Eye on Security: Microsoft Windows Emergency Patch, Botnets Grab Data, Malware Scam Analysis
- Dr. Roy Schestowitz
- 2010-08-06 12:12:28 UTC
- Modified: 2010-08-06 12:12:28 UTC
Summary: An update on problems Windows users may be experiencing
●
Microsoft rushes out emergency fix for critical Windows bug (
more about this emergency)
Microsoft on Monday rushed out an emergency patch for a critical vulnerability that criminals are exploiting to install malware on all supported versions of the Windows operating system.
●
Botnet with 60GB of stolen data cracked wide open
Most botnet command-and-control channels run on compromised webservers or web-hosting services designed for criminals, making it possible to dismantle the network by taking down the central server. Mumba, by contrast, makes use of fast-flux technology, in which the operations are carried out on thousands of compromised PCs. That allows the IP address and host machine to change every few minutes, a measure that frequently foils takedown attempts by researchers and law enforcement.
●
Anatomy Of An Attempted Malware Scam
The display media segment is the newest target of malvertising, the latest trend in online criminal methodology. The problem has escalated in recent months and despite many suppliers' best efforts, it continues to grow. The culprits behind many of these attacks are based in foreign states leaving little course to take action. While the best defense against malvertising is to prevent it from happening in the first place, this has proven to be a challenge for even the most astute publishers, networks and the like.
We were recently the targets of one such attempt, and while it certainly wasn't the first "fake agency" we've been besieged by (and that we've successfully stopped), it is one of the most organized efforts we've encountered so far. Below we've outlined the approach that was used and the findings of our investigation as an FYI to others who may be on the target list.
Recent Techrights' Posts
- The Free Software Foundation is Looking to Raise Nearly Half a Million Dollars by Year's End
- And it really needs the money, unlike the EFF which sits on a humongous pile of oligarchs' and GAFAM cash
-
- Links 19/11/2024: War on Cables?
- Links for the day
- Gemini Links 19/11/2024: Private Journals Online and Spirituality
- Links for the day
- Drew's Development Mailing Lists and Patches to 'Refine' His Attack Pieces Against the FSF's Founder
- Way to bury oneself in one's own grave...
- What IBMers Say About IBM Causing IBMers to Resign (by Making Life Hard/Impossible) and Why Red Hat Was a Waste of Money to Buy
- partnering with GAFAM
- In Some Countries, Desktop/Laptop Usage Has Fallen to the Point Where Microsoft and Windows (and Intel) Barely Matter Anymore
- Microsoft is the next Intel basically
- [Meme] The Web Wasn't Always Proprietary Computer Programs Disguised as 'Web Pages'
- The Web is getting worse each year
- Re-de-centralisation Should Be Our Goal
- Put the users in charge, not governments and corporations in charge of users
- Gemini Links 19/11/2024: Rain Music, ClockworkPi DevTerm, and More
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Monday, November 18, 2024
- IRC logs for Monday, November 18, 2024
- Links 18/11/2024: Science News and War Escalations in Ukraine
- Links for the day
- Gemini Links 18/11/2024: Degrowth and OpenBSD Fatigue
- Links for the day
- Technology: rights or responsibilities? - Part VII
- By Dr. Andy Farnell
- BetaNews is Still 'Shitposting' About Trump and Porn (Two Analysers Say This 'Shitposting' Comes From LLMs)
- Probably some SEO garbage, prompted with words like "porn" and "trump" to stitch together other people's words
- Market Share of Vista 11 Said to be Going Down in Europe
- one plausible explanation is that gs.statcounter.com is actually misreporting the share of Vista 11, claiming that it's higher than it really is
- Fourth Estate or Missing Fourth Pillar
- "The term Fourth Estate or fourth power refers to the press and news media in explicit capacity of reporting the News" -Wikipedia on Fourth Estate
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Sunday, November 17, 2024
- IRC logs for Sunday, November 17, 2024
- LLMs Are Not a Form of Intelligence (They Never Will Be)
- Butterflies are smarter than "chatGPT"
- Business Software Alliance (BSA), Microsoft, and AstroTurfing Online (Also in the Trump Administration Groomed by BSA and Microsoft)
- Has Washington become openWashington? Where the emphasis is openwashing rather than Open(Source)Washington?
- Windows at 1%
- Quit throwing taxpayers' money at Microsoft, especially when it fails to fulfil basic needs and instead facilitates espionage by foreign and very hostile nations
- Links 17/11/2024: Pakistan Broke, Tyson 'Crashes' or Knocks Over Netflix
- Links for the day
- Gemini Links 17/11/2024: Nachtigall Planned, Exodus at Twitter
- Links for the day
- Links 17/11/2024: China's Diplomacy and Gazprom Setback
- Links for the day
- Sudan Has Reached a State of Android Domination (93% Market Share, All-Time High According to statCounter)
- countries at war buy fewer laptops?
- [Meme] Just Do It?
- 'FSF' Europe (Microsoft) and FSF
- Microsoft Front Groups Against the FSF, Home of GPL, GNU, and Free Software
- Much of the money (not all of it) comes from the criminals at Redmond
- Centralisation is Dooming the Web, RSS is One Workaround (But Not "Planets")
- At least Gemini Protocol rejects centralisation
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Saturday, November 16, 2024
- IRC logs for Saturday, November 16, 2024
- Links 17/11/2024: Wars, Bailouts, and Censorship
- Links for the day
- Gemini Links 17/11/2024: Changing Interests and HamsterCMS
- Links for the day