75% of enterprises will be infected

September 29th, 2007 No Comments »

It is estimated that 75% of enterprises will be infected this year with malware targeted to invade traditional defenses according to Gartner Group. 80% of enterprises have deployed some form of URL filtering, less than 15% have deployed some form of deep packet inspection. Tailor-made Trojans are being developed to penetrate YOUR organization; how are you protected against these threats?

Tags: , ,

Author: Christopher

(No Ratings Yet)
Loading ... Loading ...

Major websites hosting malicious ads

September 26th, 2007 No Comments »

Sites like MySpace and Photobucket are seeing a significant amount of malicious banner ads planted on their pages. Other heavily volume sites are noticing similar occurrences of difficult to detect javascript based trojan downloaders.

These types of threats are very dangerous as you do not have to click on the ad to be infected. These types of ads are not automatically filtered by Right Media’s ad servers as the trojan writer add in code to not display infect the ad if coming from a Right Media IPs. These ‘Agent’ trojans are becoming popular vehicles to deliver more dangerous malware.

Tags: , ,

Author: Christopher

(No Ratings Yet)
Loading ... Loading ...

More computer sabotage

September 24th, 2007 No Comments »

Yung-Hsun Lin recently plead guilty to writing and installing a logic bomb on the company network at Medco Health Solutions. Concerned he may be laid off, he planned on disrupting Medco Health Solutions ability to know if a customer’s new prescriptions would have adverse interactions with their existing prescriptions.

Fortunately another administrator found the threat before it had a chance to go off. Medco estimates the problem cost them between $70,000 – $120,000 to clean up.

If convicted, Lin could be facing 10 years in prison; although his plea deal is for 30 to 37 months.

Tags: , ,

Author: Christopher

(No Ratings Yet)
Loading ... Loading ...

Is your anti-virus vulnerable?

September 23rd, 2007 No Comments »

In a recent test, major anti-virus products were put into a lab environment and tested to see if they can be hacked using different exploits and even hardware.

Many threats today have focused on disabling anti-virus and security systems such as software firewalls. What good is running the latest and great anti-virus program when it is disabled.

This brings us to the winner of the test, our personal favorite; Kaspersky who brought in the Gold Self Protection Award successfully defending against 32 out of 33 malicious attempts to disable or other hinder the anti-virus product. Below are the top three results:

1) Kaspersky Internet Security 7

2) VBA Anti-Virus 3.11

Symantec Internet Security 2007

F-Secure Internet Security

3) ZoneAlarm Internet Security 7

Trend Micro PC-Cillin

Tags: ,

Author: Christopher

(No Ratings Yet)
Loading ... Loading ...

No PDF is safe

September 21st, 2007 No Comments »

More flaws have been found in how Adobe Acrobat handles PDF files that allows them to be transports for malware installation. These flaws can be used to exploit PDF to install gain complete control of a remote machine and completely silently.

PDF files are commonly transferred by email in the business environment and embedded into websites. Because PDF files are common trusted to be a safe medium and have wide spread usage these flaws are a huge attack vector.

This exploit appears to be limited to Adobe Acrobat versions 7.0, 8.0, and 8.1.

Tags: ,

Author: Christopher

(No Ratings Yet)
Loading ... Loading ...

Hard Drives, now with free viruses

September 19th, 2007 No Comments »

According to a recent press release, Kaspersky reported finding the Virus.Win32.AutoRun.ah virus on brand new Maxtor 3200 Personal Storage drives sold in the Netherlands.

The virus looks around a computer searching for gaming passwords and deletes MP3 files. Kaspersky speculates these drives were some how infected during the formating process.

Tags: , ,

Author: Christopher

(No Ratings Yet)
Loading ... Loading ...