- ChetWisniewski: Fancy some geeky tech-puzzle fun? Try our latest #sophospuzzle (and win a NERF gun) http://t.co/9k3pr1Qaabout 3 hours ago
- ChetWisniewski: Looks like no #Canadians have solved the latest #sophospuzzle yet - c'mon, let's give'r http://t.co/9k3pr1Qaabout 4 hours ago
- SophosLabs: Sophos just released a beta of its free Android anti-virus scanner (does other things too). Get it here http://t.co/9ankUHxhabout 5 hours ago
- gcluley: Technical paper - Fake anti-virus: The journey from Trojan to a persistent threat http://t.co/8pyjNEbGabout 5 hours ago
Monthly Archives: October 2009
Afriglish
I am tri-lingual! I have realized that I have picked up a brand new language unconsciously. Its Afriglish. It is a term I have coined myself. Probably someone else might have already done so (try using a search engine) as Read more…
BRB I'm eating Twitter spammers :)
In the last hour or so a stream of new accounts have been created on Twitter, with some curious similarities. All of them have tweeted precisely twice so far. The first occasion they said "Hii" and they followed that up Read more…
Malicious bogus DHL and FedEx emails bombard inboxes
We are currently seeing a large number of malicious emails purporting to be sent from FedEx or DHL, but containing attachments designed to infect your computer. It's a familiar story. In the case of the malware attached to the emails Read more…
Fedex and the world of malware
Today while trawling through spam, I came across another variation of the good ol' FedEx scam. This version looks like this: Subject: FedEx Tracking N5421062126 Date: Tue, 20 Oct 2009 08:44:11 +0100 Unfortunately we were not able to deliver postal package Read more…
Hotmail Password Scam Continuing...
Just about 2 weeks after Hotmail credentials were revealed online [1,2], another wave of spam campaign targeting Hotmail, MSN and Windows Live! was witnessed by SophosLabs. The message is quite similar to the previous MSN Messenger Block Checker spam. The Read more…
Schwarzenegger denies consumers knowledge of their own stolen data
To everyone's surprise, California Governor Arnold Schwarzenegger vetoed senate bill SB-20 last week. The bill would have required businesses to inform consumers of what data about them was lost during a breach, inform the California Attorney General if more than Read more…
Beware fake Microsoft alerts regarding Conficker worm
We are seeing a large number of malicious emails in our spam traps, pretending to contain advice regarding the Conficker worm. Here is a typical message: Subject: Conflicker.B Infection Alert Attached file: install.zip Message body: Dear Microsoft Customer, Starting 18/10/2009 Read more…
Video: Stealing identities on the street is easy
Many of us are concerned about how well companies and organisations are protecting our personally identifiable information - but how good at we at protecting our own details, such as name, date of birth and email address? Carole Theriault and Read more…
NASA hacker's extradition to USA delayed by British Home Office
The British Home Office has agreed to delay extradition proceedings against NASA hacker Gary McKinnon, pending a fresh consideration of the evidence, focusing on his medical condition. McKinnon's lawyer, Karen Todner, is quoted as saying: "We do take some hope Read more…
Google, stop sticking your Chrome Frame in my IE!
In September, Google announced they were developing a plugin for Internet Explorer that would provide the ability to render a page with Google Chrome if it contains a tag from the web developer noting their desire for you to use Read more…
Balloon Boy throws up on TV - Sick hackers take advantage
America has been transfixed with the story of Falcon Heene, the six-year-old boy who was believed to have accidentally hitched a lift in his father's experimental helium balloon on Thursday. Emergency services and TV stations scrambled into action as the Read more…
Victoria's Secret spam hits Twitter
Some Twitter users have found that their accounts have been posting messages without their knowledge, apparently advertising gift cards for the glamorous Victoria's Secret lingerie store. The Twitter accounts sending the spam messages have no connection with the sexy underwear Read more…
Microsoft recovers lost Sidekick data
Earlier this week I blogged about the catastrophic story of how Sidekick customers were facing the loss of their personal data, as it appeared that Microsoft's backup systems had failed to come to the rescue after an outage on their Read more…
A new way to report spammers on Twitter
If you're on the increasing number of people exploring the strange world of Twitter then you'll be pleased to hear that there is a new way to report spammers on the micro-blogging system to the Twitterthorities. Up until this week, Read more…
Computer security in schools
Getting computer security right in a school is much trickier than doing so in a business. How much money can you spend? How much time can you devote to the problem? Should you have a regime in which you enforce Read more…
The Power of (Misplaced) Trust: HTAs and Security
We have seen a few spam samples today which use the old tactic of HTML Application (.hta) scripting to get malicious code onto a Windows machine via Internet Explorer. A gullible user is only two non-default security settings and one Read more…
Guest Blog: The Data Protection Challenge - Wake up and realize that there is no spoon!
Guest blogger Rami Jebara is a technical product manager working on our web filtering solutions in Vancouver, Canada. Rami shares with us today his view of the changing corporate landscape and the challenges we face as IT administrators. Recent economic Read more…
AMBER alert about license plate 98B351 is a hoax
Hoaxes are causing a nuisance again, as a false AMBER Alert asking the public to be on the lookout for a 3-year-old boy abducted by a man driving a 2006 Mitsubishi Eclipse are circulating around the world. And the internet Read more…
Sophos plays its part in eFraud reduction
I've just returned from another excellent eCrime symposium hosted by the Queensland Police where Paul Ducklin and myself were one of the information-security vendor representatives. The symposium brought together many leading eFraud and idFraud investigators from around the globe as Read more…

