Plish

Phishers target Webmasters

by certifiedbug on December 6, 2009

in Internet Security

Webmasters from many on-line hosting providers are targeted in a new round of Avalanche phish.

Spam emails bear the same basic message with variations in the email subject line which use the name of the target hosting company.

Recipients who click on the included link are taken to a Web site made to look like a cPanel page.

Due to the system maintenance, we kindly ask you to take a few minutes to confirm your FTP details.
Please confirm your FTP details by using the link below:

Webmasters who fall for the scam should contact their hosting provider and have them change the password/s. The site should also be checked for any changes.

Article and Sceenshots at “CyberCrime & Doing Time” by Gary Warner, director of research in computer forensics at the University of Alabama, Birmingham.

{ 0 comments }

President Obama on Cybersecurity

by certifiedbug on May 30, 2009

in Internet Security

President Barack Obama announced his plans for securing cyberspace.

“we’ve had to learn a whole new vocabulary just to stay ahead of the cyber criminals who would do us harm — spyware and malware and spoofing and phishing and botnets.”

Obama also mention Conficker.

No single official oversees cybersecurity policy across the federal government, and no single agency has the responsibility or authority to match the scope and scale of the challenge. Indeed, when it comes to cybersecurity, federal agencies have overlapping missions and don’t coordinate and communicate nearly as well as they should — with each other or with the private sector. We saw this in the disorganized response to Conficker, the Internet “worm” that in recent months has infected millions of computers around the world.

http://certifiedbug.com/blog/tag/conficker/

Net savvy Obama used social networking sites such as Facebook and Twitter during his campaign.

Press release:
REMARKS BY THE PRESIDENT ON SECURING OUR NATION’S CYBER INFRASTRUCTURE

New York Times:
Fending Off Attacks in Cyberspace

Steve Riley
Will the new US “Cybersecurity Coordinator” actually be able to do anything?

{ 0 comments }

Phish bites

by certifiedbug on August 26, 2008

in Internet Security

Users who retaliate to phishing attacks by telling off the phisher are being targeted with exploits designed to hijack their computers.

Joe Stewart at SecurityWorks Inc. The Phish That Bites Back

Mother’s advice not to talk back meant more than we ever knew. ;)

{ 0 comments }

Canadian hacker ring busted

by certifiedbug on February 21, 2008

in Internet Security

Quebec provincial police conducted raids on Wednesday, breaking up a hacking ring said to be responsible for an estimated CDN$45 million in damage to computer systems. Police did not release names of the accused who range in age from 17 to 26 years old. Three are minors.

In a videotaped press conference posted to the police agency’s Web site, Capt. Frederick Gaudreau, of the Surete du Quebec, said the hackers installed remote-controlled botnet software on victims’ machines in order to run phishing and spamming operations. The botnet is believed to contain up to one million zombie PCs, spanning 100 countries around the globe.

If convicted of computer hacking charges, the accused could face 10 years in prison, Gaudreau said.

Police confiscated computer equipment during the raids, and information found on the machines may lead to more charges against other alleged ring members.

{ 0 comments }

Script kiddies meet Batman

December 3, 2007

One of my favourite bloggers is Paperghost, aka Christopher Boyd, security researcher and malware basher. After reading his latest entry at Vitalsecurity I thought I’d share this link. Rise Up With Fists, Strike Down With Vengeance For the past week or so, I’ve been following a bunch of supposedly uber-cool hackers getting their kicks from [...]

Read the full article →

IE7 Phishing Filter Performance Update

February 2, 2007

IEBlog Steve Reynolds Program Manager This update addresses an issue experienced by some users where CPU usage is high when they are navigating a page that contains multiple frames or when multiple frames are navigated simultaneously. This occurs when the phishing filter evaluates the page for each navigation, resulting in multiple simultaneous evaluations for the [...]

Read the full article →

Phishers Compromise MySpace Accounts

October 28, 2006

The MySpace saga continues: Netcraft has discovered that the social networking site, MySpace, appears to have been compromised by phishers who have presented a spoof login form on the main site. This modified login form is designed to submit the victim’s username and password to a remote server hosted in France. Article PCWorld Reports that [...]

Read the full article →

Evaluating Anti-Phishing Tools

September 30, 2006

US Microsoft consultants 3Sharp LLC undertook a six week study testing several Anti-Phishing tools for overall accuracy; including Netscape, McAfee, EarthLink, eBay, GeoTrust, Google using Firefox, Microsoft Internet Explorer 7, and Netcraft. The IE Team comments on the Anti-Phishing Accuracy Study and the unique approach Microsoft has taken to combine a service-backed block list with [...]

Read the full article →

Yapbrowser acquired by Searchwebme

July 6, 2006

Blog.spywareguide Posted by Paperghost on July 6, 2006 Yep, it’s Yap time again. The Yap (of course) being Yapbrowser – a free web-browser that served up a whole lot more than end-users were probably bargaining for. Just when you think there’s nothing more to write about, something else pops up and gets the whole story [...]

Read the full article →

E-commerce in crisis:

May 1, 2006

InfoWorld By Roger A. Grimes May 01, 2006 Robbing a brick-and-mortar bank seems like petty theft compared with a new breed of cybercrime that, according to a growing number of security experts, is siphoning untold millions of dollars from banks and their customers using SSL-evading Trojans and ever more refined phishing techniques. Phishing with a [...]

Read the full article →