Monthly Archives: November 2009

Password recovery for the latest iPhone worm

Image (2) john-the-ripper.jpg for post 1343

As you have probably heard from my fellow bloggers at Sophos, a new iPhone worm is doing the rounds. Most reports seems to be coming from the Netherlands. I was on my way back from Manila whilst my chums were Read more…

Share

Lightning strikes again: iPhone malware gets truly malicious

Image (1) iphone-lightning.jpg for post 15442

Two weeks ago I reported on Ikee, the world's first iPhone worm which was spreading between jailbroken devices in Australia, replacing wallpaper with an image of Rick Astley. As Chet reports on his blog, this weekend has seen the discovery Read more…

Share

Another iPhone worm - and this time it's malicious

Image (1) jailbreak250.png for post 2984

I had guessed we would see a dangerous incarnation of worm for the iPhone within a week of the 5 Euro scam that Graham blogged about on November 3rd. Fortunately my predictions were wrong, and we made it almost 3 Read more…

Share

You are today's Macbook Air Winner !

You are today's Macbook Air Winner !

SophosLabs were today's Macbook air winners according to the cyber criminals. We received loads of these congratulation emails on our spam traps today. They were spamming out the malicious attachments which Sophos successfully detects as Troj/Agent-LNC. The email was attached Read more…

Share

Hackers steal information from Climate Research Unit

Hackers steal information from Climate Research Unit

The UK-based Hadley Climate Research Unit (CRU), at the University of East Anglia in Norwich, is reported to have sufferered a security breach which has resulted in many confidential emails and files being uploaded to the internet. A 61MB zip Read more…

Share

Scientology website attacker sent to jail

Image (1) scientology-protest.jpg for post 15428

A 19-year-old man has been sentenced to a year and a day in prison after instigating a distributed denial-of-service attack (DDoS) against websites belonging to the highly controversial Scientology organisation. Dmitriy Guzner, of Verona, New Jersey, played a key role Read more…

Share

Evil Maid wanted, B.S. in Computer Science a plus

Image (4) evil-maid.jpg for post 15424

Some weeks ago, Polish researcher Joanna Rutkowska published an attack on the TrueCrypt Full-Disk Encryption (FDE) software, which allows an attacker with access to an unattended PC to install a password sniffer in a first strike, and to steal the Read more…

Share

Koobface, new promises?

Image (3) looking-for-various-social-networking-sites1.jpg for post 20034

Koobface started life compromising Facebook accounts. It gained massive notoriety afterward by attacking Twitter accounts in addition to Facebook. It then diversified to attack various social networking sites including MySpace, Bebo, hi5, GeoCities, Friendster among the prominent ones. Recently I Read more…

Share

Sarah Palin says email hack paralysed Presidential campaign

Sarah Palin says email hack paralysed Presidential campaign

An email hack can ruin your chances of becoming Vice President of the United States. That's the message that Sarah Palin appears to be sharing with the world in her new book, Going Rogue: An American Life, where according to Read more…

Share

Facebook Easter Egg causes a flap

Default image

My mate Ben told me a story the other day which he thought I would find amusing. He's a Facebook addict, and has been regularly cajoled for spending hours checking the social networking site for updates from his buddies instead Read more…

Share

Twitter spam explosion

Image (1) twitterspam1.png for post 24684

Starting early this morning, we have seen a major uptick in the use of Twitter links inside spam messages. Here are a few different variants of them. Most of the spam refers to online med sites although a few campaigns Read more…

Share

Congress looks to ban P2P file-sharing, will companies follow suit?

Image (1) towns250.png for post 2775

In the United States Congress yesterday, Representative Edolphus Towns of New York introduced a bill (HR 4098) to ban P2P file-sharing on US government, and government contractor computers. This bill was likely prompted by the reckless loss of sensitive government Read more…

Share

Couple arrested in connection with Zbot Trojan horse

Default image

A man and a woman have been arrested in Manchester by officers of the Greater Manchester Police and Metropolitan Police Central e-Crime Unit (PCeU) in connection with the Zbot family of Trojan horses. Zbot is one of the most notorious Read more…

Share

The Simon Ashton hacker hoax, spreading via email

Image (1) simon-ashton.jpg for post 15418

A colleague from Sophos's finance department came down to my desk this morning. It's always a bit scary when someone visits you from the top floor - and I worried for a moment that maybe he wanted to know if Read more…

Share

Security by accident, or security by design?

Image (1) cables-close-up.jpg for post 1336

I can't imagine blaming anyone other than the author for last week's iPhone virus outbreak. The virus wasn't an accident -- the self-confessed creator wrote and disseminated the virus quite deliberately. However, the virus only infects apostate iPhones whose owners Read more…

Share

T-Mobile customers' personal data sold to rivals

Image (1) mobile-phone-woman-170.jpg for post 15412

The story dominating the British news this evening is the revelation that staff at one of the leading mobile phone company's sold the personal details of thousands of customers for "substantial sums". Information Commissioner Christopher Graham refused to name the Read more…

Share

"Payment request from" emails carry dangerous payload

Image (1) payment-request.jpg for post 15410

Cybercriminals are up to their dirty tricks again, this time spamming out en masse a dangerous email carrying a Trojan horse. The emails pretend to come from the "Customer Support" division of an online banking organisation and be in connection Read more…

Share

Your mailbox has NOT been deactivated

Image (1) mailbox-deactivated.jpg for post 15402

SophosLabs is currently intercepting a widespread malware attack, being spammed out to innocent internet users under the disguise of a mailbox deactivation notice. The emails, which have a subject line of "your mailbox has been deactivated", pretend to come from Read more…

Share

Complete our quick survey and win Sophos goodies

Image (1) threatsaurus.jpg for post 15399

Never let it be said that I don't go the extra mile for dedicated readers of the Clu-blog. I have once again braved the Sophos crypt, where we dangle manacled virus writers above shark-infested custard, to find a delightful selection Read more…

Share

Get Safe Online week 2009

Image (2) tesco-bank.jpg for post 15387

Get Safe Online is one of the first websites I direct computer users to if they want to learn more about internet safety. It's a particularly good resource for consumer and small businesses as it explains the sometimes complex subject Read more…

Share