. (22.2%).

"There were some very noteworthy trends that surfaced in the June report, such as the growing popularity of Web-borne malware, which we see driving the next generation of threats to online services," said Derek Manky, project manager, cyber security and threat research, Fortinet. “Hackers continue to attempt to drive mass traffic to their threats, utilizing various tactics aided by large online communities, and as a result -- more than ever -- users should be wary about who and what they trust.”

The FortiGuard research team compiled threat statistics and trends for June based on data collected from FortiGate® network security appliances and intelligence systems in production worldwide. Customers who use Fortinet's FortiGuard Subscription Services should already be protected against the threats outlined in this report.

To read the full June Threatscape report which includes the top threat rankings in each category, please visit: http://www.fortiguardcenter.com/report/roundup_june_2009.html. For ongoing threat research, bookmark the FortiGuard Center (http://www.fortiguardcenter.com/) or add it to your RSS feed by going to http://www.fortinet.com/FortiGuardCenter/rss/index.html. Additional discussion on security technologies and threat analysis can be found at the FortiGuard Blog at http://blog.fortinet.com. To learn more about FortiGuard Subscription Services, visit http://www.fortinet.com/products/fortiguard.html.

FortiGuard Subscription Services offer broad security solutions including antivirus, intrusion prevention, Web content filtering and anti-spam capabilities. These services help enable protection against threats on both application and network layers. FortiGuard Services are updated by the FortiGuard Global Security Research Team, which enables Fortinet to deliver a combination of multi-layered security intelligence and zero-day protection from new and emerging threats. For customers with a subscription to FortiGuard, these updates are delivered to all FortiGate, FortiMail™ and FortiClient™ products.

About Fortinet (www.fortinet.com)
Fortinet is the pioneer and leading provider of ASIC-accelerated unified threat management, or UTM, security systems, which are used by enterprises and service providers to increase their security while reducing total operating costs. Fortinet solutions were built from the ground up to integrate multiple levels of security protection--including firewall, antivirus, intrusion prevention, VPN, spyware prevention and antispam -- designed to help customers protect against network and content level threats. Leveraging a custom ASIC and unified interface, Fortinet solutions offer advanced security functionality that scales from remote office to chassis-based solutions with integrated management and reporting. Fortinet solutions have won multiple awards around the world and are the only security products that are certified in six programs by ICSA Labs: Firewall, Antivirus, IPSec VPN, SSL VPN, Network IPS, and Antispam. Fortinet is privately held and based in Sunnyvale, California.

Copyright © 2009 Fortinet, Inc. All rights reserved. The symbols ® and ™ denote respectively federally registered trademarks and unregistered trademarks of Fortinet, Inc., its subsidiaries and affiliates. Fortinet's trademarks include, but are not limited to, the following: Fortinet, FortiGate, FortiGuard, FortiManager, FortiMail, FortiClient, FortiCare, FortiAnalyzer, FortiReporter, FortiOS, FortiASIC, FortiWiFi, FortiSwitch, FortiVoIP, FortiBIOS, FortiLog, FortiResponse, FortiDB and FortiWeb. Other trademarks belong to their respective owners. Fortinet has not independently verified statements herein attributed to third parties.

 




QUICK FACTS
Year Founded
2000
Stock Symbol
NASDAQ: FTNT
Headquarters
Sunnyvale, California
Number of Employees
1,200+
Financial Highlights
FY09 Revenue: $252M
$260M+ cash and no debt
Profitable
First Product Release
May 2002
Units Shipped to Date
500,000+
Customers
75,000+ customers
Market Leadership
WW UTM Factory Revenue Leader
Top 4 Largest Network Security Appliance Vendor
Patents
40 patents
100+ patents pending
Industry Accolades
80+ awards, including:
Security Product of the Year
Best Integrated Security Appliance
Best IPS solution
Top Mid-market Solution
2006 Technology Pioneer
6 ICSA security certifications
NSS certified (UTM)
ISO 9001 certified
Corporate and Securities Counsel
Wilson Sonsini
Goodrich & Rosati
Palo Alto, California
Auditors
Deloitte Touche Tohmatsu
San Jose, California



Together, Riverbed and Fortinet address the need that enterprises have to secure their data; accelerate the performance of applications running on wide area networks (WANs); and reduce IT infrastructure complexity and costs. Implementation of two market-leading technologies such as WDS solutions from Riverbed and Fortinet's ASIC-accelerated integrated security appliances should meet this need while instilling confidence in enterprise companies of all scales.

Mark Williams, Principal Architect for Enterprise Infrastructure
Mercury Insurance