- gcluley: Gorbachev is NOT dead - false news spreads on Twitter again http://t.co/Rx2kK45d11 minutes ago
- SophosLabs: Jimbo "Wikipedia" Wales's namesake country boasts the world's first Wikipedia Town! (Seriously.) http://t.co/heLEMX6Jabout 1 hour ago
- gcluley: Someone please help. I can't work out if this "Thank you Facebook" song is serious or ironic genius http://t.co/1GE0mRWVabout 6 hours ago
- gcluley: "Norton" phishing links to "AOL" phishing page? Lousy QA by spammers http://t.co/8j5GeYCFabout 7 hours ago
- duckblog: Jimbo "Wikipedia" Wales's namesake country boasts the world's first Wikipedia Town! (Seriously.) http://t.co/sgP0Vk1habout 10 hours ago
Monthly Archives: December 2008
Malicious porn Spike spammers lead to malware
In preparation for yesterday's media shindig about the new Sophos Security Threat Report, I prepared a couple of videos with help from Dmitry in the Vancouver branch of SophosLabs. It turned out that I didn't get to use the videos Read more…
Promoting the Sophos Security Threat Report
Yesterday I found myself sat in a hotel lobby all day, speaking to London's finest IT journalists about the threats we have seen during 2008 and some of our predictions about computer security in 2009. It's quite a trawl getting Read more…
Throwing the baby out?
Recently, the IWF have been receiving a great deal of press, some good and some neutral. We have blogged about them before (1, 2) and will likely blog about them again. Sophos and the IWF are partners and as such Read more…
Lights, camera, theft!
Last night I had the opportunity to be on prime time television in the UK. The BBC has a regular program, Watchdog, that investigates scams and frauds perpetrated against the general public. The section I was involved with concerned the Read more…
Mind Multi-Vitamins
This morning I analysed an autorun worm with a small political twist. The author of this particular worm has taken it upon himself to air his political grievances by infecting USB sticks and numerous locations on peoples' systems. He refers Read more…
Massive German banking data leak reported
Warnings appeared this weekend of an enormous data breach in Germany. According to media reports, the accounts of 21 million German bank account holders are being offered for sale on the black market by a hacking gang. In the course Read more…
FakeAV, with sound
Whilst investigating a couple of issues earlier this morning, I came across a new fake alert malware distribution site, pushing out samples of XL Guarder. Though this particular strain of fake alert malware is not new, it is the first Read more…
The return of RemoteSpy
Remember the case of CyberSpy? They are the firm I blogged about last month, after they were ordered by a court to stop selling their RemoteSpy program which allows users to keep a close eye on what is going on Read more…
Scareware gang phishes for Chase banking details
The organised cybercrime gang responsible for the fake anti-virus scareware campaign I blogged about yesterday, are now turning their hands to phishing. Emails, claiming to be directed at credit card customers of the Chase bank, actually point to a domain Read more…
Zbot: still wriggling one year on
It is almost a year since I blogged about Zbot being distributed by malicious web sites [1]. Back then it was also known under the alias Prg. Well, months have passed, and I won't begin to even guess the number Read more…
More fake anti-virus attacks spammed out
We saw yet another example of an email-based scareware (fake anti-virus software) campaign this morning, which has also caught the eye of AusCERT. The bad guys are sending out messages with the subject line "Important message for you", posing as Read more…
Can we expect mercy from spammers over Christmas?
Sleigh bells are being brought out of storage, and Santa is polishing Rudolph's nose in readiness, as the world ramps up for the Christmas holidays. Guest blogger Paul Ducklin, Sophos’s Sydney-based head of technology, invites you to enter a competition Read more…
Startups exposed after $100 million iPhone fund data leak
A $100 million venture capital investment fund that was designed to help companies develop programs for the Apple iPhone and iPod Touch platforms has been left with egg on its face. The reason? A database containing information about 588 startup Read more…
Email malware flying high
Cybercriminals are spamming out a new malicious email campaign, posing as airline tickets. In an attack which is similar to the contract malware we saw earlier this week and last week, the dangerous messages have a ZIP file attached to Read more…
Shhh, I'm a banner ad
Pob's blog post yesterday got me thinking about online ads, and the problems (or at least complications) they can sometimes cause. Recent issues can be summarised quite simply - choosing to display ads sourced from some third party equates to Read more…
Mac anti-virus support advice disappears off Apple website
Now this is very curious. As you may have seen, there has been a flurry of stories today pointing out that Apple actually told the world that running anti-virus software on their Macs was a good idea back in mid Read more…
Beth ydy'r Cymraeg am spam ?
I came across this amusing story last week, it was of particular interest because it reminded me of the 4 years I spent at the University of Aberystwyth, where the Welsh language was fiercely protected. It's a beautiful language, but Read more…
More rogue adverts
Last night, The Register asked us to look into a reader tip in regard to the website of the Daily Mail newspaper. While doing an initial investigation I may have not been clear as to what was happening - this Read more…
FakeAV promo site exposed
Scareware (aka "rogue software", aka FakeAlert, aka FakeAV) has been a growing trend in the recent months. This lucrative "business" generates multi-million dollar revenues today and shows no signs of slowing down. Occasionally we get a glimpse of how these Read more…
Apples, viruses and internet snowballs
Whoops. I'm sorry for not realising this myself when I wrote about whether you really need anti-virus on your Mac on the blog yesterday. It turns out that Apple's advice for the millions of Mac users out there to run Read more…

