- duckblog: Get into RSA 2012 in San Francisco for free! Use the code SC12SPH - http://t.co/DXO28TCYabout 2 hours ago
- ChetWisniewski: Update on the KPN compromise in The Netherlands, company says "password are encrypted with UTF8" http://t.co/EmDuXfqSabout 2 hours ago
- gcluley: Cryptome was hacked this weekend directing users to Blackhole exploits. Advice for web admins http://t.co/aN78hlkpabout 5 hours ago
- ChetWisniewski: Leaks website Cryptome was hacked this weekend directing users to Blackhole exploits. Advice for web admins http://t.co/OxSK9sifabout 5 hours ago
Monthly Archives: April 2009
Another Facebook Phish Attempt
This morning people began receiving messages in their Facebook inbox with a subject of "Look at this!" and a message body containing a simple link pointing you to fbstarter.com. Yesterday we saw a similar looking domain attempting to phish peoples Read more…
Swine flu "cure" offered by Russian RX sites.
It was sad but not at all surprising to see spammers exploiting the swine flu topic. Today we came across a yet another example of Internet "entrepreneurs" being cynical enough to use the situation for their financial benefit. Rx-Partners is Read more…
Victory for Sophos at SC Awards
Excuse me for being brief, but I'm typing this from a broom cupboard backstage at the Infosec show in London. I'm surrounded by wires, audio-visual gear, a karaoke system (come by booth G50 in Earls Court at 4pm to hear Read more…
Alarm raised over Adobe PDF zero-day vulnerability
If you are one of the world's many users of Adobe's Acrobat PDF Reader software then there's good reason to prick up your ears and listen today, as details emerge of a critical zero-day vulnerability in the software that could Read more…
InfoSec Pants
Yesterday, I wandered around the first day of InfoSec Europe . I have been visiting InfoSec for the last 10 years and this was the first time at Earls Court. Maybe it was the fact that RSA had just happened Read more…
Ever been spammed on a social network?
How about received a phishing message? Or sent a malicious link? It seems occurrences of cybercrime on social networking sites like Twitter and Facebook are becoming more and more commonplace. Today, we've published some research looking into just how common Read more…
When is a file not a file?
Sometimes it is easy to examine a file and to tell what it is. Program files, at least on Windows, start with the two bytes 'MZ', after Mark Zbikowski, the Microsoft coder who invented the original EXE file format for Read more…
Meet Sophos at Infosec in London
A quick hop and a skip and I'm no longer in San Francisco at the RSA show, but at Infosecurity Europe in London instead! Yes, the great and the good of the computer security industry have gathered once again (it Read more…
Canadian anti-spam laws take an important step forward
Guest blogger Michael Argast, director of global sales engineering at Sophos, discusses changes in anti-spam legislation in his home country of Canada. Over to you Michael.. The Conservative government in Canada last week introduced the Electronic Commerce Protection Act to Read more…
Spam referencing Swine flu outbreak
Predictably enough, today we started to see spam taking advantage of concerns around the current Swine Flu outbreak. Surprised? We shouldn't be. Just another day in the office for spammers. Crawling news sites for suitable stories to use in campaigns Read more…
Classic car rally at Sophos
Yesterday, Sophos's UK office in Abingdon was proud to play host to a classic car rally. Gorgeous weather greeted more than 50 classic cars, including MGs (most of which were actually built in Abingdon between 1929 and 1980) and Morgans Read more…
Inconceivable!
I came upon this installer today called "Microsoft Virus Fix". Being somewhat curious, I proceeded to run the application and the following message appears: Ok. I was somewhat underwhelmed (not impressed) by the application's appearance. In fact, it already tells Read more…
Salma Hayek's email account is hacked
According to reports, Hollywood actress Salma Hayek has fallen victim to hackers, who have broken into her email account and released images of her private communications. The actress, remembered equally well for her Oscar-nominated role in the biopic of Frida Read more…
Amazon spoofed in spammed-out malware attack
For those of you tired of seeing and hearing about malware being distributed via the infamous UPS emails, here's a little something new for you this morning from our spam traps; Your transaction has been processed by WorldPay, on behalf Read more…
Windows Blocked
There's been a lot of talk in the last couple of days about a large botnet announced by the folks over at Finjan. We detect the malware behind that network as Mal/Dropper-DL which installs several more pieces of malware, including Read more…
Councillor found guilty in spyware case
A councillor from Greenville County, South Carolina, who was convicted this week of spying on fellow council workers' PCs, could face up to 16 years in jail. Tony Trout was arrested last October, after infecting PCs with the RemoteSpy program, Read more…
Happy birthday to the Clu-blog
Grab your bagpipes, join the marching band, festoon your balustrades with bunting... because this blog is one year old today! Huzzah! Although the Clu-blog wasn't unleashed on the great unwashed public until some time in July 2008, it began internally Read more…
Postcard from RSA
Dear Clu-blog reader, Having a lovely time in San Francisco at the RSA Conference. It's really rather unseasonably sunny - you'd like it! I haven't been able to blog as much as I'd like as Christina (who ensures discipline on Read more…
Good riddance - Zango shuts down
Not many people will be shedding a tear this week at the news that notorious adware distributor Zango has shut its doors. According to media reports, Zango (who were previously known as 180Solutions) was unable to remain in business because Read more…
New Zealand websites hijacked
Turkish hackers have managed to break into New Zealand domain registrar Domainz.net, redirecting unsuspecting surfers to defaced versions of popular websites by changing DNS records. Websites such as www.hsbc.co.nz, www.sony.co.nz, coca-cola.co.nz, www.xerox.co.nz, www.msn.co.nz, www.microsoft.co.nz and hotmail.co.nz as well as security Read more…


