Rock Phishers Up the Ante with More ‘Digital Certificates’

Monday, April 28th, 2008

Our friends from RSA have recently reported about the latest one-two punch employed by the infamous Rock Phish gang (also reported here and here ). Best known for their easy-to-use kits that yield professional looking phishing pages, Rock Phish now adds information-stealing malware — dubbed as the Zeus Trojan — ...

Between black and white: the state of grayware on the PC

Friday, April 25th, 2008

In the old days, as our parents frequently love to remind us, life was much simpler. You bought a computer, and when you finally figured out what you wanted to do with it, you assembled a list and went down to your local Egghead for some software. It was straightforward, ...

Targeted attacks using malicious PDF files

Thursday, April 24th, 2008

Dating back to the end of February, we have been tracking test runs of malicious PDF messages to very specific targets. These PDF files exploit the recent vulnerability CVE-2008-0655. Ever since the end of March, beginning of April, the amount of samples seen in the wild has significantly increased. Interestingly enough, ...

A Look at a Bank Worm

Wednesday, April 23rd, 2008

Malware authors will often have their files display something to the user so that they actually believe the file is legitimate. Many of us have experienced such tricks, including fake errors stating that a specific file could not be found or that the application failed to load properly. Today we ...

Malware to grow tenfold in 2008

Wednesday, April 23rd, 2008

The number of online threats will have grown tenfold by the end of 2007, according to researchers at anti-malware firm Kaspersky. Kaspersky analysts said at Infosec Europe 2008 that new malicious programs recorded on the internet, including viruses, worms and Trojans, amounted to 2.2 million in 2007, representing a fourfold increase ...

Protect Yourself From PC Security Pitfalls

Wednesday, April 23rd, 2008

Our columnist shows you how to get rid of spyware, shrug off spam, and stay safe on unsecured public networks. Viruses, spyware, and worms. Oh, my! We all know the dangers inherent in accessing the Internet, and we all take precautions. Yet our PCs still occasionally get infected because we can't know ...

Infected Web Pages Nearly Triple

Tuesday, April 22nd, 2008

The rate at which Internet security company Sophos detected infected Web pages nearly tripled in the first quarter of 2008, the company said. In its Q1 08 threat report released Monday, Sophos says that it discovered a new infected Web page every 5 seconds. In 2007, the company says, it saw ...

Malicious Flash on LiveJournal.com

Tuesday, April 22nd, 2008

Sounds more of an annoyance than it does "malicious" but the folks over at Spyware Sucks has an interesting post about a bad flash banner being posted on Livejournal.com.  I just thought I'd share.

Microsoft sees huge rise in Web attacks

Tuesday, April 22nd, 2008

Criminals changed tactics in the last six months of 2007, dropping malicious email in favour of Web-based attacks, according to data reported to Microsoft by Windows users. The company saw the number of Trojan downloader programs it removed from Windows machines jump by 300 percent, according to Jimmy Kuo, principal architect ...

Whale Phishing

Friday, April 18th, 2008

One of the things I love about cutting-edge technology is the way we get to invent fun, new terminology. It seems to have been around before, but I just came across my first reference to "whale phishing." It describes a phish where the target is a very important person, such ...