Worm Posts on SNS Sites and Wipes out Rivals

May 18th, 2012


W32.Wergimog is a worm that attempts to spread through removable drives and opens a back door. When I looked into its variants, I found an interesting sample, which I named W32.Wergimog.B. Both samples are based on the same source code, but the .B vari...

Defense Contractor Northrop Grumman Hiring For Offensive Cyber Ops

May 18th, 2012

Defense giant Northrop Grumman is hiring software engineers to help it carry out "offensive cyberspace operations," according to a recent job posting.

Defense giant Northrop Grumman is hiring software engineers to help it carry out "offensive cyberspace operations," according to a recent job posting.

read more

ZTE Score M Android Phone Found to Have Backdoor Installed

May 18th, 2012

UPDATE--An Android handset produced by Chinese manufacturer ZTE has a backdoor installed that could enable an attacker to take control of an affected device remotely and run arbitrary code. The manufacturer has acknowledged the issue in the ZTE Score M, which includes a harcoded password, and says that it plans to push out a fix soon. 

read more

Global Payments Breach A Year Older Than First Reported

May 18th, 2012

Alerts issued by Visa and Mastercard earlier this week suggest that a breach at payment processor Global Payments dates to January 2011, a full year earlier than the company initially announced.

Alerts issued by Visa and Mastercard earlier this week suggest that a breach at payment processor Global Payments dates to January 2011, a full year earlier than the company initially announced.

read more

Hacker Finds XSS on Cartoon Network, Disney and Master Chef Sites (Exclusive)

May 18th, 2012
A security researcher called ProtocoL has found that sites such as the one of Cartoon Network (cartoonnetwork.com), Disney (disney.go.com) and Master Chef Australia (masterchef.com.au) contain cross-site scripting (XSS) vulnerabilities.

None of them is persistent, but that doesn’t make them far less da... (read more)

SMSmishing (SMS Text Phishing) – how to spot and avoid scams

May 18th, 2012




If the smartphones of ESET bloggers are any indication, scams executed via SMS text, known as smishing or SMS phishing, are on the rise. I don't do a lot of texting, which makes a smish easy to spot on my phone, but I just read an amazing statistic from a Pew report: Users 18 to ... Read More...

Twitter supports “Do Not Track” option

May 18th, 2012
The news was announced by Ed Felten, the US Federal Trade Commission's CTO, at a New York Internet Week privacy panel, and Twitter has quickly come out to confirm it: the popular micro-blogging servic...

Safe Social Media in 3 Steps

May 18th, 2012



Social media introduces risk – no doubt about it. As security pros, our first inclination is to of course ban it’s use on our networks altogether because it’s the safest approach. But, it’s also the wrong one. Like it or not, social media has forever changed the way we do business, for the better. According [...]

Microsoft Adopts CVRF Format for Security Bulletins

May 18th, 2012

Since the beginning of recorded time, security researchers, software vendors and hackers have been issuing security advisories in all kinds of nutty formats. Some feature excellent ASCII art, some have clever inside jokes and some come from Microsoft. Now, there's a effort underway, called the Common Vulnerability Reporting Framework, to standardize the way that vulnerabilities are reported so that they're in a common, machine-readable format. 

read more

Facebook IPO advanced fee scam hitting inboxes

May 18th, 2012
Today's the day when Facebook has officially become a publicly traded company, after founder Mark Zuckerberg rang the bell and officially opened trading on the Nasdaq exchange. For months now, spec...