Eye on Security: Microsoft Windows Emergency Patch, Botnets Grab Data, Malware Scam Analysis
- Dr. Roy Schestowitz
- 2010-08-06 12:12:28 UTC
- Modified: 2010-08-06 12:12:28 UTC
Summary: An update on problems Windows users may be experiencing
●
Microsoft rushes out emergency fix for critical Windows bug (
more about this emergency)
Microsoft on Monday rushed out an emergency patch for a critical vulnerability that criminals are exploiting to install malware on all supported versions of the Windows operating system.
●
Botnet with 60GB of stolen data cracked wide open
Most botnet command-and-control channels run on compromised webservers or web-hosting services designed for criminals, making it possible to dismantle the network by taking down the central server. Mumba, by contrast, makes use of fast-flux technology, in which the operations are carried out on thousands of compromised PCs. That allows the IP address and host machine to change every few minutes, a measure that frequently foils takedown attempts by researchers and law enforcement.
●
Anatomy Of An Attempted Malware Scam
The display media segment is the newest target of malvertising, the latest trend in online criminal methodology. The problem has escalated in recent months and despite many suppliers' best efforts, it continues to grow. The culprits behind many of these attacks are based in foreign states leaving little course to take action. While the best defense against malvertising is to prevent it from happening in the first place, this has proven to be a challenge for even the most astute publishers, networks and the like.
We were recently the targets of one such attempt, and while it certainly wasn't the first "fake agency" we've been besieged by (and that we've successfully stopped), it is one of the most organized efforts we've encountered so far. Below we've outlined the approach that was used and the findings of our investigation as an FYI to others who may be on the target list.
Recent Techrights' Posts
- Open Source Initiative (OSI) Privacy Fiasco in Detail: The OSI Does Not Respect Anybody's Privacy
- The surveillance mafia that bans dissent or key people (even co-founders) with dissenting views
-
- R.T.O. at IBM in Texas and Atlanta (State of Georgia) Expected as "Soft Layoffs" Catalyst This Coming Year
- It also sounds like more IBM layoffs are in the making
- Law Firms Can Also Lose Their Licence for Clearly Misusing It
- The bottom line is, never made the false assumption that because you can pile up SLAPPs in a docket you will not suffer from bad reputation or even get disbarred
- Link between institutional abuse, Swiss jurists, Debianism and FSFE
- Reprinted with permission from Daniel Pocock
- LLM Slop Piggybacking News About GNU/Linux and Distorting It
- new examples
- Links 31/03/2025: Press and Democracy Under Further Attacks in the US, Attitudes Towards Slop Sour
- Links for the day
- Gemini Links 31/03/2025: More X-Filesposting and Dreaming in Emacs
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Sunday, March 30, 2025
- IRC logs for Sunday, March 30, 2025
- Links 30/03/2025: Security Breaches, Crackdowns on Dissent/Rival Politicians
- Links for the day
- Gemini Links 30/03/2025: London Soundtrack Festival, Superbloom, gmiCAPTCHA
- Links for the day
- Phasing Out Vista 10 in Nations Where ~90% of Windows Users Still Rely on It
- Recipe for another Microsoft disaster
- The Cost of Pursuing the Much-Needed Reform/Shield Against Strategic Lawsuits Against Public Participation (SLAPPs)
- “It is curious that physical courage should be so common in the world and moral courage so rare.”
- The LLM Bubble is About to Implode, Gimmicks and Financial Shell Games Cannot Prevent That, Only Delay It
- To inflate the bubble MElon is now doing the classic trick of buying from oneself for a fictional value
- Links 30/03/2025: Contagious Ideas, Signal Leak, and Squashing Lousy Patents
- Links for the day
- Links 30/03/2025: "Quantum Randomness" and "F-1 Visa Revoked" in US
- Links for the day
- Gemini Links 30/03/2025: US as a Threat, Returning to the WWW
- Links for the day
- Links 30/03/2025: Judge Blocks Dismantling Of VOA, Turkey Arrested Many Journalists
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Saturday, March 29, 2025
- IRC logs for Saturday, March 29, 2025
- Judges Would Never Rule for Men Who Strangle Women or Against Women Who Merely Wrote Articles About Abuse They Had Received From Men
- We don't intend to do "trial by media", so we won't be disclosing claims and defences until it's over
- Windows is an Unnatural Disaster, It is Also Avoidable
- there's a wide window of opportunity opening
- Gemini Links 29/03/2025: Less YouTube and More Station
- Links for the day
- In Some Countries, Such as Thailand, Firefox is Already Measured at Less Than 2% (One Day Firefox Will Get Blocked, Not Only Lack Support)
- Web consolidation around Chrom-isms will doom the Web as we know it
- Killing the News With Spam and Slop Benefits Those Whose Desire is an Uninformed Population
- adoption of Free software depends indirectly on political activities/activism
- Links 29/03/2025: Trademarks Battles, Fires Destroy More Than 3,000 South Korean Homes
- Links for the day
- Open Source Initiative (OSI) Privacy Fiasco in Detail: An Introduction
- Perhaps tomorrow or perhaps next week we'll share more information about what happened and what was reported to the California Privacy Protection Agency
- Links 29/03/2025: More Crackdowns on Science, "Hey Hi" Slopping is Flopping
- Links for the day
- IBM's BS (Bait, Switch) Regarding Ways to Stay Onboard
- PIPs, RTOs, and forced relocations are just an illusion of choice (or ability to recover)
- Costa Rica Almost Bankrupt Because of Microsoft
- the incidents in Costa Rica are Windows incidents
- Gemini Links 29/03/2025: Art of Looking, Wireguard, EMacs
- Links for the day
- Links 29/03/2025: Attacks on Social Security and War Updates
- Links for the day
- Banned evidence: Ars Technica forums censored email predicting DebConf23 death, Abraham Raji & Debian cover-up
- Reprinted with permission from Daniel Pocock
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Friday, March 28, 2025
- IRC logs for Friday, March 28, 2025