Dancho Danchev's Blog - Mind Streams of Information Security Knowledge

In the overwhelming sea of information, access to timely, insightful and independent open-source intelligence (OSINT) analyses is crucial for maintaining the necessary situational awareness to stay on the top of emerging security threats. This blog covers trends and fads, tactics and strategies, intersecting with third-party research, speculations and real-time CYBERINT assessments, all packed with sarcastic attitude

Friday, September 28, 2012

Summarizing Webroot's Threat Blog Posts for August


The following is a brief summary of all of my posts at Webroot's Threat Blog for August, 2012. You can subscribe to my Webroot's Threat Blog RSS Feed or follow me on Twitter:


01. Spamvertised AICPA themed emails lead to Black Hole exploit kit
02. Spamvertised ‘PayPal has sent you a bank transfer’ themed emails lead to Black Hole exploit kit
03. Ongoing spam campaign impersonates LinkedIn, serves exploits and malware
04. Millions of spamvertised emails lead to W32/Casonline
05. Cybercriminals impersonate AT&T’s Billing Service, serve exploits and malware
06. IRS themed spam campaign leads to Black Hole exploit kit
07. Cybercriminals spamvertise bogus greeting cards, serve exploits and malware
08. Spamvertised ‘Federal Tax Payment Rejected’ themed emails lead to Black Hole exploit kit
09. Spamvertised ‘Fwd: Scan from a Hewlett-Packard ScanJet’ emails lead to Black Hole exploit kit
10. Spamvertised ‘Royal Mail Shipping Advisory’ themed emails serve malware
11. Cybercriminals impersonate Intuit Market, mass mail millions of exploits and malware serving emails
12. Cybercriminals spamvertise PayPay themed ‘Notification of payment received’ emails, serve malware
13. Cybercriminals impersonate UPS, serve malware

This post has been reproduced from Dancho Danchev's blog. Follow him on Twitter.

Posted by Dancho Danchev at Friday, September 28, 2012

Newer Post Older Post Home

About Me

My Photo
Dancho Danchev
Independent Security Consultancy, Threat Intelligence Analysis (OSINT/Cyber Counter Intelligence) and Competitive Intelligence research on demand. Insightful, unbiased, and client-tailored assessments, neatly communicated in the form of interactive reports - because anticipating the emerging threatscape is what shapes the big picture at the end of the day. Approach me at dancho.danchev@gmail.com
View my complete profile

How likely are you to purchase commercially availalble CYBERINT reports conducted by Dancho Danchev?

Add Feed to RSS Reader

AddThis Feed Button

FeedBurner FeedCount

Readers Online

hit counter

Subscribe to this Blog

Your email address:


Powered by FeedBlitz

Blog Archive

  • ►  2013 (13)
    • ►  May (1)
    • ►  April (3)
    • ►  March (2)
    • ►  February (4)
    • ►  January (3)
  • ▼  2012 (31)
    • ►  December (2)
    • ►  November (5)
    • ►  October (2)
    • ▼  September (3)
      • Summarizing Webroot's Threat Blog Posts for August...
      • Summarizing ZDNet's Zero Day Posts for August
      • Dissecting 'Operation Ababil' - an OSINT Analysis
    • ►  August (2)
    • ►  July (2)
    • ►  June (2)
    • ►  May (3)
    • ►  April (2)
    • ►  March (2)
    • ►  February (2)
    • ►  January (4)
  • ►  2011 (47)
    • ►  December (1)
    • ►  October (6)
    • ►  September (3)
    • ►  August (3)
    • ►  July (2)
    • ►  June (1)
    • ►  May (7)
    • ►  April (5)
    • ►  March (10)
    • ►  February (5)
    • ►  January (4)
  • ►  2010 (65)
    • ►  September (2)
    • ►  August (3)
    • ►  July (7)
    • ►  June (6)
    • ►  May (9)
    • ►  April (10)
    • ►  March (12)
    • ►  February (9)
    • ►  January (7)
  • ►  2009 (111)
    • ►  December (7)
    • ►  November (9)
    • ►  October (6)
    • ►  September (7)
    • ►  August (9)
    • ►  July (12)
    • ►  June (10)
    • ►  May (8)
    • ►  April (11)
    • ►  March (10)
    • ►  February (12)
    • ►  January (10)
  • ►  2008 (262)
    • ►  December (9)
    • ►  November (15)
    • ►  October (25)
    • ►  September (17)
    • ►  August (25)
    • ►  July (34)
    • ►  June (19)
    • ►  May (33)
    • ►  April (30)
    • ►  March (19)
    • ►  February (22)
    • ►  January (14)
  • ►  2007 (332)
    • ►  December (21)
    • ►  November (34)
    • ►  October (32)
    • ►  September (27)
    • ►  August (25)
    • ►  July (22)
    • ►  June (19)
    • ►  May (30)
    • ►  April (20)
    • ►  March (41)
    • ►  February (32)
    • ►  January (29)
  • ►  2006 (313)
    • ►  December (14)
    • ►  November (20)
    • ►  October (28)
    • ►  September (40)
    • ►  August (27)
    • ►  July (28)
    • ►  June (29)
    • ►  May (33)
    • ►  April (20)
    • ►  March (19)
    • ►  February (23)
    • ►  January (32)
  • ►  2005 (4)
    • ►  December (4)

Featured Publications/Articles

  • Malware - Future Trends - 2006
  • Building and Implementing a Successful Information Security Policy - 2003
  • Astalavista Group's Security Newsletter 2003-2006
  • Cyberterrorism/Cyberwars Article for CIO Magazine Bulgaria - 2005
  • ITSecurity Articles Portfolio for HiComm Magazine Bulgaria 2003

Infowar Blogosphere

  • Anton Chuvakin
  • Arbor Network's Blog
  • BoingBoing
  • Counterterrorism Blog
  • Darknet Hackers
  • DefenseTech
  • Determina Security Blog
  • Errata Security
  • Exploit Prevention Labs
  • F-Secure Labs Blog
  • FAS on Secrecy
  • FAS Strategic Security Blog
  • Finjan's MCRC Blog
  • Frequency X Blog
  • GNUCitizen's Blog
  • Honeyblog
  • Internet Haganah
  • Internet Storm Center
  • Jeremiah Grossman
  • Jihad Watch
  • Kaspersky Labs Blog
  • McAfee Avert Labs Blog
  • PandaSecurity Labs
  • Prevx's Blog
  • Richard Bejtlich's TaoSecurity
  • RSA's Security Blog
  • ScanSafe's Blog
  • Secure Works Labs
  • Sophos Labs Blog
  • Sunbelt Labs
  • Symantec Security Response
  • The Black Flag
  • The Jawa Report
  • Threat Level
  • Trend Micro Labs
  • Webroot's Threat Blog
  • WebSense labs
  • Wired's Danger Room
  • ZDNet's Zero Day
mailto:dancho.danchev AT hushmail.com