Dancho Danchev's Blog - Mind Streams of Information Security Knowledge

In the overwhelming sea of information, access to timely, insightful and independent open-source intelligence (OSINT) analyses is crucial for maintaining the necessary situational awareness to stay on the top of emerging security threats. This blog covers trends and fads, tactics and strategies, intersecting with third-party research, speculations and real-time CYBERINT assessments, all packed with sarcastic attitude

Monday, November 02, 2009

Summarizing Zero Day's Posts for October

The following is a brief summary of all of my posts at ZDNet's Zero Day for October.

You can also go through previous summaries, as well as subscribe to my personal RSS feed or Zero Day's main feed.

Notable articles include: Does software piracy lead to higher malware infection rates? and New LoroBot ransomware encrypts files, demands $100 for decryption.

01. MS Security Essentials test shows 98% detection rate for 545k malware samples
02. Weak passwords dominate statistics for Hotmail's phishing scheme leak
03. Click fraud facilitating Bahama botnet steals ad revenue from Google
04. New Koobface campaign spoofs Adobe's Flash updater
05. Does software piracy lead to higher malware infection rates?
06. Commonwealth fined $100k for not mandating antivirus software
07. 'Evil Maid' USB stick attack keylogs TrueCrypt passphrases
08. Fake 'Conflicker.B Infection Alert' spam campaign drops scareware
09. Gawker Media tricked into featuring malicious Suzuki ads
10. New LoroBot ransomware encrypts files, demands $100 for decryption
11. Spooky Halloween - scareware or crimeware?
12. Phishing experiment sneaks through all anti-spam filters

This post has been reproduced from Dancho Danchev's blog.

Posted by Dancho Danchev at Monday, November 02, 2009  

Newer Post Older Post Home

About Me

My Photo
Dancho Danchev
Independent Security Consultancy, Threat Intell Analyses and Competitive Intelligence research on Demand. Insightful, unbiased, and client-tailored assessments, neatly communicated in the form of interactive reports - because anticipating the emerging threatscape is what shapes the big picture at the end of the day. Approach me at dancho.danchev@gmail.com
View my complete profile

Add Feed to RSS Reader

AddThis Feed Button

FeedBurner FeedCount

Readers Online

hit counter

Subscribe to this Blog

Your email address:


