Beware! Malicious Europcar invoice emails spread Trojan horse attack
SophosLabs has intercepted many emails today, attempting to infect Windows computers via an email purporting to be an invoice from a car rental company. Find out more about what to watch out for.
View ArticleTechnical paper: Deeper inside the Blackhole exploit kit
For those interested in exploit kits and how they work, Gabor Szappanos has published the second (and concluding) part of his technical paper looking at the Blackhole kit. Recommended reading for all...
View ArticleHow do you compare to Steve Wozniak? Take our survey and (maybe) win a new...
Last year, Apple co-founder Steve Wozniak showed off his travel backpack to Gizmodo readers. He needed a whopping seven containers to get through airport security! Question is how do the rest of us...
View ArticleRidiculously redacted interpretation of FISA snooping law released
US privacy organization EFF invites you to click on thumbnails of the summaries it managed to pry out of the government, but let's save your finger muscles the workout with this summaries summary:...
View Article"Aaron's Law" would partly de-fang Computer Fraud and Abuse Act
Rep. Zoe Lofgren on Tuesday night proposed legislation that would dial back the ferocity of the charges that were used against internet activist Aaron Swartz, who died last week.
View ArticleYet ANOTHER Java zero-day claimed - but this time you're laughing, right?
Irrepressible cybercrime investigator and reporter Brian Krebs has written about yet another Java zero-day exploit. This one, it seems, targets an exploitable vulnerability even in Oracle's most recent...
View ArticleGoogle has been accused of many things, but KILLING A DONKEY?
The Marketing Monster of Mountain View has felt the wrath of the US Federal Trade Commission on several occasions. But callously running down an innocent pack animal in rural Bostwana? Surely that's...
View ArticleSecurity team fails to check logs, lets man goof off by outsourcing own job...
A Naked Security reader with an eye for amusement yesterday pointed out a little beauty of a security story: man outources own job, goofs off reading LOLcats all day. Thing is, do you believe it? Or is...
View ArticleHow Twitter users can fake a verified account - and how you can tell the...
Learn a simple way to fool other Twitter users into thinking your account is verified.. And discover how you can tell the difference between a fake verified Twitter account and the real deal.
View ArticleMalware attack! "You have received a secure message"
SophosLabs is intercepting a widespread malware attack, spammed out via email, posing as a secure message.
View ArticleThe man who steals all the phones in Las Vegas - pinpointed precisely
Just how accurate do you expect the location data on your mobile phone to be, and what could go wrong if it were out by miles? Paul Ducklin finds out with a discursive journey into Wayne Dobson's...
View ArticleWar of words continues over Cisco Linksys router access exploit
Stories of a vulnerability in Cisco Linksys consumer routers have been circulating in the past week. The stories have now turned into a low-key war of words.
View ArticleOKCupid app, Crazy Blind Date, peeks into your privates
A bug in OKCupid's recently released Crazy Blind Date application allowed complete strangers to paw at users' data.
View ArticlePhishing attack attempts to steal Google passwords via Red Cross website
"Please log into Google Docs, and then you'll be able to read my message." "I've provided a handy link..."
View ArticleIndian two-factor authentication fraudsters busted by Delhi cops
Two more alleged cybercrooks are cooling their heels in custody this weekend. The modern-day bank robbers are said to have run a scam that allowed them to work around the two-factor authentication...
View ArticleJava hacker boasts of finding two more unpatched holes
Serial Java fault-finder Adam Gowdiak has embarrassed Oracle yet again. The Polish researcher is publicly bragging about two brand-new vulnerabilities he's found even since Oracle's most recent patch...
View ArticleFirefox update 18 gets an update, but no security problems this time
Firefox's version 18 gets an update to 18.0.1. The new point release mops up three bugs, all of them no doubt annoying to those affected, but none of them security related.
View ArticlePolish CERT acts against Virut malware with domain takedowns
CERT Polska has announced takedown action against web properties associated with a huge botnet known as Virut. Paul Ducklin takes a look at takedowns, and why they are important even if their...
View ArticleMonday review - the hot 31 stories of the week
Here you go. All the stories we wrote in the past seven days, in case you missed anything (or just want to read them again).
View ArticleBoutique babycare website hack - not just the Big Guys at risk
Even if you run a tiny website and don't have much to hide, you (and your customers) are nevertheless at risk from criminals. For example, @JokerCracker, who openly gives his reason for hacking as,...
View Article