Archive for December, 2007

Old school VXers calling it quits

Monday, December 31st, 2007

Grownup, shutdown
The old School Virus writers (VXers) scene is dying a death, according to Symantec.…

Read more…

Blogspot Blogs Help Spread Storm Worm Attacks

Saturday, December 29th, 2007

In an attack that showcases what cyber criminals have in store for Web 2.0 next year, the individual or group behind the Storm worm is distributing new versions of the malware with the help of hijacked and newly-created Google Blogspot blogs. The Storm worm, one of 2007’s most prolific e-mail-borne Trojan horse programs, has always come wrapped in holiday-themed messages or disguised as videos from some recent high-profile news event. The latest Storm versions — predictably spammed out as Christmas and New Year’s greeting cards - don’t break with that tradition. It urging recipients to click on a link that then tries to install the Trojan through hook (unpatched Web browser vulnerabilities) or by crook (tricking the user into believing he or she needs to install some “video codec” to view the holiday message). The twist with the new attacks is that someone has apparently planted the malicious Storm […]

Read more…

Security Updates for Flash, Opera

Saturday, December 22nd, 2007

Adobe is urging people who use its Flash Player (this includes pretty much all Windows users) to upgrade to a new version that fixes at least nine separate security vulnerabilities that could be exploited to install unwanted software on vulnerable computers. The latest, patched version of the Adobe Flash Player is 9.0.115.0, but regular readers of this blog most likely have version 9.0.47.0 on their systems. Adobe says the flaws are present in pretty much all versions prior to 9.0.115.0. To see what version of Flash you have, visit this link and check the number displayed in the “version information” box. Updates are available for pretty much all browsers on just about any operating system, including Linux and Mac OS X (a Solaris update will be released later on). The latest Windows version is available for download at this page. Updates for other operating systems can be found here […]

Read more…

Ad hijacking Trojan targets Google

Friday, December 21st, 2007

Misdirection ruse
Security researchers have identified a Trojan that hijacks Google text advertisements, replacing them with “ads” from a different provider that are likely to be laced with spyware.…

Read more…

Russian Feds close in on Pinch Trojan authors

Friday, December 21st, 2007

Tales from the Underground
Russian authorities have identified the authors of the notorious Pinch malware creation toolkit. Arrests are expected to follow.…

Read more…