Latest Posts
2008—Ending With a Bang
Security Intel Analysis Team @ Wed Dec 31 00:07:48 GMT 2008This has been an interesting year for high-profile vulnerabilities and security research. In 2008, awareness has been raised about a number of high impact, remote code-execution vulnerabilities aff...[More ...]
Merry Christmas from Arnold Schwarzenegger! (?)
Liam O Murchu @ Mon Dec 29 12:06:47 GMT 2008While investigating the worm W32.Waledac recently, we got a shock (and a few laughs) from what popped up on ours screens (yes, unfortunately this is what passes for kicks in the virus lab during th...[More ...]
Phishing Attacks Utilizing Port Numbers
Sai Nayaran Nambiar @ Tue Dec 23 21:00:55 GMT 2008There are varying types of technologies used by online attackers these days. There are old tricks and of course new ones, but it is the newer ones that make it even more difficult to handle the dil...[More ...]
An Early Holiday Gift—The Return of Spam
Dylan Morss @ Sat Dec 20 00:26:04 GMT 2008After the shutdown of McColo, which was aiding the distribution of about half of all spam on the internet globally, spam volumes dropped. However, since mid-November, spam volumes have been slowly ...[More ...]
Missing Email Headers? Find Them in the Body.
Mayur Kulkarni @ Thu Dec 18 15:37:59 GMT 2008Spammers always try to come up with new tricks to bypass antispam filters. This time, they have shown an ability to partly (or sometimes completely) hide essential headers, ruling filters on header...[More ...]
A Caution During the Season of Giving
Mayur Kulkarni @ Thu Dec 18 15:31:21 GMT 2008Like so many forms of donations today, contributions to cancer research and treatment can be made online. Unfortunately, any online business or charity can be prone to phishing attacks against unsuspe...[More ...]
Rise of IE Zero-Day Through SQL Injection
Peter Coogan @ Mon Dec 15 19:08:45 GMT 2008Since our blog Yes, There’s a Zero-Day Exploit for Internet Explorer Out There[More ...]
Just a Reminder
Steve Trilling @ Sat Dec 13 00:47:53 GMT 2008You may have seen an article in the New York Times on December 6, 2008, by John Markoff, entitled "[More ...]
Protecting Zero-Day
Security Intel Analysis Team @ Sat Dec 13 00:02:41 GMT 2008Hello, this is Anthony from the Symantec Intelligence Analysis Team. Earlier this week we had the opportunity to analyze an interesting shellcode that is associated with the initial malicious exploit ...[More ...]
IDNs in Phishing
Mathew Maniyara @ Fri Dec 12 17:47:58 GMT 2008What is an IDN? IDN stands for “internationalized domain name.” These are the domain names that contain one or more characters that do not belong to a Latin-based western language (or c...[More ...]









