The Security Eunoia

Blogging about Security Auditing, IdM & Access Mgmt, Web App Security etc

Entries Tagged ‘Malware’

Important resources you need to contain Conficker

If you are new to or would like to know more about the conficker worm that has given many administrators sleepless nights, I have compiled a few URLs to resources that will help you understand how the worm operates, how to detect it and how to contain it.

Leave a Comment

Fighting Spam: Google and Microsoft can do better

Interesting article about BBC’s own little investigation into botnets and spamming and how easy it is to spam (the larger subject of course was cyber crime).

They basically set up a small botnet and asked the zombied PCs to spam two email accounts they had set up on Gmail and Hotmail.

Leave a Comment

F-Secure SQL-injected and Cross-Site scripted

Looks like F-Secure made it to the “sql-injected” and “xsscripted” list.

Leave a Comment

2008 IT Security Threat Summary - Malware tops by far

F-Secure has published the IT Security Threat summary for the second half of 2008.
Summary:

Growth in amounts of malicious software
Growth in infections
Growth in the number of botnets
Growth in criminal profits
Call for growth in punishment

Highlights:
On Botnets infections
During 2008 our Response Lab conducted a small research project focusing on approximately 60 orphaned botnets. Listening to the communication attempts [...]

Leave a Comment

Online payment site hijacked by crime gang

The Register has reported that an online payment service mycheckfree.com has lost control of at least two of its domains to a crime gang believed to be based in Eastern Europe.
Possible explanation?
It’s also unclear how the culprits managed to hijack the domains. While security experts say DNS poisoning wasn’t out of the question, the more [...]

Leave a Comment

Malware successfully installed. Click OK to Finish!

An article by Zdnet’s Zero Day blog discusses the current spread of malware via the Windows Autorun functionality - USB being the main transport agent.Talking about the malware, it notes:
Their functionality varies. It started out with online games password-stealers targeting World of Warcraft, LineAge and others. But over the last months, we’re seeing malware being [...]

Leave a Comment