New Phishing Technique Outfoxes Site Owners: Operation Huyao

Wednesday, November 5th, 2014

We’ve found a new phishing technique targeting online shopping sites that may significantly change the threat landscape for phishing sites. Conventional phishing sites require an attacker to replicate the targeted site; a more accurate copy is more likely to fool intended victims. This technique we found allows for the creation of ...

Cleaning up after password dumps

Wednesday, September 10th, 2014

One of the unfortunate realities of the Internet today is a phenomenon known in security circles as “credential dumps”—the posting of lists of usernames and passwords on the web. We’re always monitoring for these dumps so we can respond quickly to protect our users. This week, we identified several lists ...

New Zbot malware campaign discovered by researchers

Wednesday, June 18th, 2014

A new malware campaign spreading the Zeus trojan via phishing messages was discovered by researchers early Wednesday. AppRiver, an email messaging and web security solutions firm, told SCMagazine.com on Wednesday that it had quarantined 400,000 messages so far – a number that had jumped up from 40,000 just earlier in the ...

Serious security flaw in OAuth, OpenID discovered

Friday, May 2nd, 2014

Following in the steps of the OpenSSL vulnerability Heartbleed, another major flaw has been found in popular open-source security software. This time, the holes have been found in the log-in tools OAuth and OpenID, used by many websites and tech titans including Google, Facebook, Microsoft, and LinkedIn, among others. Wang Jing, ...

Zeus malware found with valid digital certificate

Friday, April 4th, 2014

A recently discovered variant of the Zeus banking Trojan was found to use a legitimate digital signature to avoid detection from Web browsers and anti-virus systems. Security vendor Comodo reported Thursday finding the variant 200 times while monitoring and analyzing data from users of its Internet security system. The variant includes ...