sans internet storm center
Google AdWords phishing scam on the loose
- access data
- adobe pdf
- adobe reader 8
- adwords google
- chief security architect
- chris hoff
- core services
- credit card fraud
- critical industries
- critical infrastructure security
- critical windows
- encrypted hard drives
- endpoint
- google adwords
- graphical user interface
- microsoft patches
- microsoft rpc
- msrc
- national computer security
- national computer security center
- national security applications
- network tool
- publicity stunts
- sans internet storm center
- security development lifecycle
- sisk
- social networking sites
- stock market crash
- virtual network
The creativity and resourcefulness of the criminal underground never ceases to amaze me. Granted, these guys have nothing else to do but sit around and come up with new scams, but still, some of these things are truly inspired. Have a look at this Google AdWords phishing scam that has been showing up in recent [...] read more »
VoIP tools, attacks could increase threat
- 8e6 technologies
- access data
- adobe pdf
- computer programmer
- core services
- cripples
- critical industries
- critical infrastructure security
- critical windows
- dll c
- encrypted hard drives
- endpoint
- graphical user interface
- mccain campaign
- microsoft patches
- msrc
- nasa hacker
- network tool
- obama mccain
- operating systems
- sans internet storm center
- security specialist
- sisk
- spanish versions
- verisign inc
- virtual network
- voip
- wall street expectations
- whois info
- windows 2000
Tools are available to automate VoIP attacks, but the threat remains low until VoIP communications is more pervasive in the workplace.
SSH brute force attacks still going strong
The brute-force SSH attacks that have plagued the Internet for much of this year are continuing, and experts are responding by creating tools to stop the brute-force attempts and lists of the attacking IP addresses. The SANS Internet Storm Center has a good post with some information on SSH attack mitigation tools and advice on [...] read more »
New SQL injection worm making the rounds
The trend toward large-scale attacks against Web sites through the use of SQL injection is continuing, as experts at both the SANS Internet Storm Center and Shadowserver Foundation are tracking a newly discovered SQL injection worm that appears to be exploiting a RealPlayer flaw and dropping malware on vulnerable sites. The attacks are focusing on [...] read more »
Adobe .pdf attacks multiply
With enterprises regularly trading .pdf files back and forth, IT administrators should be aware of some new attacks related to recently-patched flaws in the widely used Adobe Reader. Raul Siles at the SANS Internet Storm Center wrote a warning about the .pdf threat over the weekend on the organization Web site, and included additional advisories [...] read more »
Happy Valentine’s Day from the Storm Trojan
Valentine’s Day isn’t for another month, but that’s not stopping controllers of the Storm Trojan from using the holiday theme to trick users into downloading the malware.A posting on the SANS Internet Storm Center Web site describes another wave of Storm emails with a subject designed to catch the recipient’s attention and an email body [...] read more »
Mega patch for Mac users
Apple users tend to have a false sense of security superiority when it comes to their beloved Mac machines. But you gotta give Apple some credit — when a security hole is discovered, the company is pretty good about patching it quickly.This time around, Apple has released Security Update 2007-009 to fix some 41 flaws [...] read more »
SANS: Attackers may be attempting Trend Micro exploits
The SANS Internet Storm Center (ISC) warns that attackers may be attempting to exploit flaws in Trend Micro products to hijack computer systems.
‘Storm’ of spam attacks continue, ISC warns
Friday, I reported on a wave of pump-and-dump spam. According to the SANS Internet Storm Center (ISC), reports of massive spamming runs continued through the weekend.Handler Tony Carothers wrote on the ISC Web site that “some of our friends in Canada have been pounded … by a series of emails from a number of destinations.” [...] read more »
Symantec gives its ThreatCon a makeover
There’s not a lot of passion in the security blogosphere this week over any topic in particular, but there are some nuggets worthy of note, including an announcement in the Symantec Security Response blog about a makeover for the company’s ThreatCon.Many security organizations use a measurement system to give customers a sense of the overall [...] read more »
Storm worm gets patriotic
Maarten Van Horenbeeck at the SANS Internet Storm Center has been tracking the spam subject lines associated with the Sestorm worm. “Happy B-day America,” “Independence Day Party” and other lines to dupe email recipients. We reported in January that the Storm worm has been fairly successful in spreading using a variety of topical headlines. [...] read more »
Web watchers warn of new Storm attack
The prolific Storm malware is on the attack again, according to the folks at the SANS Internet Storm Center (ISC). ISC handler Lorna Hutcheson wrote on the storm center Web site that the latest email attack includes a subject line that says “You’ve received a postcard from a family member!” From there, variations of [...] read more »
Fake Microsoft security bulletin circulating
The folks at the SANS Internet Storm Center are warning of a fake Microsoft security bulletin that’s making the rounds. Here’s what it looks like:Microsoft Security Bulletin MS06-4Cumulative Security Update for Internet Explorer (113742734)Published: June 3, 2007Version: 1.0SummaryWho should read this document: Customers who use Microsoft WindowsImpact of Vulnerability: Remote Code ExecutionMaximum Severity Rating: CriticalRecommendation: [...] read more »
Major spike in activity on TCP 5168, SANS says
The SANS Internet Storm Center is reporting that there has been a spike in activity on TCP port 5168 over the last few days, perhaps attributable to attackers looking to exploit a couple of vulnerabilities in Trend Micro’s ServeProtect. The ISC came across the activity on port 5168 through a report from a user whose [...] read more »




Recent comments
11 weeks 3 days ago
1 year 2 weeks ago
1 year 3 weeks ago
1 year 5 weeks ago
1 year 5 weeks ago
1 year 5 weeks ago
1 year 5 weeks ago
1 year 11 weeks ago
1 year 19 weeks ago
1 year 21 weeks ago