Adobe number one target for hackers

June 20th, 2010 No Comments »

In the first quarter of 2010, Adobe products were the number one target for hackers.  It is believed the reason for this is because of the multi-platform capability of Adobe products like Flash and Acrobat PDF.   Many users are not aware of the dangers of opening PDF files from unknown parties.

The Adobe Reader & Acrobat exploit Pdfka was by far the most common at 42.97%.  Combining two of the most common exploits for Adobe products yields almost 50% of the total exploits found in that quarter.  Many Adobe users do not frequently update their software to the latest versions much less apply recent patches.

Tags: , , ,

Author: Christopher

Malware Statistics for April 2010

May 13th, 2010 No Comments »

Monthly Malware Statistics: April 2010

Malicious programs detected on users’ computers

The first Top Twenty lists malicious programs, adware and potentially unwanted programs that were detected and neutralized when accessed for the first time, i.e. by the on-access scanner.

PositionChange in positionNameNumber of infected computers
1 0Net-Worm.Win32.Kido.ir330025
2 0Virus.Win32.Sality.aa208219
3 0Net-Worm.Win32.Kido.ih183527
4 0Net-Worm.Win32.Kido.iq172517
5 0Worm.Win32.FlyStudio.cu125714
6 2Virus.Win32.Virut.ce70307
7 NewExploit.JS.CVE-2010-0806.i68172
8 -2Trojan-Downloader.Win32.VB.eql64753
9 2Worm.Win32.Mabezat.b51863
10 5Trojan-Dropper.Win32.Flystud.yo50847
11 -1Worm.Win32.AutoIt.tc49622
12 NewExploit.JS.CVE-2010-0806.e45070
13 -4Packed.Win32.Krap.l44942
14 NewTrojan.JS.Agent.bhr36795
15 2not-a-virus:AdWare.Win32.RK.aw36408
16 ReturnTrojan.Win32.Autoit.ci35877
17 -1Virus.Win32.Induc.a31846
18 NewTrojan.JS.Zapchast.dj30167
19 ReturnPacked.Win32.Black.a29910
20 ReturnWorm.Win32.AutoRun.dui28343
Source: Kaspersky Lab
Tags:

Author: Christopher

Is Windows more secure than Mac?

April 16th, 2010 No Comments »

I always loved Apple commercials for the Mac, it was always fun to see the new jab they would take a Microsoft.  I specifically got a chuckle out of the claims the Mac is so super secure and Windows was plagued with security issues.

In reality though, Mac OS has more vulnerabilities on a month to month basis than Microsoft Windows.  I brought up this in a previous post Apple Joins the Army and referenced an article with the exact statistics.  If I remember correctly, the average monthly vulnerabilities on the Mac platform was five times higher than Microsoft Windows.

I was reading this article today about Marc Maiffret, an ex-hacker who turned professional.  Featured in People Magazine’s 30 People under 30, he is definitely someone to listen to.  I immediately thought of Kevin Mitnick but that’s another story.  Marc is a co-founder for eEye Digital Security and now works as Chief Security Architect at FireEye.

He goes on to mention that he believes Microsoft does a better job auditing their code than Apple.  I would take this further in the fact many Mac users do not take security serious and many do not run any third party security products.  Until recently, many security vendors did not create products for Mac OS.  Apple commercials would you lead you to believe the Mac is super security and not vulnerable to hackers, viruses, and other forms of malicious software.

Apple has two things in their favor regarding security.  Mac OS is based on Unix, and inherits a lot of security developed over the many years.  The second reason I think is more significant, no one used to care about hacking the Mac OS outside of academic reasons.  As of December 2009, Microsoft Windows had over 92% market share compared to Mac OS at just over 5%.  Hacks built for the Windows OS can reach a larger user base and yield an exponentially higher ROI to hackers.

Although I am a big fan of Firefox (albeit far from perfect) Microsoft made impressive improvements with the security of Internet Explorer.  Ever since Bill Gates released his Trustworthy Computing memo in January 2002, Microsoft has shown significant attention to security.

Tags: , , , , ,

Author: Christopher

Malware Statistics – March 2010

April 9th, 2010 No Comments »

Malicious programs detected on users’ computers

Top twenty malicious programs detected on users computers throughout the month of March.

PositionChange in positionNameNumber of infected computers
1 0Net-Worm.Win32.Kido.ir332833
2 0Virus.Win32.Sality.aa211229
3 0Net-Worm.Win32.Kido.ih186685
4 0Net-Worm.Win32.Kido.iq181825
5 0Worm.Win32.FlyStudio.cu121027
6 0Trojan-Downloader.Win32.VB.eql68580
7 NewTrojan.Win32.AutoRun.abj66331
8 1Virus.Win32.Virut.ce61003
9 1Packed.Win32.Krap.l55823
10 -2Worm.Win32.AutoIt.tc55065
11 4Worm.Win32.Mabezat.b49521
12 -5Exploit.JS.Aurora.a43776
13 NewPacked.Win32.Krap.as40912
14 NewTrojan.Win32.AutoRun.aay40754
15 3Trojan-Dropper.Win32.Flystud.yo40190
16 -4Virus.Win32.Induc.a38683
17 -4not-a-virus:AdWare.Win32.RK.aw38547
18 NewTrojan.Win32.AutoRun.abd37037
19 -5not-a-virus:AdWare.Win32.Boran.z36996
20 0not-a-virus:AdWare.Win32.FunWeb.q34177
Source: Kaspersky Lab
Tags: , , ,

Author: Christopher

Most “Malware” is now “Crimeware”

April 1st, 2010 No Comments »

Computer viruses, Trojans, and worms have evolved a great deal since their inception in the 1970s.  Originally the province of pranksters and glory seekers, then anarchists trying to see [...] Continue Reading…

Tags: , , , , , , , ,

Author: Christopher

20 Zero Day Security Holes in Mac OS X to be Revealed

March 21st, 2010 No Comments »

Famous Apple security expert Charlie Miller is preparing to announce 20+ new Zero Day security holes in Mac OS X at CanSecWest.  Charlie says “OS X has a large [...] Continue Reading…

Tags: , , , ,

Author: Christopher