Monthly Archives: June 2009

How to trap a Facebook fraudster

Image (1) meng-facebook-trap.jpg for post 14435

I love this. Meng Wong, one of the chaps who lead the creation of Sender Policy Framework (SPF) a few years back, recently found himself on the receiving end of a Facebook "stranded in a foreign city" scam. I've discussed Read more…

Share

Was Lindsay Lohan's Twitter account hacked?

Image (3) lohan-tweet.jpg for post 14424

Fans of Hollywood actress and doyen of the gossip columns, Lindsay Lohan, might have noticed that she's been acting a little strangely recently. At least if they follow her antics on Twitter. Last week, a topless photograph of the 22-year-old Read more…

Share

Anti-Malware-Malware!?!

Image (1) spenser1.png for post 23823

1]. However, some people just fail to do their research. Enter SpenserNK - an Anti-USB-malware program which happens to operate by infecting removable devices, and keeping a library of its contents for matching at some later stage to determine whether Read more…

Share

The short arm of the law

Default image

Over the years, IT administrators (or, to be more accurate, the sort of IT administrators who take part in the admittedly unscientific polls we conduct on the Sophos website) have generally come across as a rather punitive sort. In particular, Read more…

Share

What would Turing do?

Image (1) picture-2.png for post 23839

It really annoys me when I look at a spam message and don't understand its intention. This is what happened today, when I saw a strange campaign that hit our spam traps when I was finishing my weekend work shift: Read more…

Share

Date set for next chapter in Gary McKinnon case

Image (1) gary-mckinnon-janis-sharp.jpg for post 14413

According to ZDNet, the high court is set to hear a London-based hacker's application for judicial review of a previous decision by the Crown Prosecution Service (CPS) not to prosecute him in the UK. Lord Justice Stanley Burnton and Mr Read more…

Share

Want a job? Then give us your social networking passwords

Image (1) bozeman.jpg for post 14409

File this one under "bonkers bureaucracy". According to media reports, the city of Bozeman in Montana has been insisting that prospective employees seeking a job with the city must not only reveal if they have accounts with the likes of Read more…

Share

Sophos wins excellence in innovation award

Image (5) tia-winners.jpg for post 14404

Aside from playing the tuba, guest blogger Rich Baldry is also a product manager for our web security solutions based in our Vancouver offices. Over to you Rich.. On Wednesday night I had the great honour of representing Sophos at Read more…

Share

Yet more mass injections

Image (2) cb1_sm.png for post 23817

With the whole Gumblar incident still ringing in the ears [2], we have been monitoring a series of other mass injection attacks over recent weeks. One such attack, dubbed 'Nine-Ball' [3], has gained some press this week. We have also Read more…

Share

Fake Microsoft Security Alert - KB910721

Default image

Yesterday afternoon our spam traps caught a piece of malware disguised as a false security alert from Microsoft: Update for Microsoft Outlook / Outlook Express (KB910721) Brief Description Microsoft has released an update for Microsoft Outlook / Outlook Express. This Read more…

Share

Apple update fixes 46 iPhone security vulnerabilities

Image (1) iphone-30-os.jpg for post 14399

To some fanfare, Apple has released the latest version of its iPhone operating system to an eagerly-awaiting world. Existing iPhone users can update their operating system via iTunes to version 3.0, and take advantage of a number of longed-for new Read more…

Share

Russian spam about spam looks like a ransom note

Image (1) russian-ransom-spam.jpg for post 14397

Like anyone else who's been on the net for twenty years or more, I've had a few email addresses in my time. One of them, which I barely ever use, is for a website I created more than 15 years Read more…

Share

Outlook reconfiguration emails carry malicious URLs

Image (1) outlookspam.jpg for post 23804

At the beginning of the month we have written about a couple of spam campaigns which contained fake notifications urging users to reconfigure Microsoft Outlook applications by following the link embedded in the email message or extracting the attached ZIP Read more…

Share

Don't open Worldpay_NR9712.zip!

Image (1) worldpay-amazon.jpg for post 14394

Although so many hackers choose to attack innocent computer users via websites today, that doesn't mean that malware spread via email attachment is dead. Take this example, for instance, which we have seen in large numbers in our spamtraps today. Read more…

Share

Howard Stern's pal pleads guilty to identity theft

Image (1) ivy-supersonic.jpg for post 14389

One of the benefits of being based in Great Britain is that I've so far managed to avoid ever hearing the Howard Stern shock jock radio show. But media reports inform me that a zany associate of his, who goes Read more…

Share

Cligs short url service hacked, millions redirected

Image (1) cligs-logo.jpg for post 14386

URL shortening services like TinyURL, bit.ly and is.gd have increasingly become part of many computer users' everyday lives in the last year or so, with the surge in popularity of micro-blogging websites like Twitter. The services allow you to shorten Read more…

Share

You WEREN'T in a sex movie with Sherrie, so why open the link?

Image (2) yahoo-porn-group.jpg for post 14375

Looking through the daily avalanche of spam intercepted in our traps can be a soul-destroying job. Take this email, for instance, with the subject line "Hello! This is Sherrie from last Friday video shoot." Sherrie says that it was great Read more…

Share

Virtual woman lures Fidel Castro's son into love sting

Image (1) cuban-flag.jpg for post 14368

A Miami man is reported to have tricked Fidel Castro's son into an eight month internet romance by posing as a woman online. 42-year-old Antonio Castro Soto del Valle, the son of Fidel Castro and the physician for Cuba's baseball Read more…

Share

With friends like these who needs password security?

Image (1) friends-reunited-logo.jpg for post 14366

I'm indebted to Clu-blog reader John who told me about an email he received at the end of last week from the social networking site Friends Reunited. Launched in the UK in 2000, Friends Reunited pre-dated comparable sites like Facebook Read more…

Share

UnVirex, fake anti-virus

Image (2) image002.png for post 23801

Recently, I saw a new fake malware cleaner from UnVirex which claims to be designed by "the industry's top software experts". Sophos detects the installer, as well as its main components as Troj/FakeVir-NA. Most of the time, this rogue anti-spyware Read more…

Share