Dancho Danchev's Blog - Mind Streams of Information Security Knowledge

In the overwhelming sea of information, access to timely, insightful and independent open-source intelligence (OSINT) analyses is crucial for maintaining the necessary situational awareness to stay on the top of emerging security threats. This blog covers trends and fads, tactics and strategies, intersecting with third-party research, speculations and real-time CYBERINT assessments, all packed with sarcastic attitude

Sunday, December 04, 2011

Summarizing ZDNet's Zero Day Posts for October


The following is a brief summary of all of my posts at ZDNet's Zero Day for October. You can subscribe to my personal RSS feed, Zero Day's main feed, or follow me on Twitter:


01. iPhone 5 themed emails serve Windows malware
02. 27 of 100 tested Chrome extensions contain 51 vulnerabilities
03. 37 percent of users browsing the Web with insecure Java versions
04. Google introduces Safe Browsing Alerts for network administrators
05. Malware Watch: U.S Chamber of Commerce official letter; DHL delivery error, IRS notifications
06. 'Steve Jobs Alive!' emails lead to exploits and malware
07. Which is the most popular malware propagation tactic?
08. Spamvertised 'Cancellation of the package delivery' emails serving malware
09. Hacking group from Nepal posts 10,000 stolen Facebook accounts online
10. Over a million web sites affected in mass SQL injection attack
11. New Mac OS X malware disables Apple's malware protection
12. New Mac OS X malware with DDoS functionality spotted in the wild
13. Security researcher finds major security flaw in Facebook

This post has been reproduced from Dancho Danchev's blog. Follow him on Twitter.

Posted by Dancho Danchev at Sunday, December 04, 2011  

Newer Post Older Post Home

About Me

My Photo
Dancho Danchev
Independent Security Consultancy, Threat Intelligence Analysis (OSINT/Cyber Counter Intelligence) and Competitive Intelligence research on demand. Insightful, unbiased, and client-tailored assessments, neatly communicated in the form of interactive reports - because anticipating the emerging threatscape is what shapes the big picture at the end of the day. Approach me at dancho.danchev@gmail.com
View my complete profile

Add Feed to RSS Reader

AddThis Feed Button

FeedBurner FeedCount

Readers Online

hit counter

Subscribe to this Blog

Your email address:


