-
RSS malware plague predicted for 2006
"The fast growing popularity of RSS (really simple syndication) means that the technology will pose increasingly significant problems for IT security professionals this year, new research has warned. ScanSafe's latest web security report notes an explosive growth in the use of RSS feeds to pull updated content via HTTP and XML rather than having it…
-
Malware Future Trends
Dancho Danchev has written an article outlining a few malware trend predictions that is worth checking out. If you're into that sort of thing I wrote an article on web Application Worms that you may also wish to check out. Article Link: http://www.astalavista.com/media/archive1/files/malwaretrends.pdf
-
Trojan Horse Program Targetting Adsense
Apparently people are uploading malware to users computers in order to modify ads displayed on websites they visit with their own ad. "Techshout.com reports that a new, deceptive Trojan Horse program has surfaced. The program is engineered to produce fake Google ads that are formatted to look like legitimate ones. The ads are incorporated in…
-
PHP Worm in the Wild
"Virus writers have created a Linux worm which uses a recently discovered vulnerability in XML-RPC for PHP, a popular open source component used in many applications, to attack vulnerable systems." – The Register Article Link http://www.theregister.co.uk/2005/11/07/linux_worm/
-
Code Red Part 3: Backdooring your IIS machine
Yet another variant of Code Red worm has comeout that not only exploits you but backdoorsyour webserver. It creates a file called root.exewhich is really a copy of your cmd.exe file. Thiswill allow a attacker to execute commands on your machine with complete control. This can also allowpeople to commit large scale ddos attacks with…
-
The Worm that won’t die
Well as everyone knows Code Red Worm is one busy worm.It seems to be so busy in fact that it managed to thissite over 40 times in less then 2 days. Originally we gothit roughly 30 times. Proof enough you need to keep your systems patched and up to date. This worm can be reddenedby…
-
New worm makes its rounds…
The new internet worm Called "The Red Worm" is exploiting a well known Microsoft hole.It just started hitting my machine todayand I figured some people may appreciate logsso they know what to look for.A log is located beloww0rm.txtOriginal advisory on the hole it uses is located below.AdvisoryMore info on wormCert.orgPatch for the wormhttp://www.microsoft.com/technet/security/bulletin/MS01-033.asp