Reversing malware with oSpy

Friday, July 18th, 2008

Today's blog will be about a tool called oSpy, written by Andre Vadla Ravnas. oSpy is a tool which helps in reverse-engineering windows software. To demonstrate the uses of this tool and how it helps with network traffic monitoring, I have used a random malware sample from our repository. Source: http://securitylabs.websense.com/content/Blogs/3135.aspx

Researcher Offers Malware Analysis Tool

Friday, July 18th, 2008

The problem with hunting for malware is that most currently available analysis tools tip off the attacker that you're doing it. But at next month's Black Hat conference, a researcher will release a tool that is harder to detect -- and harder to avoid -- than the malware analyzers currently ...

New Worm Transcodes MP3s to Try to Infect PCs

Friday, July 18th, 2008

A new kind of malicious software could pose a danger to Windows users who download music files on peer-to-peer networks. The new malware inserts links to dangerous Web pages within ASF (Advanced Systems Format) media files. "The possibility of this has been known for a little while but this is the first ...

Zodiac – DNS Protocol Monitoring and Spoofing Tool

Friday, July 18th, 2008

Zodiac is a DNS protocol analyzation and exploitation program. It is a robust tool to explore the DNS protocol. Internally it contains advanced DNS routines for DNS packet construction and disassembling and is the optimal tool if you just want to try something out without undergoing the hassle to rewrite ...

Darik’s Boot and Nuke Securely Wipes Your System in an Emergency

Thursday, July 17th, 2008

Free, open-source boot disk utility Darik's Boot and Nuke (DBAN) automatically and completely deletes the content of every hard disk it can find on your computer when you run it. Sure you can fire up DBAN for emergency system wipes next time the feds come knocking on your door, but ...