Dancho Danchev's Blog - Mind Streams of Information Security Knowledge

In the overwhelming sea of information, access to timely, insightful and independent open-source intelligence (OSINT) analyses is crucial for maintaining the necessary situational awareness to stay on the top of emerging security threats. This blog covers trends and fads, tactics and strategies, intersecting with third-party research, speculations and real-time CYBERINT assessments, all packed with sarcastic attitude

Thursday, February 02, 2012

Summarizing Webroot's Threat Blog Posts for January


The following is a brief summary of all of my posts at Webroot's Threat Blog for January, 2012. You can subscribe to my Webroot's Threat Blog RSS Feed or follow me on Twitter:

01. Millions of harvested emails offered for sale
02. Email hacking for hire going mainstream
03. Mass SQL injection attack affects over 200,000 URLs
04. A peek inside the PickPocket Botnet
05. A peek inside the Cythosia v2 DDoS Bot
06. Google announces new anti-malware features in Chrome
07. Adobe issues a patch for critical security holes in Reader and Acrobat
08. Inside a clickjacking/likejacking scam distribution platform for Facebook
09. Zappos.com hacked, 24 million users affected
10. Inside AnonJDB – a Java based malware distribution platforms for drive-by downloads
11. How malware authors evade antivirus detection
12. A peek inside the Umbra malware loader
13. How phishers launch phishing attacks
14. Researchers intercept a client-side exploits serving malware campaign
15. A peek inside the uBot malware bot
16. Cisco releases ‘Cisco Global Threat Report’ for 4Q11
17. Cybercriminals generate malicious Java applets using DIY tools

This post has been reproduced from Dancho Danchev's blog. Follow him on Twitter.

Posted by Dancho Danchev at Thursday, February 02, 2012  

Wednesday, February 01, 2012

Summarizing ZDNet's Zero Day Posts for January


The following is a brief summary of all of my posts at ZDNet's Zero Day for January, 2012. You can subscribe to my personal RSS feed, Zero Day's main feed, or follow me on Twitter:


01. 'Most beautiful' scams proliferate on Facebook
02. Android users hit by scareware scam
03. 'Remove Facebook Timeline' themed scam circulating on Facebook
04. Fake Kim Jong-il video distributing malware
05. Researchers spot pharmaceutical spam campaign using QR Codes
06. Report: Conficker and AutoRun infections proliferating
07. Researchers spot scammers using fake browser plug-ins
08. New variants of premium rate SMS trojan 'RuFraud' detected in the wild
09. Research: Spammers actively harvesting emails from Twitter in real-time
10. DreamHost hacked, mass password-reset issued

This post has been reproduced from Dancho Danchev's blog. Follow him on Twitter.

Posted by Dancho Danchev at Wednesday, February 01, 2012  

Newer Posts Older Posts Home
Subscribe to: Posts (Atom)

About Me

My Photo
Dancho Danchev
Independent Security Consultancy, Threat Intelligence Analysis (OSINT/Cyber Counter Intelligence) and Competitive Intelligence research on demand. Insightful, unbiased, and client-tailored assessments, neatly communicated in the form of interactive reports - because anticipating the emerging threatscape is what shapes the big picture at the end of the day. Approach me at dancho.danchev@gmail.com
View my complete profile

Add Feed to RSS Reader

AddThis Feed Button

FeedBurner FeedCount

Readers Online

hit counter

Subscribe to this Blog

Your email address:


