- duckblog: Get into RSA 2012 in San Francisco for free! Use the code SC12SPH - http://t.co/DXO28TCYabout 2 hours ago
- ChetWisniewski: Update on the KPN compromise in The Netherlands, company says "password are encrypted with UTF8" http://t.co/EmDuXfqSabout 3 hours ago
- gcluley: Cryptome was hacked this weekend directing users to Blackhole exploits. Advice for web admins http://t.co/aN78hlkpabout 5 hours ago
- ChetWisniewski: Leaks website Cryptome was hacked this weekend directing users to Blackhole exploits. Advice for web admins http://t.co/OxSK9sifabout 6 hours ago
Monthly Archives: March 2009
DHL tracking number emails contain malware
Once again the bad guys are hard at work, spamming out dangerous emails. This morning it's emails which claim to come from DHL, saying they were not able to deliver a postal package you sent on 14th of March because Read more…
Skype Me/Spam Me?
I've been a Yahoo and MSN'er for years, but over the weekend I decided to give Skype a go, as a simple means of saving money on International phone calls to my parents. Hard times, credit crunch, you know how Read more…
Chinese mobile firm punishes staff for SMS spamming
Mobile phone spam sent via SMS text message is a huge problem in China. According to statistics from the Internet Society of China (ISC), an astonishing 353.8 billion spam text messages are sent every year in the country. I calculate Read more…
I've been banned by the BBC!
Mark Perrow, the executive producer of the controversial BBC Click documentary about botnets, published his justification for the programme on the BBC website. It's well worth reading if you're interested in understanding the BBC's opinion, and checking out other people's Read more…
Ecard identity thief escapes jail
Chances are that you're no stranger to receiving electronic greeting cards (ecards) in your inbox which claim to have been delivered by the likes of Blue Mountain and Hallmark. Sadly, cybercriminals know that many internet users find the thought of Read more…
Mac malware authors still plugging away
Last week, SophosLabs received several reports of some new Mac malware (Intego and Threat Researcher). So I asked around for samples (sample exchange) and was able to write detection on for OSX/RSPlug-F (and updated it for a minor variant). Like Read more…
Competition in the detection stakes and the welfare model
Members of the Anti-Virus software vendor community regularly exchange malware samples (secure PGP, of course) with each other. This fact is difficult for several visitors, eg customers, partners, etc, to SophosLabs to fathom. In a "dog-eat-dog" capitalist global economy why Read more…
Antique Chair and a fake anti-virus
I was having a look at some of the sites serving up Fake Anti-Virus malware, and came across this interesting content on one of the pages: Whoever wrote that really has antique chairs on the brain, they seem to keep Read more…
Suspected Pentagon hacker "Wolfenstein" arrested
According to media reports, a 23-year-old man has been arrested in Romania, suspected of hacking into US Department of Defense systems in 2006. According to investigators, Eduard Lucian Mandru, of Iaşi, Romania, is not just a student at the local Read more…
Heroes
As I'm sure you're by now aware, a security researcher named Charlie Miller was able to pwn Safari in 10 seconds at CanSecWest yesterday! A truly spectacular feat! I'm not even sure how he was able to type so fast! Read more…
Natasha Richardson's death exploited by hackers
Cybercriminals don't waste any time these days jumping on the coat-tails of breaking news stories in their attempt to infect as many computer users as possible. This time it's the tragic death of award-winning English actress Natasha Richardson, who died Read more…
Has Australian list of banned websites been leaked?
A list of some 2400 websites, said to have been deemed unsuitable by the Australian Communications and Media Authority (ACMA) for containing illegal content related to child abuse, rape and other criminal activities, has been published on the internet. The Read more…
Drive-by download kit: Not so LuckySploit
Over the past few months SophosLabs have been seeing a relatively new kit being used by attackers in drive-by downloads to infect victims with malware. The kit is known as LuckySploit, and in this blog I will take a brief Read more…
Virtumundo Goes Auto
The behaviour of most autorun worms is generally predictable. They copy themselves to the system folder, create an autorun file, spread to any available removable storage devices or network shares and change registry entries to enable themselves to run automatically. Read more…
Michael Jackson quiz: we have a winner!
Last week I told you about some dodgy goings-on that had been spotted on Michael Jackson's website, and liberally sprinkled my blog post with titles of songs by the llama-loving moon-walking oxygen-tent-inhabiting phenomenon. In no particular order, here are the Read more…
Stop staff plugging their body parts into your PCs
When is a thumb drive, not a thumb drive? When it's a finger drive! Finnish software engineer Jerry Jalava lost one half of his left ring finger in a motorcycle accident last year. The inventive computer programmer from Helsinki had Read more…
More details on the Diebold ATM Trojan horse case
Yesterday, Vanja Svajcer of SophosLabs described how he had discovered malware which appeared to be designed to steal information from users of Diebold ATM cash machines. I also published some discussion here on the Clu-blog about how the Trojan horses Read more…
From Russia with money
Today we started seeing a new malware campaign arriving on our spamtraps: The message appears to have been generated through a translator as the text is quite broken grammatically. If I decipher the message correctly, it purports to be from Read more…
Is there malware lurking in your ATM?
Sophos Principal Virus Research Vanja Svacjer has posted a fascinating blog today about his discovery of malware which appears to target Diebold cash machines. You can read the full details in Vanja's blog post, but I thought it might be Read more…
Credit card skimming malware targeting ATMs
From time to time, because they know I work for SophosLabs, my friends ask me about different malware types and forward me warnings of alleged malware outbreaks, which often turn out to be just standard hoax emails. If anybody asked Read more…


