Category Archives: Malware

#EpicFail for U.S. student who used keylogger to increase grades

FAIL

31-year-old student from Warrington admits to trying to improve his grades at Temple University Ambler Campus, near Philadelphia, by hacking into the university’s computerised grading system.

Share

Is this the resurgence of Blackhat SEO?

Code snippet from the PHP SEO kit

Take a dive into some recent blackhat SEO attacks in this post to explore the facts behind the recent rise in reports of this threat. Site administrators in particular may be interested in some of the findings.

Share

Better Business Bureau malware attack spammed out

Better Business Bureau malware attack spammed out

Have you received an email claiming to come from the Better Business Bureau (BBB) today? If you did, be careful.

Share

Is Digital Pearl Harbor THE most tasteless term in IT security?

Digital Pearl Harbor?

Can hackers really cause as much bloodshed as 353 Imperial Japanese Navy fighters, bombers and torpedo planes launched from six aircraft carriers?

Can hackers really kill 2,402 U.S. citizens, leave 1,282 wounded, lose 65 of their own attackers in the process, and plunge the United States into a World War?

Share

Asia Pacific webcast - find out the latest twists and turns of the cybercrooks

threat-report-2012-250

Join two of Asia Pacific's top security experts, Rob Forsyth and Paul Ducklin, as they discuss and dissect the latest Security Threat Report from SophosLabs in an Asia Pacific webcast.

The event takes place at 2pm Sydney time (UTC+11) on Thursday 09 February 2012.

Share

Why is a 14-month-old patched Microsoft vulnerability still being exploited?

no-brainer

While the media just looove zero-day exploits, the security industry sees a lot more exploits designed to take advantage of patched vulnerabilities. Question is why don't many of us get around to installing the patches?

Share

IRS/Quicken spam leads to exploit kits and malware

shutterstock_Blackhole250

A large volume of spam messages pretending to be from Intuit, the makers of QuickBooks, are flooding inboxes. Don't click the links, they lead to pages infected by the infamous Blackhole exploit kit.

Share

USA to equip military, government officials with Androids

android_logo_250

The United States is preparing a modified version of Google's Android operating system to allow soldiers to use smartphones.

Share

DNS Changer infrastructure shutdown is a *good* thing

shutterstock_ComputerShock250

The FBI may shutdown the DNS servers victims of the DNS Changer malware have been using on March 8th. Is this a dangerous action, or is five months to clean up your PC enough?

Share

Is Google Bouncer going to bounce all malware from the Android Market?

bouncer

Google has pleasantly surprised the mobile malware research community when it announced yesterday that Android apps are analysed for malicious behavior before being allowed onto the Android Market, but is it all good news? Vanja Svajcer, Sophos Principal Researcher, investigates.

Share

US attacks Iran and Saudi Arabia? Malware spreads via Facebook status updates

US attacks Iran and Saudi Arabia? Malware spreads via Facebook status updates

A fake CNN webpage is being linked to from Facebook users' status updates, claiming that World War III has begun.

But the real story is the malware waiting to infect your computer.

Share

Android Counterclank is (not) malware

Android Counterclank is (not) malware

Despite the stint of very cold weather in Europe, Android malware scene is warming up. Vanja Svajcer finds an intriguing case for the difference of opinions on the classification of certain Android apps present in Google Android market.

Share

Don't get slammed by Super Bowl scams

Super Bowl XLVI

The countdown to first kickoff in Super Bowl XLVI on February 5 has begun, and scams for knock-off team jerseys, counterfeit memorabilia, and fake YouTube videos will be sure to hammer our defenses.

Share

Does spammed out malware attack exploit Mozilla Thunderbird 'feature'?

Spammed out malware attack exploits Thunderbird weakness

Media reports claim that computers are being infected even if you DON'T open the attached files.

But we're seeing something different.

Share

MPs warn of rise of identity-stealing bank-robbing malware

portcullis-thumb

Identity-stealing bank-robbing malware is a growing threat to Britain.

That's the conclusion of the UK Parliament's Science and Technology Select Committee who have published a report calling on the Government to launch a "prolonged awareness raising campaign to increase public understanding of personal online security."

Share

Facebook's IPO could result in increased focus on stopping fraud and spam

facebook-thumb

Facebook has finally filed for its IPO, but there are interesting details in the paperwork. It considers malware, spam and privacy concerns as serious risks to its investors.

Share

Viruses and hacking, as seen on TV and in the movies

Viruses and hacking, as seen on TV and in the movies

Working in the computer security industry, we're pretty used to seeing malware and hacking misrepresented on our TV and movie screens.

Here are some of our favourite examples.

Share

Accused Kelihos malware mastermind protests his innocence

Accused Kelihos botmaster protests his innocence

A Russian man who has been accused by Microsoft of being the mastermind behind the Kelihos botnet has used his LiveJournal blog to protest his innocence.

Share

Sophos Security Threat Report 2012 - seeing through the hype

threat-report-2012-250

We know you're probably sceptical of "state of the world" reports from vendors. For all you can tell, they'll turn out to be thinly-digsuised advertorial, unreconstructed product brochures, or worse.

We like to do things differently. Find out how!

Share

Microsoft's Kelihos botnet suspect used to work for computer security firm

andrey-thumb

Microsoft has alleged that a computer security firm's ex-employee is the mastermind behind the Kelihos botnet.

Share