|
by Rossano Ferraris Interestingly the new year 2008 opened its doors with a surprising news in the malware field. Hardware infected? Yes, again malware guys have showed their extraordinary fantasy to spread panic and disasters over the computer world...
|
|
by Rossano Ferraris Users are being infected with malware from a variety of sources. Unfortunately, malware authors are continually refining their technique. As I will show in this write-up, clicking on the results from innocent searches, like looking...
|
|
A famous quotation from the The Art of War is "If you know both yourself and your enemy, you will come out of one hundred battles with one hundred victories." A malware author following the principles of Sun Tzu might say "If you know both...
|
|
We continued to see a raft of new vulnerabilities being exploited by malware in 2006. Some of the vulnerabilities targeted included: MS06-005 - Microsoft Windows Media Player bitmap file buffer overflow vulnerability MS06-006 - Microsoft Windows Media...
|
|
Founded 6 years ago, XCON is a top level hacker conference in China. It is hosted by xfocus, a famous hacker group and sponsored by several security companies, such as NSFocus, Venus Tech and Microsoft. There are a variety of topics on computer security...
|
|
The day after I got back from a 16 day trip to Europe, I opened a letter from an unknown company who informed me that information about my bank account had been removed by one of their employees. The employee sold the information to a data broker who...
|
|
A chill ran up my spine when I came to my front door and it was already open. A USB cable lay strewn across the doorway. I could hear a stereo speaker eerily buzzing inside. I pushed the swinging door aside and confirmed my fear. I was robbed! After a...
|
|
In my last blog post , I discussed the importance of malware knowledge and research. I will go into a little detail here to respond to some of the rather "binary", sweeping generalizations that I've encountered recently. Some of the most...
|
|
Anti-Virus is Not Dead - AVIND, with apologies and full respect to Robin Bloor (who has an excellent blog where he discusses AVID and makes an impassioned case for AVID) and others. Nor, incidentally, are anti-spyware or anti-anything dead, as I hope...
|
|
I'm sure that many of you provide tech support for your family and friends, and run into the kinds of problems that I experienced this past weekend. My sister-in-law, we'll call her Bonnie for this blog (her name has been changed to protect the...
|
|
Recently I blogged about attending the recent AusCERT conference, and I thought at the time that hearing about vast numbers of compromised machines and the thriving underground criminal economy was pretty scary stuff. However, much scarier still was what...
|
|
I have just returned to the lab after visiting the AusCert computer security conference held last week on Australia's Gold Coast. You can find more information about AusCERT and the conference here: http://conference.auscert.org.au/conf2007/about_conf...
|
|
Self-propagating mechanisms, on which mass-mailers thrived, are no longer heavily employed by the current generation of email-borne malware. Currently, 'effective' mass-mailers such as Win32/Stration take a segregated approach to deliver their...
|
|
CA continues to monitor the activities of the group responsible for Win32/Luder and Win32/Pecoan , which gained notoriety as the 'Storm Worm' at the beginning of this year. Though Win32/Pecoan was not the first piece of malware to leverage an...
|
|
We had a glimpse into the future in 2006 with the introduction of several new malware for Mac platforms. We haven't seen quite enough Mac malware to wipe the smug expressions off the faces of most Mac users, and what we have seen has been mostly PoC...
|