Security News
New iPad Attracts Spammers
March 10, 2010 | Spam and email
According to Apple's recent announcement a new iPad will soon be available in the United States. However, spammers is also enjoy it, because they can use it by their own malicious intentions. What is more, even now Trend Micro anti-spam research engineers have already seen a number of spammed messages. Those messages offers free iPads to users. As an example, in such spam users are invited to test iPad for free only just be a part of a “word-of-mouth” marketing campaign. Read more.
How to Create a Secure Password?
March 8, 2010 | Security basics
I believe you have not one web site you have log into. Many of them requires a password for detailed usage of it. It also has to be noted, those web pages that are serious about their security even set few rules for creating a password. I am sure that you've noticed that few of them may ask you that your password would be at least eight characters, or must contain non-alpha-numeric characters, or must use at least one uppercase letter and etc. Read more.
A Bug Found in OpenSSL
March 5, 2010 | Vulnerabilities
A “severe vulnerability” was found in the OpenSSL. Computer researcher's used software encryption package that allows them to rebuild a machine's confidential cryptographic key. The flaw in OpenSSL is important because the open-source package is used to protect sensitive data all over the world. Read more.
Source Code is Stolen By Hackers
March 5, 2010 | Online security
George Kurtz, McAfee's chief technology officer, announced about the attack against software configuration management products. According to security vendor McAfee, which released a report, in some of these attacks software source code was accessed by hackers. These attacks were targeted to company engineers and technical staff. It was done by malicious software. According to Kurtz, source code management systems were accessed and code was downloaded outside of company firewalls. Read more.
Google Engineer Disclosed Window's DEP Flaw
March 5, 2010 | Vulnerabilities
A Google security software engineer Berend-Jan Wever revealed his exploit research - published proof-of-concept code that bypasses data error prevention (DEP). This disclosure can lead to more successful attacks against Microsoft's newer operating systems.DEP intends to prevent an application or service from executing code from a non-executable memory region. Berend-Jan Wever posted at his personal blog on Monday: “The exploit I released would not work if you had DEP turned on for MSIE. Read more.
Top 15 Most Abused TLDs in February 2010
March 4, 2010 | Phishing
Avira recently released report about the most abused TLDs in February 2010. The main difference noticeable from January is that the .ru domain were used 64% often that January. This factor was the reason that .ru domains ended on the 3rd place in this top 15 (see the list below). Phishing (top level domains, %):1) .com 46.20 2) Others 11.27 3) .ru 9.92 4) .org 6.24 5) .net 5.276) IP Address 4.167) .kr 4.00 8) .cz 3.76 9) .uk 2.3710) .fr 1.6711) .pl 1.1712) .info 1.12 13) .de 1.0314) . Read more.
Mariposa Botnet is Closed and Attackers Are Arrested
March 3, 2010 | Online security
Spanish executive arrested three men that had Mariposa botnet under control. It is thought that Mariposa controlled 12.7 million computers over the world. Three arrested people all are Spanish citizens: "netkairo," 31; "jonyloleante," 30 and "ostiator," 25. According to these handles police was able to identify them. Mariposa appeared to be one of the most largest botnets over the world. It took over millions of computers and not all of them are already clean. Read more.
Be Careful With F1!
March 3, 2010 | Vulnerabilities
Microsoft announced one more IE vulnerability in its advisory . This unpatched vulnerability can affect users of Windows 2000, Windows XP, and Windows Server 2003 that running Internet Explorer. VBScript flaw can be used to run malicious code. Attacker can create a web page that displays an exact dialog box with a suggestion to press F1 key. This accomplishment can terminate malicious code on a victim computer. Read more.
Fake Virus Total
March 2, 2010 | Malware
VirusTotal.com is a well known and reputable free virus and malware online scan service. It is not surprising attackers have chose to use its good name for their malicious intentions. The malware authors registered virus-total.in. This is an opposite to the legitimate site which is at virustotal.com with no dashes in the title. The fake message at the page claims:“We detected viruses activity from your computer. Read more.
Recently Used Spam Categories
March 2, 2010 | Spam and email
Avira’s AntiSpam engine detected and announced the most used spam categories in February 2010. At the list below you can see that the biggest percentage (37.55%) is still for buying meds from online pharmacies. Spam categories in March:Pharmacy 37.55%Other 36.80%Watch 5.22%Malware 4.91%Software 3.53%University 3.25%Lottery 2.69%Nigerian 2.07%Casino 1.74%Phishing 1.12%Jobs 0.72%Loan 0.24%Commercials 0.14%Fashion 0. Read more.