Powered by FeedBlitz

Blog Archive

  • ►  2012 (6)
    • ►  February (2)
      • Summarizing Webroot's Threat Blog Posts for Januar...
      • Summarizing ZDNet's Zero Day Posts for January
    • ►  January (4)
      • Who's Behind the Koobface Botnet? - An OSINT Analy...
      • Profiling a Vendor of Visa/Mastercard Plastics and...
      • Summarizing ZDNet's Zero Day Posts for December
      • Summarizing ZDNet's Zero Day Posts for November
  • ▼  2011 (47)
    • ▼  December (1)
      • Summarizing ZDNet's Zero Day Posts for October
    • ►  October (6)
      • Exposing the Market for Stolen Credit Cards Data
      • Dissecting the Ongoing Mass SQL Injection Attack
      • Spamvertised IRS-themed "Last Notice" Emails Servi...
      • Spamvertised "IRS notice" Serving Malware
      • Spamvertised "NACHA security nitification" Serving...
      • Summarizing ZDNet's Zero Day Posts for September
    • ►  September (3)
      • Spamvertised 'Uniform Traffic Ticket' and 'FDIC No...
      • Summarizing ZDNet's Zero Day Posts for August
      • Summarizing 3 Years of Research Into Cyber Jihad
    • ►  August (3)
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • A Peek Inside Web Malware Exploitation Kits
      • Summarizing ZDNet's Zero Day Posts for July
    • ►  July (2)
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • Summarizing ZDNet's Zero Day Posts for June
    • ►  June (1)
      • Summarizing ZDNet's Zero Day Posts for May
    • ►  May (7)
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • A Peek Inside the Vertex Net Loader
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • A Peek Inside a New DDoS Bot - "Snap"
      • Don't Play Poker on an Infected Table - Part Five
      • Summarizing ZDNet's Zero Day Posts for April
    • ►  April (5)
      • Spamvertised "Successfull Order 977132" Leads to S...
      • Spamvertised "Reqest Rejected" Campaign Serving Sc...
      • Don't Play Poker on an Infected Table - Part Four
      • Summarizing Zero Day's Posts for March
      • Spamvertised DHL Notifications Scareware Campaign
    • ►  March (10)
      • Dissecting the Massive SQL Injection Attack Servin...
      • Spamvertised Post Office Express Mail (USPS) Email...
      • Spamvertised United Parcel Service notifications s...
      • Compromised Universities Leads to Fraudulent Pharm...
      • Spamvertised FedEx Notifications Spread Malware
      • More Spamvertised DHL Notifications Spread Malware...
      • Compromised University Leads to Fraudulent Pharmac...
      • Spamvertised DHL Notification Malware Campaign
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • Compromised University Leads to Fraudulent Google ...
    • ►  February (5)
      • Summarizing Zero Day's Posts for February
      • Sampling 419 Advance Fee Scams Activity - Part Two...
      • Bogus Adult Content SPIM-ed Over ICQ
      • A Diverse Portfolio of Fake Security Software - Pa...
      • Spamvertised Portfolio of Fraudulent/Pharmaceutica...
    • ►  January (4)
      • Keeping Money Mule Recruiters on a Short Leash - P...
  • ►  2010 (65)
    • ►  September (2)
    • ►  August (3)
    • ►  July (7)
    • ►  June (6)
    • ►  May (9)
    • ►  April (10)
    • ►  March (12)
    • ►  February (9)
    • ►  January (7)
  • ►  2009 (111)
    • ►  December (7)
    • ►  November (9)
    • ►  October (6)
    • ►  September (7)
    • ►  August (9)
    • ►  July (12)
    • ►  June (10)
    • ►  May (8)
    • ►  April (11)
    • ►  March (10)
    • ►  February (12)
    • ►  January (10)
  • ►  2008 (262)
    • ►  December (9)
    • ►  November (15)
    • ►  October (25)
    • ►  September (17)
    • ►  August (25)
    • ►  July (34)
    • ►  June (19)
    • ►  May (33)
    • ►  April (30)
    • ►  March (19)
    • ►  February (22)
    • ►  January (14)
  • ►  2007 (332)
    • ►  December (21)
    • ►  November (34)
    • ►  October (32)
    • ►  September (27)
    • ►  August (25)
    • ►  July (22)
    • ►  June (19)
    • ►  May (30)
    • ►  April (20)
    • ►  March (41)
    • ►  February (32)
    • ►  January (29)
  • ►  2006 (313)
    • ►  December (14)
    • ►  November (20)
    • ►  October (28)
    • ►  September (40)
    • ►  August (27)
    • ►  July (28)
    • ►  June (29)
    • ►  May (33)
    • ►  April (20)
    • ►  March (19)
    • ►  February (23)
    • ►  January (32)
  • ►  2005 (4)
    • ►  December (4)

Featured Publications/Articles

  • Phishing Metamorphosis in 2007 - Trends and Developments
  • Popular Spammers Strategies and Tactics
  • Malware - Future Trends - 2006
  • Building and Implementing a Successful Information Security Policy

Infowar Blogosphere

  • Anti-Malware Engineering Team
  • Anti-Virus Rants
  • Anton Chuvakin
  • Arbor Network's Blog
  • BoingBoing
  • CERIAS
  • Chinese Hacking Community
  • Counterterrorism Blog
  • Darknet Hackers
  • DefenseTech
  • Determina Security Blog
  • Errata Security
  • Exploit Prevention Labs
  • F-Secure Labs Blog
  • FAS on Secrecy
  • FAS Strategic Security Blog
  • Fergie's Tech Blog
  • Finjan's MCRC Blog
  • Frequency X Blog
  • GNUCitizen's Blog
  • Honeyblog
  • Internet Anthropologist T.T.
  • Internet Haganah
  • Internet Storm Center
  • Jeremiah Grossman
  • Jihad Watch
  • Kaspersky Labs Blog
  • Lance Spitzner
  • McAfee Avert Labs Blog
  • Mike Davis
  • PandaSecurity Labs
  • Prevx's Blog
  • Richard Bejtlich's TaoSecurity
  • RSA's Security Blog
  • Russian Business Network
  • Ryan Naraine's Security Watch
  • ScanSafe's Blog
  • Secure Works Labs
  • Sophos Labs Blog
  • SpywareGuide Greynets Blog
  • Sunbelt Labs
  • Symantec Security Response
  • The Black Flag
  • The Jawa Report
  • Threat Level
  • Trend Micro Labs
  • UK Honeynet Project's Blog
  • Web Application Security Labs
  • WebSense labs
  • Wired's Danger Room
  • ZDNet's Zero Day

Jiglu - Topical Tag Cloud


Random Infowar Videos

Loading...