Monthly Archives: November 2009

Man arrested for robbing RuneScape virtual characters

Image (1) runescape.jpg for post 15502

It has been revealed that British police have arrested a 23-year-old man accused of stealing virtual characters and goods from players of one of the world's most popular online games. The man, from the Avon & Somerset region, was arrested Read more…

Share

Hackers exploit Tiger Woods car accident to spread malware

Image (1) tiger-woods-video.jpg for post 15499

Cybercriminals have wasted no time taking advantage of the news that the world's number one golfer, Tiger Woods, has been involved in a car accident outside his house in Florida. Hackers have created webpages claiming to contain video content related Read more…

Share

FakeAV -- a lesson in aggression

Default image

Those "Antivirus System PRO" folks are up to their nasty sales tactics again. While its use of a pushy (and confusing!) yes-no no-yes dialog sequence is similar to other fake AV variants, a signature feature involves periodically opening a browser Read more…

Share

ICO warns of tougher penalties for future data leaks

Image (1) laptop-thief.jpg for post 15494

The Information Commissioner's Office (ICO) is arguing in the British media that company board members need to wake up to the issues of securing personal information or risk substantial fines. The warning comes as it was revealed that a laptop Read more…

Share

Spammer believes WOW users are sad lonely men

Image (1) clean_bath.jpg for post 24733

Spammers use social engineering and in this case expect that WOW (World of Warcraft) gamers are sad lonely men. At least that is what this spam suggests: The spam will come with a subject of "Do you like to find Read more…

Share

Not just plain old http

Image (2) https-form-on-http.png for post 1352

Yesterday, I heard a radio interview about on-line security. Unsurprisingly, the discussion got around to encryption, SSL and https. Inevitably, the interviewer asked, "What should we look for to make sure that a secure web page really is using https Read more…

Share

Bad news for NASA hacker Gary McKinnon - extradition seems imminent

Bad news for NASA hacker Gary McKinnon - extradition seems imminent

According to media reports, British Home Secretary Alan Johnson has rejected a last-bid attempt by Gary McKinnon's supporters to prevent his extradition to the United States. Concerns have been raised that 43-year-old McKinnon, who was arrested almost eight years ago Read more…

Share

Ubisoft confirms Splinter Cell website 'hack'

Image (3) splinter-cell-hack.jpg for post 15491

Tom Clancy's Splinter Cell is a phenomenally popular series of video games where players stealthily creep up behind the bad guys and silently ermm.. "despatch them". The trick to succeed is stay in the shadows, sneak up on the enemy Read more…

Share

DHL Tracking Number UOYKCUFSBERKNAIBR spells danger

Image (1) dhl-parcel-pickup.jpg for post 15477

The cyberscoundrels are up to their dirty rotten tricks again, sending fake emails pretending to be notifications from DHL that there is a parcel that you should pick up. Attached to the emails is a ZIP file called UOYKCUFSBERKNAIBR.zip which Read more…

Share

Early ecard Christmas malware cheers

Image (2) zapchas1.jpg for post 24728

There are two major methods malware writers use to infect and take control over remote systems. The first one relies on exploiting unpatched vulnerabilities in software such as a web browser or configuration vulnerabilities such a weak passwords. The second Read more…

Share

HO HO HO Santa has a virus for you

Default image

This morning while triaging customer malware and spam samples I saw a variation on the typical click-the-link and get malware spam. This one was Christmas themed, normally we would expect Thanksgiving themed spam before the Christmas glut. The spam has Read more…

Share

Crumbs! A great night at the Computer Weekly Blog awards

Crumbs! A great night at the Computer Weekly Blog awards

I've had a good night's sleep, but I'm still feeling rather incredulous about what happened at last night's Computer Weekly awards in London. Winner: IT Security blog of the year - Graham Cluley's blog, Sophos Winner: Twitter user of the Read more…

Share

Ikee worm author gets job at iPhone app firm

Image (1) ashley-towns.jpg for post 15465

The author of the world's first iPhone worm must be feeling pretty chirpy today, because he's managed to get himself a job as an iPhone application developer. 21-year-old Australian Ashley Towns, revealed that he was going to join mogeneration (What Read more…

Share

New IE exploit - a good opportunity to upgrade to IE 8?

Image (1) 2009-3762a.jpg for post 24718

Over the weekend the details of a new Internet Explorer vulnerability were posted online (as reported here and here). By crafting a malicious web page attackers are able to exploit the vulnerability and trigger remote code execution, making it possible Read more…

Share

Who's next for a smartphone virus?

Image (3) smartphone-os-browsing.jpg for post 15461

Since the late 1990s some doom-mongers in the computer security industry have been predicting a tidal wave of mobile phone viruses, impacting every hoody-wearing happy-slappy ringtone-downloading ASBO-carrying teenager in the land. The reality has been rather different. Although some cellphone Read more…

Share

A bad day for browsers, severe flaws... again

Image (1) iesettings.png for post 2986

Microsoft just posted an advisory on the recently discovered zero day flaw in Internet Explorer 6 and 7. It would appear that the workarounds are to use IE8, enable "Protected Mode" in IE7 on Vista, ensure Data Execution Prevention (DEP) Read more…

Share

NFL player David Clowney is Twitter-hacked

Image (1) david-clowney.jpg for post 15452

David Clowney is not unusual in being a 24-year-old who is hooked on Twitter. No, what makes David Clowney stand out from the crowd is that he's a talented American football player, who appears for the New York Jets. And Read more…

Share

Godfather of spam jailed for four years

Image (1) alan-ralsky.jpg for post 15447

Alan Ralsky, the so-called "Godfather of spam", has been sentenced to four years in jail for his role in a stock fraud scheme that earned him $2.7 million during the summer of 2005. 64-year-old Ralsky, of West Bloomfield, Michigan, was Read more…

Share

How to clean up the Duh iPhone worm

Image (1) installer-script.png for post 1348

I'm quite pleased about having been able to reveal the 'ohshit' password for iPhones infected with the Duh virus. I've already had emails from happy Dutch readers who have used it to get back control of their infected devices. This Read more…

Share

Flash, Large Hadron Collider and Malware

Flash, Large Hadron Collider and Malware

You must be wondering what these three have in common. They all appeared together in a special spam message today, in the latest incarnation of malware masquerading itself as a flash player plug-in. This message appears very dodgy from the start: Wow, Read more…

Share