Archive for March, 2010

Targeted Attack uses FIFA World Cup 2010 as a hook

March 25, 2010 - Posted on behalf of Greg Leah, Dan Bleaken, Seth Hardy, Jo Hurcombe & Tony Millington Symantec Hosted Services analysts spotted a blocked targeted attack yesterday that uses the FIFA World Cup 2010 to encourage the recipient to open a malicious PDF (continue reading...) Read more

Google, China trade shots

March 25, 2010 - Google and the Chinese government are continuing to trade shots in the PR battle over net censorship. Earlier in the week, Google moved its Chinese search facility to Hong Kong where it claims it is legal under Chinese law to (continue reading...) Read more

Apache web server security how to

March 25, 2010 - The increase in cyber attacks on high profile online business websites implies that web security still needs to be addressed.  Exploits of web server vulnerabilities typically have a more disastrous and (continue reading...) Read more

New Content Audit Policy File – PHI/PII for Unix Systems

March 25, 2010 - Most security practitioners primarily think of Nessus as a vulnerability scanner, but some of the more unique capabilities of Nessus actually lie in its ability to scan for many different types of sensitive content. Through the use of .audit files, Nessus (continue reading...) Read more

Child Tax Credit is the New Phishing Bait

March 25, 2010 - Who wouldn’t want some tax benefits in the current economic times? Don’t phishers and scammers know that all too well! In a new phishing scheme, Symantec has found that Child Tax Credit is being used as bait to lure parents (continue reading...) Read more

How are ATM skimmers installed?

March 25, 2010 - ATM skimmers are installed like this:Video source: Spiegel.de & German Federal Criminal Office (Bundeskriminalamt) On 10/03/10 At 12:06 PM Read more

PDF Based Targeted Attacks are Increasing

March 25, 2010 - Microsoft schedules its security updates on the second Tuesday of the month. Adobe recently began following this schedule as well, and while there are no Adobe updates today, there was an out-of-cycle security update two weeks (continue reading...) Read more

Shanghai Expo Spam Carries Backdoor

March 25, 2010 - Trend Micro senior advanced threats researcher Paul Ferguson received a spam claiming to be from the Bureau of the Shanghai World Expo, which is coordinating “Expo 2010,” from a technology news group journalist who actually received it. (continue reading...) Read more

Rogue Toolbars Serve Up Facebook Phishing Pages

March 25, 2010 - There are a number of Toolbars out there in the wild with a nasty sting in the tail for anybody using them to login to Facebook. We’ve seen two of these so far; it’s possible there are more. Promoted (continue reading...) Read more

Mal/RtfExe-A: A bogus legal email campaign “Complaint filled against you.”

March 25, 2010 - A blog reader has gotten in-touch with us asking about a threat he had received that had evaded the email filters on his web-email account. The email with a subject “Complaint filled against you.” has a body of: March 25, 2010 Marcus (continue reading...) Read more

Spammers Spoof the Apple Store

March 25, 2010 - Cybercriminals—spammers, to be specific—typically hide their malicious intent behind well-known company names. Just recently, TrendLabs engineers encountered a spammed message claiming to be from the Apple Store. The email message encouraged (continue reading...) Read more

Anne Curtis’ “Nip-Slip” Leads to FAKEAV

March 24, 2010 - Recent news of a swimsuit mishap involving a popular Philippine TV personality, Anne Curtis, spread like wildfire when members of the press captured the said incident and circulated supposed videos over the Web. The incident happened last Sunday while the (continue reading...) Read more

Don’t blame the computer

March 24, 2010 - “I’m sorry, Dave, I’m afraid I can’t do that.” - HAL the computer from 2001: A Space Odyssey (1968) Every day, essential business and physical functions are executed by   software, without human oversight.  Many of these functions—automobile   braking systems, automatic (continue reading...) Read more

Polar opposites in U.S. Senate co-sponsor cybercrime bill

March 24, 2010 - In spite of the polarized, poisonous atmosphere in Washington, D.C., generated by President Barak Obama’s health care reform campaign, two Senators from very opposite ends of the political spectrum are co-sponsoring a bill to fight international cybercrime.U.S. Senators (continue reading...) Read more

New social media? Pay to play online games with women?

March 24, 2010 - "Dirty" or "Flirty"Ok.It’s an old formula for a successful business: pay girls to have fun with you.This time the schtick is getting on-line gamers to pay $8.25 (US) to play (continue reading...) Read more

"Cloud" Security Recommendations

March 24, 2010 - Security In The Cloud Is Still Just Security A recent paper published in the International Journal of Services and Standards titled "A 'cloud-free' security model for cloud computing", written by Manal M. Yunis, outlines six security considerations for cloud (continue reading...) Read more

Communist Party Of Britain’s website infected with malware (again)

March 24, 2010 - Last year, during the UK local elections, I blogged about how the Communist Party of Britain’s website was infected. Earlier today, I noticed that the site had once again been infected this time with different malware. This infection, like (continue reading...) Read more

Google-in-China saga: another hack, move to HK

March 24, 2010 - There is a risk to computer security from governments. Regulatory changes, even if they are very positive measures, can impose huge demands on an enterprise (i.e. HIPPA, Sarbanes-Oxley, California’s law requiring notification of (continue reading...) Read more

Spammers Get Creative with ASCII

March 24, 2010 - Posted on behalf of Dan Bleaken, Malware Data Analyst and Nick Johnston, Senior Software Engineer, Symantec Hosted Services This week MessageLabs Intelligence noticed some eye-catching artwork from spammers.   ‘ASCII art’ is the use of the ASCII character set (just (continue reading...) Read more

Bulgarian city official loses committee post because of Farmville addiction

March 24, 2010 - Computer security category of risk: human factors? The Sofia, Bulgaria, news site novinite.com is reporting that a city councilor in Bulgaria’s second largest city of Plovdiv was voted out of a city (continue reading...) Read more

Copyright © 2012 The Security Blog. All rights reserved.