Suspicious Rootkit Lurks in EIS Software

Trend Micro researchers received a sample of an enterprise information security (EIS) program component file that exhibits easily abused rootkit capabilities. Enterprise information security (EIS) systems are used by companies to monitor activities within a network. This is done to make sure that security processes are followed, and that all activities done within the [...]

Microsoft’s Live launches malware detection service for webmasters

Playing catch-up with Google’s Safe Browsing diagnostic, Google’s warnings for potentially hackable sites, and Yahoo’s SearchScan introduced through their partnership with McAfee, Microsoft’s Live Search has updated their Webmaster tools to offer detection for embedded malware. Moreover, as a late entrant they simply had to differentiate, and they did it in the form of [...]

Symantec puts value of underground transactions at $275M

Those of you looking for statistics to justify your security budgets for next year, look no further: Symantec has released their view of the underground economy as it has evolved over the past year.

The qualitative information in the report is amusing, but the quantitative information has far more value to anyone trying to [...]

Google: no evidence of a Gmail vulnerability

Following the speculations on the resurrection of what’s thought to be an already fixed Gmail flaw which could assist in domain name hijackings, yesterday Google commented that their investigation indicated that the recent domain hijacks should be attributed to a phishing campaign, rather than to a Gmail flaw. The phishers was silently adding filter rules [...]

New worm exploiting MS08-067 flaw spotted in the wild

Microsoft’s Security Response Center and McAfee are warning on increased network scanning activity during the last couple of days courtesy of the very latest W32/Conficker.worm exploiting the already patched MS08-067 vulnerability. What’s particularly interesting in the latest wave of copycat worms is that W32/Conficker.worm is patching the infected host in order to ensure that competing [...]