Monthly Archives: September 2009

Another embassy site hit in fake anti-virus attack

Embassy hit in fake anti-virus attack

Earlier on today I noticed that the web site for one of the embassies in Paris has been hit by malware. This continues the 'YAE' (yet another embassy) series we introduced in previous blogs [2,3]. This current attack provides a Read more…

Share

VB 2009 - Is there a lawyer in the lab?

Image (1) ladyjustice250.jpg for post 2864

In my continuing series on Virus Bulletin 2009 presentations I want to share with you my impressions of a talk given by Juraj Malcho of Eset entitled "Is there a lawyer in the lab?". Juraj's presentation discussed the spectrum of Read more…

Share

Reddit exploited - Shows the world how to respond

Image (1) youbrokeit250.png for post 2861

Last night it was reported that Reddit had been attacked and malicious JavaScript was disrupting the use of the site. In less than 24 hours, Reddit had not only fixed the issue, but had come clean on how it had Read more…

Share

What's the worst use of a mobile phone?

Image (3) john-stringer.jpg for post 10255

In this guest blog product manager John Stringer describes some new functionality that means Sophos can help you prevent users from slurping sensitive information onto their mobile phones. Over to you John.. What's the most anti-social use of a mobile Read more…

Share

Microsoft updates trusted root certs to include Startcom

Image (1) rootcertupdate550.png for post 2858

This week while I was away at Virus Bulletin Microsoft released an update to the root certificates they include for Windows and Internet Explorer. On its own this is not noteworthy, but I have been meaning to blog about this Read more…

Share

Sure, Google Chrome Frame increases the Microsoft IE attack surface...

Image (1) getchromeframe.png for post 24430

... but there's more to the issue than what's currently being bickered about. Google's Chrome Frame plugin for Internet Explorer is meant to incorporate web 2.0 functionality that the IE browser currently does not support. As reported in this Zero-day Read more…

Share

Are that many followers worth it??

Image (1) twitter1.jpg for post 24425

I received a notice that I had a new follower on Twitter, so I decided to see who it was. Nope, no one I recognized. I went to check out their page and I saw this: I knew this is Read more…

Share

"Jobs with Google" scam spammed out on Twitter

Image (1) google-jobs-twitter-spam.jpg for post 15028

There has been a new wave of the Google Jobs scam on Twitter that others have been tracking for some time. Just as I was putting my suit on to attend the Virus Bulletin gala dinner tonight, I became aware Read more…

Share

How to make money online!

Image (1) dmitry-talks.jpg for post 1288

I'm currently at the Virus Bulletin Conference in Geneva. I've just come from a talk given by my friend and colleague Dmitry Samosseiko from Sophos Canada, who presented a paper entitled The Partnerka -- what is it, and why should Read more…

Share

Earn 43 cents every time you infect a Mac

Image (2) mac-codec.jpg for post 15021

One of the most interesting talks I've attended so far during this year's Virus Bulletin conference was the one by Dmitry Samosseiko about the Russian "Partnerka". The Partnerka is the complex network of affiliates who profit from spam and malware. Read more…

Share

The morning after the night before at Virus Bulletin

Default image

The second day of the Virus Bulletin conference kicked off nice and early at 9am here in Geneva. This was possibly bad news for those attendees who created a splinter faction last night and decided to drink on the terrace Read more…

Share

ROFL Twitter phishing attack is no laughing matter

Image (1) rofl-twitter-phishing.jpg for post 15017

While leading lights in the computer security industry were engaged in a yodelling competition (yes, really) at the Virus Bulletin conference in Geneva last night, an attack designed to steal the login details of Twitter users was in progress. Users Read more…

Share

Is Cloud Anti-Virus ready for the mass market?

Image (1) vbcloud250.jpg for post 2774

I have been attending the Virus Bulletin conference in Geneva Switzerland for the first time this year. This morning I watched Andreas Marx and Maik Morgenstern of av-test.org deliver a talk entitled "Why 'In-The-Cloud' Scanning is not a Solution" They Read more…

Share

Introducing Sophos Free Encryption

Image (3) chris-kraft.jpg for post 15013

It's not often in life that you get something for nothing, but guest blogger and VP of Sophos Product Management Chris Kraft reckons he's got a tool for Windows users that will keep anyone who wants to keep their personal Read more…

Share

ROFL Is This You on Here?

Image (1) twphish.jpg for post 24420

The direct message arrived in my Twitter account: "rofl is this you on here?" followed by a link. Oh no!  Are there embarrassing pictures of me on the Internet?  Again?! After calming down a bit, my cynicism prevails. Let's see Read more…

Share

Guest blog: Is Netflix being sloppy with personal data?

Image (3) netflix-prize.jpg for post 15005

Accusations that an internet scheme by Netflix could expose personal information about participants are being questioned by guest blogger and Sophos senior security analyst Carole Theriault. Over to you Carole... Here I am at Virus Bulletin 2009 in Geneva. The Read more…

Share

Google's fight against malicious adverts

Image (3) mozilla-now-registration.jpg for post 15002

When much of the world using Google umpteen times a day as their window to the web, it's important that dodgy links appearing as search results are kept to a minimum. Eric Davis, who heads up the anti-malvertising team at Read more…

Share

Geneva, Virus Bulletin and Swiss beauty contests

Image (2) vb2009-badge.jpg for post 14993

Vienna was immortalised by Ultravox, Paris has its springtime, and Leonard Cohen took Manhattan (and then Berlin). But I can't think of a single song which celebrates the joys of Geneva, from where I write this blog to you tonight. Read more…

Share

Fake anti-virus attack on Twitter

Image (1) twitter-fake-anti-virus.jpg for post 14990

A couple of hours ago Jack Schofield, a technology journalist at the Guardian newspaper, warned Twitter users about a fake anti-virus attack that is being distributed via the micro-blogging network. A number of Twitter accounts are promoting a link via Read more…

Share

End of the road for Klingon Anti-Virus

End of the road for Klington anti-virus

Just shy of 100,000 people downloaded Sophos's Klingon Anti-Virus earlier this year, which offered to scan your Windows PC for viruses, spyware, adware, Tribbles and zero-day threats. During the course of the experiment we not only found that Helsinki was Read more…

Share