- gcluley: Metropolitan Police malware warning issued – beware the ransomware attack! http://t.co/A0GaLCghabout 2 hours ago
- gcluley: Sigh.. no, Facebook is not ending on March 15th 2012. Hoax spreads quickly [VIDEO] http://t.co/LmGayH3Labout 3 hours ago
- SophosLabs: RT @NakedSecurity Dutch ISP KPN hacked, credentials and personal information leaked http://t.co/W5qbrLkJ04:46 PM February 11, 2012
Monthly Archives: January 2009
Trouble in the Heartland
Heartland Payment Systems are reporting today that they had a data breach in their payment processing network last year. The full text of Heartland's statement can be seen here. Heartland are quite definite when explaining what was not stolen but Read more…
System administrators point the finger at each other over Conficker virus outbreak
You're not a very forgiving bunch are you? :) At least, that's the message I'm getting from the poll we ran overnight. It looks like 30% of you feel that fellow system administrators should shoulder the blame for the recent Read more…
Beware of Craigslist phishing email scams
It came out of the blue. An email telling me that my listing for a "Sony PlayStation 3 Metal Gear Solid 4 PS3 80GB bundle" had been posted on the Singapore branch of Craigslist. This was a surprise for me Read more…
Beyond the botnet
As reported by Shara Grifenhagen over at Commtouch, spammers for the last week have been abusing not only Google Docs (again) but also what appears to be a "recommend this to a friend" mechanism at ZDNet's web site, somehow finding Read more…
The United Airlines malware attack
Last week I told you how spammers were sending out emails posing as messages from Northwest Airlines. The attached file was not an electronic airline ticket of course, but a Trojan horse designed to infect your computer As anticipated, the Read more…
Green Party accused of sending spam
The Green Party in Ireland has been forced into making an embarrassing apology, after it was revealed that it had sent unsolicited emails promoting a viral video competition to technology bloggers. The ecologically-minded political party has good reason for having Read more…
Quick poll: Conficker worm - who is to blame?
The Conficker worm is continuing to make the headlines and create headaches for some system administrators - indeed, it's one of the biggest virus outbreaks we've seen for some time. If you've got two seconds then why not just give Read more…
Breaking news about Barack Obama
With Barack Obama's inauguration just around the corner, it's not surprising that we're seeing spam use it as a lure, in particular to seed malware. The campaign we've been seeing for the last few days has subject lines such as Read more…
Thumbing a Lift
I was analysing a cheeky little Visual Basic Script Worm the other day, and noticed that it used a method of ensuring its persistence on the infected system that I had not come across before. VBS/AutoRun-UC copies itself using the filename Thumb.db, clearly designed Read more…
SMS spam - Australia versus America
AT&T's recent decision to advertise the American Idol TV show in the US via SMS ended in tears, with floods of complaints on social networking sites - even though the campaign was apparently perfecly legal. Interestingly, even in Australia, whose Read more…
Passwords used by the Conficker worm
It's not possible to emphasise enough the importance of using sensible passwords on your network. Not just on the areas of your network that you don't want your users to traipse through, but also on the default network shares that Read more…
New Year Resolution is to Patch!
As the festivities become a distant memory, and the new Gym membership begins to look like a bad investment, there should be one New Year resolution everyone should keep throughout 2009 and that is to ensure they are patched. The Read more…
The Conflict of Autorun.inf
UPDATE: 20 Jan 10.00 GMT. See Below. SophosLabs received a new sample associated with the Conficker worm (1, 2) today. We first saw an Autorun.inf associated with Conficker earlier this month (W32/Confick-D). The Autorun.inf allows Conficker to spread by USB Read more…
Is this the world's craziest Nigerian email scam?
Here's an email scam (also known as a 419 scam, or a "letter from Nigeria") that appeared in our spam traps earlier today. It's hard to believe that people fall for these kind of email scams, but they do. But Read more…
American Idol cellphone spam angers AT&T customers
The world can thank Great Britain for some great inventions: William Shakespeare, The Beatles, the hovercraft and err.. pop talent shows hosted by Simon Cowell. American Idol, which tops the charts in the United States, fascinating viewers with Cowell's high Read more…
Why are phishers so lazy?
Maybe I should be grateful, but it amazes me sometimes just how lazy phishers and cybercriminals generally can be. Take this example, for instance. It's a regular eBay phishing scam - designed to try and fool you into clicking on Read more…
Mystery computer virus brings down Royal Navy email systems
According to media reports, the British Ministry of Defence has confirmed that computer systems on board ships in the Royal Navy Fleet have been severely disrupted by a computer virus outbreak. The Royal Navy has been understandably keen to stress Read more…
How to stop the Conficker worm on an unpatched PC
In the last week or so there has been a resurgence in the Conficker worm (called W32/Confick by Sophos's anti-virus products, and also known as Downadup) that we first saw in November. This is probably due to the malware authors Read more…
MySpace user stung for £130,000 in email scam
Minutes after blogging about the Canadian guy who has lost his friends and family a tidy sum after falling for an email scam, Clu-blog reader @MerseyMal tipped me off about a similar story affecting a British MySpace user. Shane Symington Read more…


