An Estonian company called Rove Digital was busted last November. Why? Because it was a front for the ad-fraud DNSChanger botnet. And ever since November, the USAs FBI has been responsible for the su...
This:From the New York Times:"…an element of the program accidentally became public in the summer of 2010 because of a programming error that allowed it to escape Irans Natanz plant and s...
Android malware news: a year after Zsones discovery, weve come across a new variant. Or at least a sample that causes us to ask, is a new variant under development? This new Zsone uses a native compo...
There are many ongoing discussions about "Flame" right now — an espionage tool, information was disclosed about it on Monday.There are plenty of questions from customers, and also from ...
Flame (aka Flame aka Skywiper) is a massive, complex piece of malware, used for information gathering and espionage.The malware is most likely created by a western intelligence agency or military. It...
Weve come across a malicious Olympic themed PDF earlier this morning while data mining our back end for documents which drop executables (those are never a good thing, unsurprisingly).The PDF exploit...
Syria has been the center of much international attention lately. Theres unrest in the country and the authoritarian government is using brutal tactics against dissidents. These tactics include using...
Somehow these SQL Injections targeting ASP/ASP.net sites just never seem to abate.First there was Lizamoon… surprising us with the millions of websites that got injected.Then came a few others...
The Combating Terrorism Center at West Point (USA) has released a study called "Letters from Abbottabad: Bin Ladin Sidelined?". The study provides analysis of 17 declassified documents captur...
Jarno Niemela, a Senior Researcher here at F-Secure Labs, will be taking part in a Black Hat Webcast on Thursday, May 17, 2012.The subject is "Making Life Difficult for Malware" and will focu...
Ran across quite an interesting infection today. I visited a site that prompted me with a security warning about a "Microsoft" application from an unknown publisher. The site is actually pret...
UK Courts recently ordered Internet Service Providers to block access to The Pirate Bay. Yesterday, Virgin Media was attacked by some that claim associations to the Anonymous collective.Well, The Pir...
Yesterday, I suggested that nonymous speech is vastly superior to anonymous DDoS attacks and other forms of censorship.Today, I offer this "anti-piracy" PSA (circa 1988) as evidence to suppor...
Its time to publicly release our latest Mobile Threat Report, covering the 1st quarter of 2012.Our Q4 2011 report was quite popular and this new one for Q1 is even better. More content (and pages) fo...
The Documentary, a BBC World Service program (or programme) recently aired a 3-part series called Danger In The Download.Its definitely worth a listen. All of the episodes are now available online.Ep...
On Monday, we released our Mobile Threat Report for Q1, and in that report we mention theres a growing number of mobile trojans that "deliver on their promises". What do we mean by that?Well,...
Earlier today, while doing our daily data mining, we came across a new variant of ZeuS 2.x. It includes a new backdoor command called: win_unlock. Very interesting, turns out this slightly modified Z...
Mikko was a featured speaker last week at AusCERT2012.You can listen to (or download) audio of his presentation from Risky Business.And then once you have the audio, you can view Mikkos slides via Sl...
Mikko took part in Googles Zeitgeist 2012 earlier this week in London.Wired magazine editor David Rowans Q&A: Beyond Today – Mikko Hypponen. On 24/05/12 At 04:03 PM
So how bad was last months Mac Flashback outbreak and who suffered the most? Our guess: it was bad, and university IT help desks. And it looks like our guess might not be far off the mark.Oxford Univ...
Regular readers of Krebs on Security will know that small and medium sized businesses and organizations have been the target of cybercrime gangs for several years now. What you might not know is whic...
Filmmakers Charles and Walker Koppelman are working on a new movie project about cybercrime. Weve met with Charles and the project seems really interesting.The project is still underway, and now the ...
Rogue AVs have not really taken much attention recently probably because they are no longer boldly screaming in everyones faces as compared to the time when the most trending topics produce massive a...
Computer security is confusing. Its not a simple topic to write about. Mass media often gets the details wrong.However, we rarely see as confused news articles as we have with Police Themed Ransomwar...
An SMS-sending Trojan, which targets mobile devices with Java midlet installed, has been circulating in Malaysia. Some victims reported that they have been receiving an SMS message which appears to b...
Last week, we wrote about a ransom trojan called Trojan:W32/Ransomcrypt which encrypts documents, images, videos, et cetera and holds the files hostage for 50.Ransomcrypt encrypts files using Tiny E...
Reports of new Mac malware variants exploiting CVE-2012-0507 surfaced last week. The Java vulnerability is the same one used by Flashback to infect more than 600 thousand Macs.The first new threat wa...
We are receiving reports of a ransom trojan, its been circulating during the last two days.When first run on the system, the ransomware will iterate all folders on the system. Every document, image, ...
We have created a free tool that automates the detection and removal of the widespread Flashback Mac OS X malware.How to use the tools: 1) Download FlashbackRemoval.zip to the Mac machine you want to...
You are no longer following . Undo?