Malware

Google warns users of malware

July 20, 2011

Google Online Security Blog Posted by Damian Menscher, Security Engineer As we work to protect our users and their information, we sometimes discover unusual patterns of activity. Recently, we found some unusual search traffic while performing routine maintenance on one of our data centers. After collaborating with security engineers at several companies that were sending [...]

Read the full article →

Microsoft Offers $250,000 Reward for Information on Rustock

July 18, 2011

The Official Microsoft Blog Posted by Richard Boscovich Senior Attorney, Microsoft Digital Crimes Unit 18 Jul 2011 Last month, I shared with you that the Rustock botnet has remained inactive since Microsoft and its partners took it offline on March 16th. Today, we take our pursuit a step further. After publishing notices in two Russian [...]

Read the full article →

Microsoft-New Threat Data on Rustock

July 6, 2011

Since successfully taking down the Rustock botnet on March 16th, Microsoft has continued to analyze the threat, investigate leads on the operations and owners of the botnet and work with Community Emergency Response Teams (CERTs) and Internet Service Providers (ISPs) worldwide to help the legitimate owners of Rustock-infected computers to clean their computers of malware. [...]

Read the full article →

McAfee-How I became a Zombie

June 23, 2011

Botnets Demystified and Simplified Let’s face it: Most people–even folks in the security industry–have a hard time explaining botnets (robot networks of infected computers) in a way that your Uncle Joe or Aunt Betty can understand. Is it really a big deal? Yes, it is. With the rapid growth in malware and bot infections we’re [...]

Read the full article →

WordPress warns of trojaned plugins

June 23, 2011

WordPress News June 21, 2011 Earlier today the WordPress team noticed suspicious commits to several popular plugins (AddThis, WPtouch, and W3 Total Cache) containing cleverly disguised backdoors. We determined the commits were not from the authors, rolled them back, pushed updates to the plugins, and shut down access to the plugin repository while we looked [...]

Read the full article →

Fake Parcel Service notification a spammed malware attack

June 9, 2011

I haven’t received one of these in the mail box myself, not yet anyway. Graham Cluley’s post at his naked security blog. Outbreak: United Parcel Service notification malware attack spammed out Cybercriminals are attempting to infect computers around the world, disguising their attack as an email claiming to come from United Parcel Service about a [...]

Read the full article →

Mac Malware

May 20, 2011

An AppleCare support rep talks: Mac malware is “getting worse” By Ed Bott | May 18, 2011 Over the weekend, I got an e-mail from an AppleCare support rep, who was responding to my recent reports of Mac malware being found in the wild. At least one prominent voice in the Mac community dismisses these [...]

Read the full article →

Federal Reserve Spam and Scam

March 15, 2011

Caught in my spam filter. Date: Tue, 15 Mar 2011 From: info@federalreserve.gov Under “click here” was federalwiresuppliersglobal.info Domain ID:D37217046-LRMS Domain Name:FEDERALWIRESUPPLIERSGLOBAL.INFO Created On:15-Mar-2011 11:05:23 UTC Last Updated On:15-Mar-2011 11:05:35 UTC Expiration Date:15-Mar-2012 11:05:23 UTC More at Gar Warner’s Blog. Last week the big malware-spreading spam claimed to be from NACHA and warned about problems with [...]

Read the full article →

Microsoft Security Advisory (2491888)

February 23, 2011

TechNet Vulnerability in Microsoft Malware Protection Engine Could Allow Elevation of Privilege Published: February 23, 2011 Microsoft is releasing this security advisory to help ensure customers are aware that an update to the Microsoft Malware Protection Engine also addresses a security vulnerability reported to Microsoft. The update addresses a privately reported vulnerability that could allow [...]

Read the full article →

MSRC: Insight into the Security Advisory 967940 AutoRun update

February 13, 2011

Microsoft Security Response Center 8 Feb 2011 In April 2009 we delivered a very public message to the Windows ecosystem that we were changing the behavior of Autorun in ways that improved security. We blogged on the progress of that transition, posting “AutoRun changes in Windows 7″ in April 2009. In November 2009, we posted [...]

Read the full article →