Archive for 2009

Rebranded rogue claims to be McAfee Secure certified

December 10, 2009 - Patrick Jordan found this malicious little nugget today: Internet Security 2010. It’s a rebranded clone of Advanced Virus Remover, a rogue security product that we first found in June (Sunbelt Rogue Blog entry here.) (continue reading...) Read more

Happy Facebook Privacy Day!!!

December 10, 2009 - Okay…It’s not really a holiday but I’m going to celebrate it any way! Facebook is prompting all 350 million users, once they sign on, to personalize their privacy settings – what a great idea! I have mentioned (continue reading...) Read more

Scribble scrambled

December 10, 2009 - Since we first mentioned it on the blog we have seen rather a lot of our favourite polymorphic, mid-infecting friend that is the W32/Scribble virus. So much so that it has almost become a nuisance for us. But not (continue reading...) Read more

Profiling Through Open Source Intelligence

December 10, 2009 - I’ve covered the proliferation of digital traces, as well as how those footprints can be combined to de-anonymize data, eroding the privacy of users.  This week, we see another chapter emerge in this storyline, with a (continue reading...) Read more

Software White-listing Program

December 10, 2009 - In quality assurance circles at Symantec it is often stated that clean data (e.g. files from clean software) are to false positives as malicious data are to true positives. In simple terms this means that clean data helps us (continue reading...) Read more

McAfee Managed Services Through the Channel

December 9, 2009 - Managed professional services are a key to overall partner profitability and at McAfee we sell the majority of our managed services through the channel. In recent meetings with partners, a few questions surrounding the topic came up, which will be (continue reading...) Read more

Protecting Mobile Data: Just Kill Me Now

December 9, 2009 - Today’s smartphones certainly promise more convenience and functionality, but for IT, they promise new nightmares about protecting that data. It’s not merely contact data, but files, slides, traffic history, E-mail records, chat transcripts and almost anything else that can be (continue reading...) Read more

Polly Wants a Cracker

December 9, 2009 - Ahoy there ye landlubbers! The high seas of wireless security appear to have gone commercial with the introduction of a paid service, which means it just got a whole lot easier for a casual attacker to break into your wireless (continue reading...) Read more

Attackers behind phish mails see new opportunities as banks add levels of security

December 9, 2009 - Posted on behalf of Dan Bleaken, Malware Data Analyst Financial organizations undergo frequent changes from the point of view of their customers, whether it’s a change to security processes, takeovers, re-branding, new products and so on.  Phish emails often contain generic (continue reading...) Read more

“Everyone” may not be your friend

December 9, 2009 - There were two news stories recently that seemed to coincide. In the first, Cisco issued an annual security report which said the two current targets of the Internet criminal underground are banks and social networks. Banks because, well, we all (continue reading...) Read more

A New Wave of Mebroot

December 9, 2009 - A peak of new infections of Trojan.Mebroot has been found in the wild and after some investigation the data shows that there is a new wave of Mebroot Trojans being distributed through a popular exploit pack. The binary executables are (continue reading...) Read more

Trend Micro 2010 Future Threat Report

December 9, 2009 - Trend Micro released its annual threat report today.  This year, our annual report focuses on the future of the threat landscape. Virtualization, cloud computing, and a shifting Internet infrastructure will widen the scope of cybercrime. With the (continue reading...) Read more

SecurityTool rogue is trying to be a moving target

December 9, 2009 - The SecurityTool rogue security product, which first turned up early in October, is still active and trying to avoid countermeasures by setting up 12-24 download sites per day.It (continue reading...) Read more

Phishers Add Web Hosting Sites to Their List of Targets

December 9, 2009 - Trend Micro threat analysts come across a huge number of phishing cases that feature nearly identical domain names every day. In a Web reputation manual verification exercise, analysts found that three of the most popular phishing targets to date were (continue reading...) Read more

Yuletide PDF gymnastics

December 9, 2009 - Whilst browsing some reports yesterday, I noticed an unexpected detection at the top of the charts. Over the past few days, Troj/PDFJs-ER is neck and neck with Mal/Iframe-F as the most prevalent item of malware currently being detected (continue reading...) Read more

Americans consumed 3,600,000,000,000,000,000,000 bytes of info at home last year

December 9, 2009 - Yes, that’s right: 3.6 zettabytes!A report entitled “How Much Information” by the University of California in San Diego, released today, said the average person in the U.S. consumes 34 gigabytes of content and 100,000 words of information in (continue reading...) Read more

December Patch Tuesday Fixes Previously Reported IE Vulnerability

December 9, 2009 - In this month’s Patch Tuesday, Microsoft released six security advisories to address 12 vulnerabilities. Three of these security bulletins are deemed “critical” (MS09-071, MS09-074, MS09-072) while the rest are tagged as “important.” The recently (continue reading...) Read more

A Subtle Shift in File Sharing Usage

December 9, 2009 - Since the inaugural Application Usage and Risk Report (Spring Edition, 2008), browser-based file-sharing usage in terms of frequency has steadily increased to the point where it now exceeds that of peer-to-peer file sharing. (continue reading...) Read more

Adobe Issues Critical Updates To Flash, AIR

December 8, 2009 - Adobe released new versions of Flash and AIR today to address vulnerabilities in both products. Applying these updates as soon as practicable is a good idea, as Flash vulnerabilities are popular exploit vehicles in the wild.Click here to install (continue reading...) Read more

Black Tuesday – and December so far…

December 8, 2009 - Well December’s not looking so bad. Microsoft have released all their security bulletins for the month. (I hope - MS09-072 addresses last month’s out of band security advisory 977981) Out of this (continue reading...) Read more

Copyright © 2012 The Security Blog. All rights reserved.