The creativity and resourcefulness of the criminal underground never ceases to amaze me. Granted, these guys have nothing else to do but sit around and come up with new scams, but still, some of these things are truly inspired. Have a look at this Google AdWords phishing scam that has been showing up in recent [...] read more »
Google AdWords phishing scam on the loose
- access data
- adobe pdf
- adobe reader 8
- adwords google
- chief security architect
- chris hoff
- core services
- credit card fraud
- critical industries
- critical infrastructure security
- critical windows
- critical windows
- critical windows
- emergency patch
- emergency patch
- emergency patch
- emergency patch
- encrypted hard drives
- endpoint
- endpoint
- endpoint
- google adwords
- graphical user interface
- microsoft patches
- microsoft patches
- microsoft patches
- microsoft rpc
- msrc
- national computer security
- national computer security center
- national security applications
- network tool
- publicity stunts
- reader acrobat
- registrar accreditation agreement
- registrar accreditation agreement
- registrar accreditation agreement
- sans internet storm center
- sans internet storm center
- security development lifecycle
- sisk
- social networking sites
- social networking sites
- social networking sites
- stock market crash
- threat modeling
- virtual network
For Symantec CEO, a legacy of growth
- arbor networks
- arm processors
- botnet
- chinese computer hackers
- college of dentistry
- computer programmer
- coo
- cripples
- customer base
- cyber warfare
- data transmission
- dll c
- express scripts
- helm
- independents
- just desserts
- key windows
- mailers
- mccain campaign
- member data
- nasa hacker
- obama mccain
- quiz master
- removable storage devices
- scansafe
- school server
- security alliance
- security researchers
- security researchers
- security researchers
- security screening
- security vendor
- social engineering
- spanish versions
- symantec
- tools
- tools
- travel security
- trojan horse
- trojan horse
- trojan horse
- trojan horse
- vendor consolidation
- verisign inc
- voip
- wall street expectations
- web hosting firm
- whois info
- worm attacks
Company is poised to weather tough economy with diverse portfolio and strong customer base, analysts say.
VoIP tools, attacks could increase threat
- 8e6 technologies
- access data
- adobe pdf
- computer programmer
- core services
- cripples
- critical industries
- critical infrastructure security
- critical windows
- critical windows
- critical windows
- critical windows
- critical windows
- dll c
- encrypted hard drives
- endpoint
- endpoint
- endpoint
- endpoint
- graphical user interface
- mccain campaign
- microsoft patches
- microsoft patches
- microsoft patches
- microsoft patches
- msrc
- nasa hacker
- network tool
- obama mccain
- operating systems
- sans internet storm center
- sans internet storm center
- sans internet storm center
- security specialist
- sisk
- spanish versions
- tools
- trojan horse
- trojan horse
- verisign inc
- virtual network
- voip
- wall street expectations
- whois info
- windows 2000
Tools are available to automate VoIP attacks, but the threat remains low until VoIP communications is more pervasive in the workplace.
SysProt AntiRootkit v1.0.0.7 released!
Here's a quick update on SysProt AntiRootkit. Various improvements were made in SSDT hook detection and hidden files scanning feature. And as a result, here's the latest release - SysProt AntiRootkit v1.0.0.7.
Download SysProt AntiRootkit v1.0.0.7 from MajorGeeks. Your feedback is welcome :)
Supported operating systems: Windows 2000/XP/2003 32 bit.
SysProt AntiRootkit v1.0.0.6 released!
Here comes the latest version of SysProt AntiRootkit, with various improvements over the previous version. Following list summarizes the improvements in SysProt AntiRootkit v1.0.0.6:
- Improved hidden drivers and services detection
- Improved driver/service disabling feature
- Improved process killing mechanisms
- Added DLLs view for processes (double-click on a process to see loaded DLLs)
- Brand new hidden and locked files/folder scanning
- Color coded display (hidden items are displayed in red color)
read more »
Sophos sees increase in malicious email attachments
Spam using malicious attachments and social engineering techniques are targeting computer users in rising numbers, according to security vendor Sophos.
Community banks to increase security spending, survey finds
Smaller banks place a priority on protecting customer data and plan to spend more on security technology, according to a new survey.
Security flaw exposes Google G1 phone to attacks
If you’re planning to bring a new smartphone to market anytime soon, you might want to check with the guys at Independent Security Evaluators first. For the second time in about 15 months, ISE researchers have discovered a security flaw in the operating system of a high-profile smartphone, this time it’s a vulnerability in the [...] read more »
Fake DivX codec
Here's a new Zlob fake codec variant, which touts itself as DivX codec. The dropper is named as DivXCodecPKG.7.exe and is hosted at http://softawe-download-forpc.com (66.232.126.78). Whois information for this domain can be found here. read more »
Trojan exploiting Microsoft RPC flaw
A new Trojan exploiting the Microsoft RPC flaw propagates automatically through networks and finds cached passwords.
Microsoft releases Windows patch to stop worm attack
Microsoft issued an out of cycle update, plugging a dangerous hole that could be used to craft a worm attack.
Microsoft to release urgent security patch
Microsoft said it plans to release a critical security update out of its normal patching cycle to plug a hole that affects Windows 2000, XP, and Windows Server 2003.
IBM issues updates to fix serious DB2 flaws
IBM released updates for its DB2 database management system, fixing a variety of flaws that could be exploited by hackers to bypass security controls.
Cisco warns of security appliance flaws
Cisco Systems warned customers Wednesday that its Adaptive Security and PIX Security appliances contained flaws affecting the security of VoIP and VPN connections.
Alcatel-Lucent's 3G laptop security card goes international
The new Laptop Guardian tracks the location of lost or stolen laptops and gives IT pros the ability to wipe the hard drive remotely.
Penetration tester explains secrets to accessing corporate systems
Penetration tester Chris Nickerson talks about the fun of penetration tests, the risks of outsourcing and unveils how ethical hacking helps companies with risk assessments.
IT security pros focus on internal threats during tough economy
Layoffs, mergers and acquisitions are forcing some IT security pros to look closely at the internal threats posed by disgruntled employees and mishandled data.
The RPC Worm Victim List.
An RPC worm is currently active and running based upon NamedPipes abuse as seen in the advisory from Microsoft. It's extremely important to patch any Windows machine you have under your control, because when RPC and NamedPipes are enabled you are in for one hell of a ride. A moment ago I discovered the list of affected host that are compromised by the RPC Worm. I'll post it here, so anyone can see which hosts are vulnerable. read more »
Trojan exploiting MS08-067 RPC vulnerability
There are reports emerging Friday morning of a new Trojan exploiting the MS08-067 RPC vulnerability in Windows that Microsoft patched with an emergency fix yesterday. Known as Gimmiv.A, the Trojan propagates automatically through networks, and also installs a number of small programs on compromised machines. But its most worrisome capability is a feature that enables [...] read more »
Microsoft RPC flaw could be worm bait
The vulnerability that Microsoft patched today with an out-of-band patch is about as serious as they come, allowing remote code execution on every supported version of Windows. The rare emergency patch–which is the first Microsoft has issued since early 2007–was prompted by the fact that the company has been seeing targeted attacks against the vulnerability [...] read more »


