Monthly Archives: December 2008

Malicious porn Spike spammers lead to malware

Default image

In preparation for yesterday's media shindig about the new Sophos Security Threat Report, I prepared a couple of videos with help from Dmitry in the Vancouver branch of SophosLabs. It turned out that I didn't get to use the videos Read more…

Share

Promoting the Sophos Security Threat Report

Image (1) one-aldwych.jpg for post 13057

Yesterday I found myself sat in a hotel lobby all day, speaking to London's finest IT journalists about the threats we have seen during 2008 and some of our predictions about computer security in 2009. It's quite a trawl getting Read more…

Share

Throwing the baby out?

Default image

Recently, the IWF have been receiving a great deal of press, some good and some neutral. We have blogged about them before (1, 2) and will likely blog about them again. Sophos and the IWF are partners and as such Read more…

Share

Lights, camera, theft!

Image (1) watchdog.png for post 22998

Last night I had the opportunity to be on prime time television in the UK. The BBC has a regular program, Watchdog, that investigates scams and frauds perpetrated against the general public. The section I was involved with concerned the Read more…

Share

Mind Multi-Vitamins

Image (1) multivitamins.jpg for post 22995

This morning I analysed an autorun worm with a small political twist. The author of this particular worm has taken it upon himself to air his political grievances by infecting USB sticks and numerous locations on peoples' systems. He refers Read more…

Share

Massive German banking data leak reported

Default image

Warnings appeared this weekend of an enormous data breach in Germany. According to media reports, the accounts of 21 million German bank account holders are being offered for sale on the black market by a hacking gang. In the course Read more…

Share

FakeAV, with sound

Image (1) xlg-b.png for post 22991

Whilst investigating a couple of issues earlier this morning, I came across a new fake alert malware distribution site, pushing out samples of XL Guarder. Though this particular strain of fake alert malware is not new, it is the first Read more…

Share

The return of RemoteSpy

The return of RemoteSpy

Remember the case of CyberSpy? They are the firm I blogged about last month, after they were ordered by a court to stop selling their RemoteSpy program which allows users to keep a close eye on what is going on Read more…

Share

Scareware gang phishes for Chase banking details

Scareware gang phishes for Chase banking details

The organised cybercrime gang responsible for the fake anti-virus scareware campaign I blogged about yesterday, are now turning their hands to phishing. Emails, claiming to be directed at credit card customers of the Chase bank, actually point to a domain Read more…

Share

Zbot: still wriggling one year on

Image (1) zbot-hips.png for post 22986

It is almost a year since I blogged about Zbot being distributed by malicious web sites [1]. Back then it was also known under the alias Prg. Well, months have passed, and I won't begin to even guess the number Read more…

Share

More fake anti-virus attacks spammed out

More fake anti-virus attacks spammed out

We saw yet another example of an email-based scareware (fake anti-virus software) campaign this morning, which has also caught the eye of AusCERT. The bad guys are sending out messages with the subject line "Important message for you", posing as Read more…

Share

Can we expect mercy from spammers over Christmas?

Guest blog: Can we expect mercy from spammers over Christmas?

Sleigh bells are being brought out of storage, and Santa is polishing Rudolph's nose in readiness, as the world ramps up for the Christmas holidays. Guest blogger Paul Ducklin, Sophos’s Sydney-based head of technology, invites you to enter a competition Read more…

Share

Startups exposed after $100 million iPhone fund data leak

Startups exposed after $100 million iPhone fund data leak

A $100 million venture capital investment fund that was designed to help companies develop programs for the Apple iPhone and iPod Touch platforms has been left with egg on its face. The reason? A database containing information about 588 startup Read more…

Share

Email malware flying high

Email malware flying high

Cybercriminals are spamming out a new malicious email campaign, posing as airline tickets. In an attack which is similar to the contract malware we saw earlier this week and last week, the dangerous messages have a ZIP file attached to Read more…

Share

Shhh, I'm a banner ad

Shhh, I'm a banner ad

Pob's blog post yesterday got me thinking about online ads, and the problems (or at least complications) they can sometimes cause. Recent issues can be summarised quite simply - choosing to display ads sourced from some third party equates to Read more…

Share

Mac anti-virus support advice disappears off Apple website

Mac anti-virus support advice disappears off Apple website

Now this is very curious. As you may have seen, there has been a flurry of stories today pointing out that Apple actually told the world that running anti-virus software on their Macs was a good idea back in mid Read more…

Share

Beth ydy'r Cymraeg am spam ?

Beth ydy'r Cymraeg am spam ?

I came across this amusing story last week, it was of particular interest because it reminded me of the 4 years I spent at the University of Aberystwyth, where the Welsh language was fiercely protected. It's a beautiful language, but Read more…

Share

More rogue adverts

Image (1) top.jpg for post 22971

Last night, The Register asked us to look into a reader tip in regard to the website of the Daily Mail newspaper. While doing an initial investigation I may have not been clear as to what was happening - this Read more…

Share

FakeAV promo site exposed

Image (1) filter.png for post 22941

Scareware (aka "rogue software", aka FakeAlert, aka FakeAV) has been a growing trend in the recent months. This lucrative "business" generates multi-million dollar revenues today and shows no signs of slowing down. Occasionally we get a glimpse of how these Read more…

Share

Apples, viruses and internet snowballs

Apples, viruses and internet snowballs

Whoops. I'm sorry for not realising this myself when I wrote about whether you really need anti-virus on your Mac on the blog yesterday. It turns out that Apple's advice for the millions of Mac users out there to run Read more…

Share