Powered by FeedBlitz

Blog Archive

  • ►  2010 (12)
    • ►  February (5)
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • A Diverse Portfolio of Scareware/Blackhat SEO Redi...
      • PhotoArchive Crimeware/Client-Side Exploits Servin...
      • How the Koobface Gang Monetizes Mac OS X Traffic
      • Summarizing Zero Day's Posts for January
    • ►  January (7)
      • Facebook/AOL Update Tool Spam Campaign Serving Cri...
      • Follow Me on Twitter!
      • Pushdo Serving Crimeware, Client-Side Exploits and...
      • Outlook Web Access Themed Spam Campaign Serves Zeu...
      • Top Ten Must-Read DDanchev Posts For 2009
      • Top Ten Must-Read Posts at ZDNet's Zero Day for 20...
      • Summarizing Zero Day's Posts for December
  • ▼  2009 (111)
    • ►  December (7)
      • The Koobface Gang Wishes the Industry "Happy Holid...
      • Koobface-Friendly Riccom LTD - AS29550 - (Finally)...
      • A Diverse Portfolio of Fake Security Software - Pa...
      • Celebrity-Themed Scareware Campaign Abusing DocSto...
      • Keeping Reshipping Mule Recruiters on a Short Leas...
      • Celebrity-Themed Scareware Campaign Abusing DocSto...
      • Pushdo Injecting Bogus Swine Flu Vaccine
    • ▼  November (9)
      • Summarizing Zero Day's Posts for November
      • Koobface Botnet Starts Serving Client-Side Exploit...
      • Scareware Campaign Using Google Sponsored Links
      • "Your mailbox has been deactivated" Spam Campaign ...
      • Massive Scareware Serving Blackhat SEO, the Koobfa...
      • Keeping Money Mule Recruiters on a Short Leash
      • Koobface Botnet's Scareware Business Model - Part ...
      • Pricing Scheme for a DDoS Extortion Attack
      • Summarizing Zero Day's Posts for October
    • ►  October (6)
      • Ongoing FDIC Spam Campaign Serves Zeus Crimeware
      • Koobface Botnet Redirects Facebook's IP Space to m...
      • Scareware Serving Conficker.B Infection Alerts Spa...
      • Koobface Botnet Dissected in a TrendMicro Report
      • Standardizing the Money Mule Recruitment Process
      • Summarizing Zero Day's Posts for September
    • ►  September (7)
      • Dissecting September's Twitter Scareware Campaign
      • The Ultimate Guide to Scareware Protection
      • Koobface Botnet's Scareware Business Model
      • Ukrainian "Fan Club" Features Malvertisement at NY...
      • News Items Themed Blackhat SEO Campaign Still Acti...
      • SMS Ransomware Displays Persistent Inline Ads
      • Summarizing Zero Day's Posts for August
    • ►  August (9)
      • 6th SMS Ransomware Variant Offered for Sale
      • Movement on the Koobface Front - Part Two
      • Dissecting the Ongoing U.S Federal Forms Themed Bl...
      • U.S Federal Forms Blackhat SEO Themed Scareware Ca...
      • Blackhat SEO Campaign Hijacks U.S Federal Form Key...
      • Scareware Template Localized to Arabic
      • Movement on the Koobface Front
      • Managed Polymorphic Script Obfuscation Services
      • Summarizing Zero Day's Posts for July
    • ►  July (12)
    • ►  June (10)
    • ►  May (8)
    • ►  April (11)
    • ►  March (10)
    • ►  February (12)
    • ►  January (10)
  • ►  2008 (262)
    • ►  December (9)
    • ►  November (15)
    • ►  October (25)
    • ►  September (17)
    • ►  August (25)
    • ►  July (34)
    • ►  June (19)
    • ►  May (33)
    • ►  April (30)
    • ►  March (19)
    • ►  February (22)
    • ►  January (14)
  • ►  2007 (333)
    • ►  December (21)
    • ►  November (34)
    • ►  October (32)
    • ►  September (27)
    • ►  August (25)
    • ►  July (22)
    • ►  June (20)
    • ►  May (30)
    • ►  April (20)
    • ►  March (41)
    • ►  February (32)
    • ►  January (29)
  • ►  2006 (313)
    • ►  December (14)
    • ►  November (20)
    • ►  October (28)
    • ►  September (40)
    • ►  August (27)
    • ►  July (28)
    • ►  June (29)
    • ►  May (33)
    • ►  April (20)
    • ►  March (19)
    • ►  February (23)
    • ►  January (32)
  • ►  2005 (5)
    • ►  December (5)

Featured Publications/Articles

  • Phishing Metamorphosis in 2007 - Trends and Developments
  • Popular Spammers Strategies and Tactics
  • Malware - Future Trends - 2006
  • Building and Implementing a Successful Information Security Policy

Infowar Blogosphere

  • Anti-Malware Engineering Team
  • Anti-Virus Rants
  • Anton Chuvakin
  • Arbor Network's Blog
  • BoingBoing
  • CERIAS
  • Chinese Hacking Community
  • Counterterrorism Blog
  • Darknet Hackers
  • DefenseTech
  • Determina Security Blog
  • Errata Security
  • Exploit Prevention Labs
  • F-Secure Labs Blog
  • FAS on Secrecy
  • FAS Strategic Security Blog
  • Fergie's Tech Blog
  • Finjan's MCRC Blog
  • Frequency X Blog
  • GNUCitizen's Blog
  • Honeyblog
  • Internet Anthropologist T.T.
  • Internet Haganah
  • Internet Storm Center
  • Jeremiah Grossman
  • Jihad Watch
  • Kaspersky Labs Blog
  • Lance Spitzner
  • McAfee Avert Labs Blog
  • Mike Davis
  • PandaSecurity Labs
  • Prevx's Blog
  • Richard Bejtlich's TaoSecurity
  • RSA's Security Blog
  • Russian Business Network
  • Ryan Naraine's Security Watch
  • ScanSafe's Blog
  • Secure Works Labs
  • Sophos Labs Blog
  • SpywareGuide Greynets Blog
  • Sunbelt Labs
  • Symantec Security Response
  • The Black Flag
  • The Jawa Report
  • Threat Level
  • Trend Micro Labs
  • UK Honeynet Project's Blog
  • Web Application Security Labs
  • WebSense labs
  • Wired's Danger Room
  • ZDNet's Zero Day

Jiglu - Topical Tag Cloud


Random Infowar Videos

Loading...