Content Tagged ‘Security Response’

Phishing Wave to Sniff FTP Credentials

December 11, 2009 - In a new wave of phishing attacks, Symantec has observed that attackers are targeting the FTP credentials of websites. The messages appear to come from various trusted Web hosting providers. So far we have observed that users of over 100 (continue reading...) Read more

Software White-listing Program

December 10, 2009 - In quality assurance circles at Symantec it is often stated that clean data (e.g. files from clean software) are to false positives as malicious data are to true positives. In simple terms this means that clean data helps us (continue reading...) Read more

Polly Wants a Cracker

December 9, 2009 - Ahoy there ye landlubbers! The high seas of wireless security appear to have gone commercial with the introduction of a paid service, which means it just got a whole lot easier for a casual attacker to break into your wireless (continue reading...) Read more

A New Wave of Mebroot

December 9, 2009 - A peak of new infections of Trojan.Mebroot has been found in the wild and after some investigation the data shows that there is a new wave of Mebroot Trojans being distributed through a popular exploit pack. The binary executables are (continue reading...) Read more

Microsoft and Adobe – Patch Tuesday for December 2009

December 8, 2009 - Hello and welcome to this month’s blog on the Microsoft patch releases. This month we also have a "Patch Tuesday" from Adobe. Microsoft's patches Microsoft released six security bulletins to address 12 vulnerabilities; seven are rated "critical." The critical issues affect Internet (continue reading...) Read more

Turscar ríomhphoist – Spam Email (in Irish)!

December 7, 2009 - According to the 2002 Census of the Population, 42% of the population of Ireland has the ability to speak Irish. Irish has also had official and working language status at the EU level since January 1, 2007. Recently, some examples (continue reading...) Read more

A Wolf in Sheep’s Clothing

December 7, 2009 - It has come to our attention recently that a website is giving out instructions on how to use a low tech social engineering trick to view private Facebook profiles. To view the instructions, a third-party application must be first downloaded (continue reading...) Read more

The Invisible Firefox Extensions

December 3, 2009 - The Mozilla Firefox browser is constantly gaining in popularity. A recent market share survey by Net Applications awards Firefox with 24% of users worldwide. One of the key philosophies of Firefox is that its functionality can easily be extended using (continue reading...) Read more

Zeus Trojan Catches Swine Flu

December 1, 2009 - Piggybacking (pun intended) on the swine flu pandemic is the Zeus bot crew, whose latest offering comes in the guise of an email purporting to come from the CDC (Center for Disease Control). The email contains a link to a (continue reading...) Read more

Koobface Kicking off the Festive Season

November 30, 2009 - The Koobface gang has been keeping themselves busy of late. Like Santa's little elves, they’re beavering away, creating and checking their fake Facebook and YouTube video sites and packin' it (the worm, that is) twice. The latest campaign involves posting (continue reading...) Read more

Tiger Woods Car Accident Heating Up the Web

November 28, 2009 - The car accident involving Tiger Woods last night outside his home in Windemere, Florida has been generating a lot of heat as far as Web traffic and searches go. Since the news broke, the top web searches on Google has (continue reading...) Read more

Illegal Games? Pay the Price—Publicly!

November 27, 2009 - Security Response has discovered a threat that is being talked about among some members of certain discussion groups in Japan. The threat, named Infostealer.Kenzero, teaches yet another lesson to those using file-sharing networks not to download illegal games. Infostealer.Kenzero (continue reading...) Read more

Black Friday, Cyber Monday, and now AV Friday!

November 25, 2009 - Okay, I did just coin the term “AV Friday” as a joke and it’s not to be taken too seriously. So, what is AV Friday all about? Many people living in the U.S. will be familiar with the term (continue reading...) Read more

Fake Airline Ticket Spam Taking Off

November 23, 2009 - Is your wish to spend the upcoming holidays in Hawaii or the Bahamas? With the recent increase in the volume of airline ticket spam, spammers have made it seem easy to grab cheap (or even free) airline tickets to your (continue reading...) Read more

Phishers Playing Games?

November 23, 2009 - Phishers are constantly targeting newer brands from diverse industries, with the sole motive of fraudulently acquiring a large amount of users’ confidential information for financial gains. Symantec has observed and followed up with some recent trends in phishing attacks targeting (continue reading...) Read more

Zeus’ Social Security Statement Spam Campaign

November 23, 2009 - Once again Zeus is up to its old tricks with a new twist.  The latest spam run informs users that their latest Social Security statement is available but it may contain errors.  The subject of the mail will be something (continue reading...) Read more

Yet Another iPhone Worm?

November 22, 2009 - It's only been a couple of short weeks since the iPhone background-changing incident that took the world by storm (well, parts of Australia at least), but already a Dutch ISP has reported what would be the first malicious iPhone worm to be (continue reading...) Read more

Zero-Day Internet Explorer Exploit Published

November 21, 2009 - A new exploit targeting Internet Explorer was published to the BugTraq mailing list yesterday. Symantec has conducted further tests and confirmed that it affects Internet Explorer versions 6 and 7 as well. The exploit currently exhibits signs of poor (continue reading...) Read more

Symantec Talks Trends and Looks into the Crystal Ball

November 20, 2009 - I had the honor recently of moderating a virtual roundtable discussion on the top Internet security trends from 2009 and what we expect to see in the security threat landscape in 2010. Funny thing about security predictions—you hope they won’t (continue reading...) Read more

This Utility Has Zero Business with Your Mailbox

November 19, 2009 - We are monitoring new malicious attacks that look similar to the fake "Microsoft Outlook reconfigure" spam campaign messages we have been observing for the last couple of months. That malicious campaign was followed by attacks on social networking sites, transforming (continue reading...) Read more

Copyright © 2012 The Security Blog. All rights reserved.