Archive for 2010

Google Instant Can Turn Black Friday into Sad Friday

December 7, 2010 - Remember when I said that Google Instant was a potential security disaster? Well, it turns out that Google’s new Instant Preview feature can help lure innocent victims over to malware campaigns.  Blackhat SEO campaigns work by tricking search engines into (continue reading...) Read more

Greetings from Bali

December 7, 2010 - As many of you already know, my work, though enjoyable, it’s very hard. I have to sacrifice many things in my life for my company, Panda, and again it has happened. I have been sent to Bali, and here I (continue reading...) Read more

Operation:Payback Yielded 37 Days of Total Downtime

December 7, 2010 - Real-time updates can be obtained at our original blog post:  http://bit.ly/azgKeG After two months of constant attacks against various media authorities around the world, the United States Pirate Party has stepped in to ask the attackers to stop and focus (continue reading...) Read more

Dont Get Caught by the Grinch on Twitter

December 7, 2010 - Last year we documented the very first trending topic attack on Twitter.  The attack is similar to a Blackhat SEO campaign, where criminals leverage the many hot topics discussed on the Internet in order to position their malware campaigns in (continue reading...) Read more

‘Tis the Season of DDoS – WikiLeaks Edition

December 7, 2010 - Scroll to the bottom for the latest updates… DDoS attacks are flying across the Internet like there is no tomorrow.  Just a few days ago, a hacktivist operating under the handle “th3j35t3r” decided to single-handedly take down the Wikileaks website (continue reading...) Read more

Operation:Payback broadens to “Operation Avenge Assange”

December 7, 2010 - ==> Get up to the minute attack updates here <== The organizers behind the anonymous group responsible for Operation:Payback are in the midst of refocusing their campaign to assist WikiLeaks in their quest to release classified government documents. The following (continue reading...) Read more

1619.3 Has Fallen, but it’s Not Bad News

December 7, 2010 - On Wednesday the 1st of December, the IEEE 1619 Group voted to disband the 1619.3 Key Management Standard effort. This may be disappointing for the few committed individuals that put a lot of work into this standard, but the effort was (continue reading...) Read more

QuickTime 7.6.9 update resolves 15 vulnerabilities

December 7, 2010 - Today Apple announced the availability of QuickTime 7.6.9 for OS X 10.5 and Windows platforms. This release fixes 13 vulnerabilities in QuickTime for OS X Leopard and 15 vulnerabilities (continue reading...) Read more

Targeted Attack Uses WikiLeaks as its Social Engineering Hook

December 7, 2010 - Posted on behalf of Tony Millington, Malware Operations Engineer, Symantec Hosted Services On Friday 3rd December at 12:41 Skeptic stopped a new virus that we had not seen before, a targeted attack against a government body using WikiLeaks as social engineering (continue reading...) Read more

Tenable Network Security Podcast – Episode 61

December 7, 2010 - Welcome to the Tenable Network Security Podcast - Episode 61 Hosts: Paul Asadoorian, Product Evangelist & Kelly Todd, Compliance Analyst Announcements Don't forget to sign up for Advanced SIEM Webinar Series - November through December Be certain to check out our (continue reading...) Read more

Spam Carrying WikiLeaks Worm

December 7, 2010 - Wikileaks.org is in the news after their recent publications linked to leaked government documents. Spammers are now leveraging the current level of interest with social engineering techniques to infect users’ computers. Symantec is observing a wave of spam spoofing WikiLeaks (continue reading...) Read more

Taking a look at fake Amazon receipt generators

December 7, 2010 - Above, you can see a vaguely optimistic VirusTotal user summary in relation to a file that’s been doing the rounds for about a month or two. Here is the file in question: (continue reading...) Read more

Introducing the Nessus Perimeter Service : redefining the cost of online scanning

December 7, 2010 - Have you ever wanted to run an external Nessus vulnerability audit of your DMZ but didn’t have access to a Nessus scanner (continue reading...) Read more

Top Abuses of Open Web Proxies

December 7, 2010 - While there is nothing new or Earth-shattering in this post, I thought I'd share what I have seen as the top abuses of open web proxies - as this is an everyday occurrence involving a large volume of web transactions (continue reading...) Read more

Twitter Trend Poisoning Cookbook

December 7, 2010 - We have become familiar enough with malware creators poisoning popular search engine terms through SEO techniques in order to deliver their malicious files to a greater pool of unsuspecting users. Other popular services such as Twitter have not escaped the (continue reading...) Read more

Stay safe online with Sophos this Christmas

December 6, 2010 - From the comfort of summer, Sophos Southern Hemisphere wishes you well for the festive season, and says, "Stay safe online this Christmas!" Watch and enjoy our Christmas card, and don't forget to read the tips which follow, too: (continue reading...) Read more

That’s One Small Step for Law Enforcement

December 6, 2010 - And a giant step for Internetkind. You really have to feel for the law enforcement officers throughout the world trying to bust the scum that attack your brothers, sisters, mother, father, grandparents, and everyone else. As hard as they try to (continue reading...) Read more

W32.Yimfoca.B – Malware Localization

December 6, 2010 - The latest W32.Yimfoca.B variants can target malicious links in no fewer than 44 countries and nearly 20 different languages. It has also increased the number of instant messaging applications to include most of the popular IM clients. Here is a (continue reading...) Read more

SEO poisoning in searches for “Mono Lake”

December 6, 2010 - Search engine results have been poisoned for those looking for information about Mono Lake, the California lake where NASA researchers have found a form of bacteria that uses arsenic in its DNA in (continue reading...) Read more

This isn’t a video, it’s a phish

December 6, 2010 - You might be seeing something on your Facebook wall today: Sadly, it’s not a fun video.  It’s just a phish. The link goes to apps. facebook.com/ lookatuhah, which then redirects to (continue reading...) Read more

Copyright © 2012 The Security Blog. All rights reserved.