New Mac OS X email worm discovered

A newly discovered email worm dubbed OSX/Tored-A once again puts the spotlight on the potential worm-ability, and malware spreading tactics targeting Apple’s OS X. The worm propagates through emails harvested from infected hosts, and has a backdoor functionality allowing its author to perform the following actions if a successful remote connection is established – [...]

Patch Tuesday: Fix coming for PowerPoint zero-day

Exactly one month after malicious hackers started using rigged PowerPoint files to launch targeted attacks, Microsoft announced plans to ship a “critical” bulletin affecting its flagship presentation program. The PowerPoint update is the only bulletin scheduled for this month’s Patch Tuesday on May 12, 2009 .  It is rated “critical” (remote code execution) for [...]

Cybercriminals promoting malware-friendly search engines

The cybercriminals behind the ongoing blackhat search engine optimization attacks hijacking swine flu related queries in order to serve scareware, have re-introduced an old social engineering tactic – the use of fake and malware friendly search engines. Researchers from PandaLabs have recently uncovered a similar malicious search engine part of the blackhat SEO campaign, [...]

APWG Counter E-Crime Operations Summit 2009, Barcelona

I’m very much looking forward to seeing old & new friends in Barcelona next week at the annual APWG Counter E-Crime Operations Summit (CeCOS) 2009. This will the third instance of this event (I have been to all three), and I happy to report that that if the upcoming Barcelona conference is anything like the [...]

Add Another Layer of Security with Script Defender

Malware authors use a variety of underhanded ways of trying to infect your PC, notably using scripts including Visual Basic Scripting (.VBS), Java Script (.JS) and Windows Scripting (.WSH). AnalogX Script Defender is a free, simple way to get help thwarting them. Install the program, and then whenever one of those scripts tries to run [...]