Archive for February, 2010

Do They Know it’s (not) Christmas Time at All?

February 19, 2010 - (continue reading...) Read more

Internet users skip security because of jargon

February 19, 2010 - Representatives of computer companies and governments meeting at the EastWest Institute security meeting in Brussels said that an industry culture of obscure jargon is preventing the world’s two billion Internet users from putting security measures in place to protect themselves. (continue reading...) Read more

Exploit for zero-day vuln in Firefox is for sale

February 19, 2010 - Evgeny Legerov, founder of Intevydis in Moscow, has created an exploit that hits a previously unknown heap-corruption vulnerability in the Firefox browser. The code isn’t readily available though, since he’s put it in a module to the automated exploitation system (continue reading...) Read more

Kneber: Another bot yet?

February 19, 2010 - This week has witnessed the discovery of a network of zombie computers, controlled through a botnet called “Kneber”. According to published sources, some 75,000 computers have been compromised in 2,500 organizations around the world, as well as user accounts on (continue reading...) Read more

Reputation-based Security: Suspicious.Insight detections on Virus Total

February 19, 2010 - We recently upgraded our scanner on Virus Total to include our new reputation-based security engine. That has caused a spike in our detection rates, in particular Suspicious.Insight detections, and so I thought I’d take a few minutes to explain (continue reading...) Read more

0day vuln in Adobe Download Manager disclosed

February 19, 2010 - First, make a note: after Adobe updates, restart your machine immediately to remove the Adobe Download Manger – it can be a vector for malcode.Now, back to our story.Aviv Raff has (continue reading...) Read more

Antivirus NOT

February 19, 2010 - “Dammed thieves. Stole our logo. I suppose we should be flattered, though.”— A.E.Old rogue, new package:AntivirusProtectionCenterav2009.exe : crc6:7f3d73762762crc8:003091628c68deccmd5:d71d1e303ab963fdae76936ba52a05b7AMC.exe :crc6:1d6922972762 (continue reading...) Read more

Critical Control 19: Data Recovery Capability

February 19, 2010 - Data is one of the most important assets of most organizations. If this is the case, then why is it most organizations don’t incorporate a good data recovery plan? Without a good plan, “when it’s gone it’s gone” and there (continue reading...) Read more

A new year, a new computer and a new reason to update your security

February 18, 2010 - After three weeks back at school I think my head has finally stopped spinning! Our family is now well and truly into the swing of the school term.  So what better time for a new age Cybermum to play with (continue reading...) Read more

Windows Update Triggers BSoD Errors

February 18, 2010 - It seems that a recent Windows “patch” has been the cause of a series of blue screen crashes after users install a so-called Microsoft security update. The said patch, MS10-015, is said to be (continue reading...) Read more

Search for “Winter Olympics” and Take Your Pick—FAKEAV or Bogus Windows Media Player Updates

February 18, 2010 - Cybercriminals again exploited one of the most-awaited global sports events—the “2010 Vancouver Winter Olympics”—to propagate at least two of their malicious wares. They piggybacked on the Olympics fever to promote malware-ridden sites. In an attempt to affect as many users (continue reading...) Read more

Very exciting updates to McAfee 2010 Consumer suites

February 18, 2010 - I am not sure if you noticed yet but you should be seeing some cool new features being upgraded on your McAfee software! Here I was minding my own business when I got a message to let me know that (continue reading...) Read more

Call Center Recordings – Version 3

February 18, 2010 - Yesterday (Feb 17) the PCI Council re-revised their call center FAQ with more clarification on whether you may store digital recordings containing the security codes (CVV2, CVC2, etc.). Here is the text of the FAQ (link here). (continue reading...) Read more

McAfee Invites Partners to RSA 2010

February 18, 2010 - PLEASE JOIN US FOR RSA 2010 San Francisco, CA Greetings McAfee Partners, We hope you will accept this (continue reading...) Read more

“Kneber” = Zeus

February 18, 2010 - Recently, Symantec observed some high-profile coverage of a threat being reported as a new type of computer virus known as “Kneber.” In reality Kneber is simply a pseudonym for the Zeus Trojan/botnet. The name Kneber refers to a particular group, (continue reading...) Read more

Zeus botnet continues: 2,500 victims estimated

February 18, 2010 - Herndon, Va., forensics firm NetWitness has said that the Zeus botnet has breached the networks of nearly 2,500 organizations in nearly 200 countries, including 10 U.S. federal agencies. NetWitness researchers said many victims are Fortune 500 companies in energy, finance (continue reading...) Read more

30 percent of U.S. is totally safe from Internet threats

February 18, 2010 - A survey of 54,000 households (129,000 people) commissioned by National Telecommunications and Information Administration (NTIA) last year found that 30 percent of U.S residents did not use the Internet at home or at work.The study, based on Census (continue reading...) Read more

Scammers Offering Tax Refunds

February 18, 2010 - Fraudsters never seem to rest. They have now turned their attention towards phishing using the Indian Income Tax Department’s name and branding. It is the season of tax returns in India and it is well known that people will file (continue reading...) Read more

Do You Have a Canary on Your Network?

February 18, 2010 - In the heyday of mining it was common practice to take up to three canaries into the mineshaft to test the purity of the air. If any one bird showed signs of distress, it likely indicated that something (continue reading...) Read more

The fakeout collection

February 18, 2010 - Fake program trading is a popular way to spend time on hacking forums. An endless stream of wannabe hackers want to get even with somebody, or take over a specific account but don’t have the technical skills to create a (continue reading...) Read more

Copyright © 2012 The Security Blog. All rights reserved.