Drive-By Download

A drive-by download refers to potentially harmful software code that is installed on a person’s computer without the user needing to first accept or even be made aware of the software installation.

Drive-by downloads are a form of malware typically found on compromised web pages. By simply “driving by,” or visiting the web page, the drive-by download begins to download and is then installed in the background on the computer or mobile device without alerting the user.

How Drive-By Downloads Do Their Damage

Drive-by download hackers get users to visit their compromised web pages through web links on other web pages that appear to be normal and authentic. They also hide links to their drive-by download web pages in seemingly normal e-mails, text messages, and social media posts designed to attract users to drive-by download-infected web page content that looks authentic and uncompromised.

Drive-by downloads generally take advantage of security flaw exploits on browsers, apps, or operating systems that are out of date and haven’t been patched for the security flaws. As a result, keeping your operating system and its apps up to date helps minimize the risk of a drive-by download attack.

Additional Tips for Avoiding Drive-By Download Attacks

Security experts also recommend installing a high-quality internet security tool to help identify and prevent drive-by download attacks on your computer. Another recommendation is to avoid dubious links and offers that appear to be too good to be true, particularly when it comes to getting free content that you would normally have to pay for (pirated software or music, for example).

Drive-By Download Malware Infographic from Sophos
Infographic courtesy of Sophos (Click for larger image)

Forrest Stroud
Forrest Stroud
Forrest is a writer for Webopedia. Experienced, entrepreneurial, and well-rounded, he has 15+ years covering technology, business software, website design, programming, and more.

Related Articles

DocuSign

What is DocuSign? DocuSign is an agreement management application that enables businesses to create, send, and automate a wide variety of forms and contracts and...

Compliance

What is compliance? Compliance or regulatory compliance is a term used across industries to describe rules and policies that prohibit or regulate specific products, services,...

User Experience

User experience describes a user's interaction with products, systems, and services and includes usability, design, navigation, and impression.

Management Information Systems (MIS)

What is a Management Information System? A Management Information System (MIS) is an information system that provides managers with the tools to effectively organize, evaluate,...

Venture Capital

Venture capital (VC) offers startups and developing businesses growth opportunities with funding from...

Third-Party Apps

A third-party application is an application provided by a vendor other than the...

Ernst & Young (EY)

Ernst & Young Global Limited, commonly known as EY, is a multinational professional...