ICT Security-Sécurité PC et Internet
87.1K views | +1 today
Follow
ICT Security-Sécurité PC et Internet
ICT Security + Privacy + Piracy + Data Protection - Censorship - Des cours et infos gratuites sur la"Sécurité PC et Internet" pour usage non-commercial... (FR, EN+DE)...
Curated by Gust MEES
Your new post is loading...
Your new post is loading...
Scooped by Gust MEES
Scoop.it!

Malicious Email Messages Posing as Antivirus Notifications

Malicious Email Messages Posing as Antivirus Notifications | ICT Security-Sécurité PC et Internet | Scoop.it

Websense® ThreatSeeker® Network intercepted a malicious email campaign posing as antivirus notifications that warn users that their accounts may be blocked.

These fake messages state that the victim's email address has been sending infected email to the mail server, and that the situation may be remedied if the user clicks a URL to download a free removal tool.

 

The "free tool" is, of course, a malicious exectutable that connects to malicious websites, and then drops more executables on the victim's computer.

This looks like a low-volume campaign, as we have seen (and blocked) approximately 2700 of this type of email yesterday and today.


Websense customers are protected from these threats by ACE™, our Advanced Classification Engine.

 

The email may contain a subject like this:

 

[Symantec] - Your e-mail account may be blocked.

The "from" address varies and may appear as:
scanner@symantec.com
scanonline@f-secure.com
symantec@verisign.com
scan@sophos.com
symantec@sophos.com
virscan@secureroot.com
noreply@verisign.com

 

Read more:

http://community.websense.com/blogs/securitylabs/archive/2012/08/28/malicious-e-mails-posing-as-anti-virus-notifications.aspx?cmpid=sltw

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

Tens of thousands of web sites affected in ongoing mass SQL injection attack

Tens of thousands of web sites affected in ongoing mass SQL injection attack | ICT Security-Sécurité PC et Internet | Scoop.it
By Dancho Danchev

 

Hundreds of thousands of legitimate web sites are currently affected in a a mass SQL injection attack that has been ongoing for the past several months. 

 

The ongoing mass SQL injection attacks, are directly related to last year’s scareware-serving Lizamoon mass SQL injection attacks.

 

The cybercriminals behind it, are automatically exploiting the legitimate web sites, and embedding a tiny script on the affected pages, abusing an input validation flaw, or exploiting vulnerable and outdated versions of the web application software running on them.

 

Gust MEES: Check also http://www.scoop.it/t/ict-security-tools?tag=MySQL-Database-Protection&nbsp to find out on How-To protect MySQL-Databases...

No comment yet.
Scooped by Gust MEES
Scoop.it!

Social Medias and its Influence: Adventure with IT-Security Tweeps on Twitter

Social Medias and its Influence: Adventure with IT-Security Tweeps on Twitter | ICT Security-Sécurité PC et Internet | Scoop.it

Hi, First of all let me tell you that on the beginning when I joined Twitter I really wasn’t a friend of it as I didn’t see its advantages. I am an ICT Course Instructor and also an author who has written a lot of articles, blogs, tutorials and courses who were read +/- 4 million times in total...

 

A true Story, read more How-To I earned FREE Antivirus licences worth 1,600 EUROS = 2,112 $US (currency value at March 22, 2012)! WOW!

 

No comment yet.