New variant of Sality

Another new variant of Sality was reported on Saturday. As was the case with previous versions of Sality (like Sailty.R), this one is also a polymorphic EPO virus which replaces the entry point code of the original file. The main virus body is attached at the end of original file and the section header is […]

Windows 7 most praised security features got compromised at Pwn2Own

The most talked about hacking contest Pwn2Own ended with bad news for Microsoft. The hackers were finally able to make their way and disable the Windows 7 data execution prevention (DEP) and address space layout randomization (ASLR). These two were the most highly praised security features of Windows 7. Security researchers Peter Vreugdenhil from Netherlands […]

Infection campaign using Twitter profile

Recently I was going through the twitter web site for just checking on tweets on Ricky Martin news. Of course with a thought that it being a hot topic of yesterday there can be someone using this news as a means to attract a potential victim to their web site. I was right as I […]

No efforts are seen to be made to catch the cyber criminals in India.

Being in computer security industry for years I am seeing lot of cyber criminals activities day in and out. These activities are increasing exponentially in numbers. A growing threat by international cyber criminal organization has accelerated this situation. Daily the threats targeting Indian citizens, online commerce, enterprise networks and financial systems are increasing. Nothing prominently […]

A private message from Windows Live

There seems to be a problem with Windows Live Messenger being abused to send spam messages, sometimes called SPIM. I have been noticing recently is that my hotmail mail box contains 1 mail from “Windows Live” having subject line as “A private message from [Your friend] on Windows Live” Usually these kind of attack are […]

Panic Button on Facebook – will it really help?

Recent conviction of Peter Chapman for the murder of 17-year-old Ashleigh Hall where use of Facebook was prominent to lure the victim. Many such incidents which keep on happening every few weeks where there is use of technology like social networking websites makes us think as to something should be done to stop this. This […]

Microsoft Security Bulletin released for the month of March

Microsoft has released its security bulletin summary for March 2010. This month Microsoft has released two bulletins, both of them are rated Important. Total eight vulnerabilities have been addressed in this month. The first bulletin addresses a vulnerability of Windows Movie Maker available with Windows XP, Windows Vista and Windows 7. This security update is […]

Indian Income Tax refund phishing scam emails now mentions tax refunds in US Dollars.

Yesterday a friend of mine forwarded me a mail he thought to be a phishing email. The email was indeed a phishing email. It was a Indian Income Tax phishing scam that is still going on as the phishers are still actively sending emails to millions of email addresses supposedly belonging to Indians. I had […]

Internet Explorer vulnerability could allow Remote Code Execution

If you are using an older version of Internet Explorer (IE 6 or IE 7), you have a strong reason to upgrade to Internet Explorer 8. Attackers are exploiting a security bug in the older versions of Internet Explorer that allows them to remotely execute a malicious code. The vulnerability exists due to an invalid […]

FIFA World Cup 2010 Lottery Scam Mail

The online scammers have attempted a new trick shot. They are trying to boost their chances of a scam by capitalizing on the popularity of FIFA Football World Cup 2010 that will be held in South Africa from June 11, 2010 onwards. Today I received an email with the words GOOD NEWS!!! in the Subject […]