Archive for July, 2009

Michael Jackson Malware

July 10, 2009 - There has been a couple of malware attacks that have tried to use the news coverage of the death of Michael Jackson as the lure to get people infected.Last night we saw this one: a file (continue reading...) Read more

Koobface.DU returns to Twitter

July 10, 2009 - A few days ago the Koobface worm started to appear on Twitter.  Today, the Koobface worm returns by hijacking several Twitter user accounts to assist in propagating the worm.  The malicious tweets start with the text “My (continue reading...) Read more

Koobface Increases Twitter Activity

July 9, 2009 - Just a few hours ago, Koobface has increased its Twitter activity, sending out tweets with different URL links pointing to Koobface malware. This is in contrast to previous Koobface (continue reading...) Read more

MYDOOM Code Re-Used in DDoS on U.S. and South Korean Sites

July 9, 2009 - A worm designed to propagate through email is the main proponent used in the DDoS attacks against high-profile websites in the United States and South Korea. Detected as WORM_MYDOOM.EA by Trend Micro, it is suspected to have arrived in victims’ inboxes (continue reading...) Read more

Malicious Web Site / Malicious Code: Official Web Site for Malaysian Ministry of Foreign Affairs Compromised

July 9, 2009 - Websense Security Labs™ ThreatSeeker™ Network has discovered that the official Website for Ministry of Foreign Affairs, Malaysia has been compromised by injecting invisible iframes which will redirect visitors to malicious Web sites where exploit pages are set up. The Ministry (continue reading...) Read more

Questions about Timing and Microsoft Security Advisory 972890

July 9, 2009 - Hi everyone, Mike Reavey here.   You’ve probably seen in Jerry’s (continue reading...) Read more

Sad News Generate Bad Things

July 9, 2009 - The "King of Pop", Michael Jackson, died last night after suffering a cardiac arrest. The news is currently spreading through a lot of different media outlets and they are being printed worldwide.Another recent death, (continue reading...) Read more

ColdFusion Spurs Another Mass Compromise

July 8, 2009 - June saw more than its fair share of mass-compromised websites—with one wave early in the month and Nine Ball hitting later on in the month. One would hope that July would be different, but it was not to (continue reading...) Read more

Click Fraud Takes a Step Forward with TROJ_FFSEARCH

July 8, 2009 - Earlier this month, TrendLabs security experts discovered that around 40,000 websites have been hacked and seeded with code that bombarded visitors’ PCs with countless browser exploits to install a Trojan, which we already detected as TROJ_FFSEARCH.A. This Trojan has (continue reading...) Read more

July 2009 Advance Notification

July 8, 2009 - Advance Notification for the July 2009 Security Bulletin Release (continue reading...) Read more

Government, Military – Aviation?

July 8, 2009 - U.S. Secretary of Defense Robert Gates recently confirmed the creation of a U.S. Cyber Command aimed at dealing with cyberthreats to military resources. A previously announced White House "cybersecurity coordinator" is already in the works to deal with (continue reading...) Read more

DDoS attacking US and South Korea government sites

July 8, 2009 - There is currently a DDoS attack against a number of websites, most of them belong to US and South Korea goverment sites. The malware involved in the attack has been detected as Mydoom.HN. This is the list of URLs that (continue reading...) Read more

Would You Give Your Facebook Password for a Job Application?

July 8, 2009 - CNN.com carried a recent news article about the city of Bozeman, Montana, USA, which has been pressured into removing an item in its background-check waiver form requesting all applicants for to disclose their account names and passwords (continue reading...) Read more

Hacktivist Tweets

July 8, 2009 - The collision of politics and technology is often interesting and the recent Iranian presidential election has seen a great deal of both.From the New York Times: Web Pries Lid of Iranian Censorship.And while (continue reading...) Read more

Zero day in MSVIDCTL.DLL

July 7, 2009 - A couple of days ago we started spotting a new vulnerability affecting Microsoft Video ActiveX Control. Even though it's been said there are thousands of web sites affected, they are only a few dozens and most of them are in China: (continue reading...) Read more

Scareware Attacks

July 7, 2009 - Rogue Antivirus A.K.A. scareware continues to be a pervasive threat against consumers.Byron Acohido recently posted an excellent article on the topic.The related posts on the business of scareware and rogues are also well (continue reading...) Read more

Network Security Defeats Microsoft Video ActiveX Exploit

July 7, 2009 - As a follow-up to our two recent blogs, we want to provide some details for this zero-day exploit from the perspective of the McAfee Network Security Platform (formerly known as IntruShield). Unlike traditional ActiveX exploits, in this case (continue reading...) Read more

Transforming Security from Obstacle to Business Enabler

July 7, 2009 - When I joined McAfee three months ago, I was pleasantly surprised to find that McAfee operates in a flexible and supportive technology environment where security is applied but discrete and transparent in everything we do, from the use of personal (continue reading...) Read more

Variant of Mac Malware Another Party Puper

July 7, 2009 - We recently received a new sample of the Mac malware OSX/Puper.a. This file , which disguises itself as a Mac Cinema Installer, was recently mentioned in PC Magazine. When the DMG file is executed on the Mac, it (continue reading...) Read more

SWF Flash Exploits: Old Wine in a New Bottle

July 7, 2009 - Adobe Flash applications have been a major security concern during the past couple of years. The large number of Flash vulnerabilities published, coupled with its popularity and wide distribution, makes Flash files an attractive target for cybercriminals. Infecting banner ads (continue reading...) Read more

Copyright © 2012 The Security Blog. All rights reserved.