Powered by FeedBlitz

Blog Archive

  • ▼  2012 (13)
    • ►  May (3)
      • Dissecting the Ongoing Client-Side Exploits Servin...
      • Summarizing Webroot's Threat Blog Posts for April
      • Summarizing ZDNet's Zero Day Posts for April
    • ►  April (2)
      • Summarizing Webroot's Threat Blog Posts for March
      • Summarizing ZDNet's Zero Day Posts for March
    • ►  March (2)
      • Summarizing Webroot's Threat Blog Posts for Februa...
      • Summarizing ZDNet's Zero Day Posts for February
    • ▼  February (2)
      • Summarizing Webroot's Threat Blog Posts for Januar...
      • Summarizing ZDNet's Zero Day Posts for January
    • ►  January (4)
      • Who's Behind the Koobface Botnet? - An OSINT Analy...
      • Profiling a Vendor of Visa/Mastercard Plastics and...
      • Summarizing ZDNet's Zero Day Posts for December
      • Summarizing ZDNet's Zero Day Posts for November
  • ►  2011 (47)
    • ►  December (1)
      • Summarizing ZDNet's Zero Day Posts for October
    • ►  October (6)
      • Exposing the Market for Stolen Credit Cards Data
      • Dissecting the Ongoing Mass SQL Injection Attack
      • Spamvertised IRS-themed "Last Notice" Emails Servi...
      • Spamvertised "IRS notice" Serving Malware
      • Spamvertised "NACHA security nitification" Serving...
      • Summarizing ZDNet's Zero Day Posts for September
    • ►  September (3)
      • Spamvertised 'Uniform Traffic Ticket' and 'FDIC No...
      • Summarizing ZDNet's Zero Day Posts for August
      • Summarizing 3 Years of Research Into Cyber Jihad
    • ►  August (3)
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • A Peek Inside Web Malware Exploitation Kits
      • Summarizing ZDNet's Zero Day Posts for July
    • ►  July (2)
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • Summarizing ZDNet's Zero Day Posts for June
    • ►  June (1)
      • Summarizing ZDNet's Zero Day Posts for May
    • ►  May (7)
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • A Peek Inside the Vertex Net Loader
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • Keeping Money Mule Recruiters on a Short Leash - P...
      • A Peek Inside a New DDoS Bot - "Snap"
      • Don't Play Poker on an Infected Table - Part Five
      • Summarizing ZDNet's Zero Day Posts for April
    • ►  April (5)
      • Spamvertised "Successfull Order 977132" Leads to S...
      • Spamvertised "Reqest Rejected" Campaign Serving Sc...
      • Don't Play Poker on an Infected Table - Part Four
      • Summarizing Zero Day's Posts for March
      • Spamvertised DHL Notifications Scareware Campaign
    • ►  March (10)
      • Dissecting the Massive SQL Injection Attack Servin...
      • Spamvertised Post Office Express Mail (USPS) Email...
      • Spamvertised United Parcel Service notifications s...
      • Compromised Universities Leads to Fraudulent Pharm...
      • Spamvertised FedEx Notifications Spread Malware
      • More Spamvertised DHL Notifications Spread Malware...
      • Compromised University Leads to Fraudulent Pharmac...
      • Spamvertised DHL Notification Malware Campaign
      • Keeping Money Mule Recruiters on a Short Leash - P...
    • ►  February (5)
    • ►  January (4)
  • ►  2010 (65)
    • ►  September (2)
    • ►  August (3)
    • ►  July (7)
    • ►  June (6)
    • ►  May (9)
    • ►  April (10)
    • ►  March (12)
    • ►  February (9)
    • ►  January (7)
  • ►  2009 (111)
    • ►  December (7)
    • ►  November (9)
    • ►  October (6)
    • ►  September (7)
    • ►  August (9)
    • ►  July (12)
    • ►  June (10)
    • ►  May (8)
    • ►  April (11)
    • ►  March (10)
    • ►  February (12)
    • ►  January (10)
  • ►  2008 (262)
    • ►  December (9)
    • ►  November (15)
    • ►  October (25)
    • ►  September (17)
    • ►  August (25)
    • ►  July (34)
    • ►  June (19)
    • ►  May (33)
    • ►  April (30)
    • ►  March (19)
    • ►  February (22)
    • ►  January (14)
  • ►  2007 (332)
    • ►  December (21)
    • ►  November (34)
    • ►  October (32)
    • ►  September (27)
    • ►  August (25)
    • ►  July (22)
    • ►  June (19)
    • ►  May (30)
    • ►  April (20)
    • ►  March (41)
    • ►  February (32)
    • ►  January (29)
  • ►  2006 (313)
    • ►  December (14)
    • ►  November (20)
    • ►  October (28)
    • ►  September (40)
    • ►  August (27)
    • ►  July (28)
    • ►  June (29)
    • ►  May (33)
    • ►  April (20)
    • ►  March (19)
    • ►  February (23)
    • ►  January (32)
  • ►  2005 (4)
    • ►  December (4)

Featured Publications/Articles

  • Phishing Metamorphosis in 2007 - Trends and Developments
  • Popular Spammers Strategies and Tactics
  • Malware - Future Trends - 2006
  • Building and Implementing a Successful Information Security Policy

Infowar Blogosphere

  • Anti-Malware Engineering Team
  • Anti-Virus Rants
  • Anton Chuvakin
  • Arbor Network's Blog
  • BoingBoing
  • CERIAS
  • Chinese Hacking Community
  • Counterterrorism Blog
  • Darknet Hackers
  • DefenseTech
  • Determina Security Blog
  • Errata Security
  • Exploit Prevention Labs
  • F-Secure Labs Blog
  • FAS on Secrecy
  • FAS Strategic Security Blog
  • Fergie's Tech Blog
  • Finjan's MCRC Blog
  • Frequency X Blog
  • GNUCitizen's Blog
  • Honeyblog
  • Internet Anthropologist T.T.
  • Internet Haganah
  • Internet Storm Center
  • Jeremiah Grossman
  • Jihad Watch
  • Kaspersky Labs Blog
  • Lance Spitzner
  • McAfee Avert Labs Blog
  • Mike Davis
  • PandaSecurity Labs
  • Prevx's Blog
  • Richard Bejtlich's TaoSecurity
  • RSA's Security Blog
  • Russian Business Network
  • Ryan Naraine's Security Watch
  • ScanSafe's Blog
  • Secure Works Labs
  • Sophos Labs Blog
  • SpywareGuide Greynets Blog
  • Sunbelt Labs
  • Symantec Security Response
  • The Black Flag
  • The Jawa Report
  • Threat Level
  • Trend Micro Labs
  • UK Honeynet Project's Blog
  • Web Application Security Labs
  • WebSense labs
  • Wired's Danger Room
  • ZDNet's Zero Day

Jiglu - Topical Tag Cloud


Random Infowar Videos

Loading...