Search
ED's Twitter List
Twitter
What's being talked about

 

Thursday
Oct272011

Data Loss Prevention from M86 Security

M86 MailMarshal is an email security solution that protects against spam and data leakage. It also provides reporting, analyses inbound and outbound content and assists with policy control. In April 2010, the M86 MailMarshal SMTP product was designated Visionary in the 2010 Gartner Magic Quadrant Report for Secure Email Gateways.

Friday
Oct072011

Mobile Security Threats to Double by End of 2011: IBM Study

Mobile threats have exploded this year, and researchers believe the number of mobile device exploits will double by the end of the year, according to the latest IBM report by their X-Force team of experts. IBM's X-Force R&D team discovers and analyses previously unknown vulnerabilities in critical software and infrastructures such as email networks, internet applications, security protocols, business applications and VoIP.

Click to read more ...

Thursday
Oct062011

Australian Teleco Cut Infected PC Off From Internet after 42 warnings

An Australian telecommunications company cut off a customer's Internet service after sending her repeated warnings that her computer was infected with malware and was being used to launch attacks as part of a botnet.

As part of their voluntary compliance with Australia's iCode initiative, the unnamed company made the decision to limit the customer's access to a "walled garden" until her computer had been cleaned of the malware.

They then phoned to help the owner remove the malware.

For more information, click here.

Thursday
Oct062011

Microsoft and Kaspersky shut Down 41,000 infected PC Botnet

Microsoft has worked with Kaspersky to take down the Kelihos botnet, which comprised 41,000 infected computers around the world and is believed to be responsible for as many as 3.8 billion spam messages every day.

Kelihos stole personal data and was used to send spam that promoted questionable pharmaceutical products, stock scams, and child pornography. The takedown was achieved through obtaining a court order to close down 21 domains associated with Kelihos.

Microsoft has also identified an individual who lives in the Czech Republic as the alleged creator of Kelihos. This is "the first time Microsoft has named a defendant in one of its civil cases involving a botnet."

For more information, click here.

Friday
Sep302011

Mac trojan pretends to be Flash Player Installer to get in the door

Mac users are advised to follow safe security practices—don't open files or attachments that you don't remember downloading, and turn off Safari's setting for opening safe files automatically. It's also worth noting that Apple now updates its malware definition file on a daily basis, and has already updated it to address the PDF trojan discussed last week. If you haven't already scoured the internet for an AV definition for the malicious version of the Flash installer, then it's likely Apple will have added the new malware to the file by the time you run into it.

The malware in question is a trojan horse called Flashback (OSX/flashback.A); users may end up acquiring it by clicking a link on a malicious website to download or install Flash player. If those users also have their Safari settings to automatically open safe files (which .pkg and .mkpg files are considered to be), an installer will show up on their desktops as if they are legitimately installing Flash.

Continuing through the installation process will result in the trojan deactivating certain types of security software (Intego specifically noted that the popular Little Snitch would be affected) and installing a dynamic loader library (dyld) with that can auto-launch, "allowing it to inject code into applications the user launched." The trojan then reports back to a remote server about the user's MAC address and allows the server to detect whether the Mac in question has been infected or not.