|
|

|
|
spamNEWS | botnet | phising | virus | spam | mallware
| Damballa said that Malware Utilize P2P Communications to Escape Detection |
|
|
|
|
Written by Administrator
|
|
Tuesday, 18 June 2013 11:00 |
Many of the Internet's most hazardous malware threats are now routinely using peer-to-peer (P2P) command and control in an attempt to escape the detection and shut down that has impacted many conventional botnets, as per security vendor Damballa.
The P2P method has been there for many years but the company (Damballa) had observed a fivefold increase in malware samples using this behavior in the past one year, particularly the hazardous threats like the infamous Zeus v3, ZeroAccess, and the TDL4/TDSS root kit.
The use of P2P in advanced malware has been masquerading for some time, but we have never really witnessed it take the grasp that we have began to see now, noted Stephen Newman, Vice President of products at Damballa, as published by computerworld.com on June 5, 2013. The cause why this is occurring presently has to do with cyber crooks wish for resiliency in the wake of shutdown attempts that can disturb centralized C&C infrastructure, he said.
Botnet herders stand to lose control to thousands or maybe millions of compromised machines if control servers owned by them are brought down, so they are looking ahead for decentralized P2P communications, where botnet patrons can transmit commands to each other, as a resilience method with other method similar to the employment of DGAs or domain generation algorithms (DGAs), he said.
Other advantage for cybercriminals is that malicious P2P traffic is difficult to trace and hold at the network stage by employing domestic methods that depends on lists of recognized IP (internet Protocol) addresses and hosts linked with C&C servers.
Rick Holland, a Senior Analyst, at Cambridge, Mass-based Forrester Researcher commenting on the latest finding says that increased usage of P2P technique is an instance of traditional arms race between cybercriminals and defenders, according to news published by searchnetworking.techtarget.com on June 12, 2013.
Attackers want to keep the availability of their botnet just like enterprises want to preserve availability of their corporate systems, Holland claims. As security improves, and finding and blocking of usual botnet [command & control] happens more frequently, the cybercriminals usually adopt techniques that preserve the availability and resiliency of their botnet, he further added. |
|
Read more... - Damballa said that M...
|
|
| Two Romanian Phishers Imprisoned by US Federal Courts |
|
|
|
|
Written by Administrator
|
|
Tuesday, 18 June 2013 11:00 |
Bogdan Boceanu, 30 and Andrei Bolovan 29 are two Romanians who have been imprisoned for 80, and 27 months respectively, for their involvement in a huge phishing scam that hit users of eBay and many financial companies, reported softpedia.com on June 12, 2013.
With 17 Romanian citizens the two fraudsters were charged by US federal authorities of launching phishing schemes that hit the users of eBay, Wells Fargo, PayPal, US Bank, People's Bank, LaSalle Bank Regions Bank, Bank of America Citibank and others.
The fraudsters sent out spam emails in an attempt to con the consumers of these organizations to visit phony websites, where they were guided to submit personal and financial details like credit card numbers, PINs, expiration dates, CVV codes and social security numbers (SSNs).
US authorities started their inquiry in 2005 summer after a local of Madison, Connecticut, called the FBI (Federal Bureau of Investigation) in New Haven after receiving a suspicious email pretending to be from People's Bank.
The email said that the users' online banking access profile had been locked and advised the user to click on a link to a webpage where the user could submit details to "unlock" his or her profile. The webpage seems to begin from People's Bank, but, as the investigation disclosed, was actually hosted on an infected computer in Minnesota. Any personal recognizing and financial details given by the individual would be sent by email to people in Romania, or to a "collector" account, which was an email account used to receive and gather the details receiver via phishing.
The federal investigation initiated by FBI about seven years ago found that Boceanu had in excess of 12,000 credit and debit card numbers stored in the accounts from 2004-2007. Bolovan participated in the scandal from 2004 to 2007. The two criminals were extradited to the US in 2010.
On December 5, 2012, Bolovan plead guilty to one count of conspiracy in association with access device. A jury, on December 11, 2012, recognized Boceanu guilty of the same charge, together with one more count of conspiring to carry out bank fraud. |
|
Read more... - Two Romanian Phisher...
|
| Cybercriminals Hack Free Beacon Website Hampering the NSA Data Leak Story |
|
|
|
|
Written by Administrator
|
|
Monday, 17 June 2013 15:00 |
Nowadays, most media organizations are in hurry to publish stories linked to the latest NSA (National security agency) data leak incident. Cybercriminals have begun to exploiting it for malicious operations with the prediction of its significance, as per the security experts at security firm Invincea, which first recognized the Free Beacon Breach. |
|
Read more... - Cybercriminals Hack ...
|
| ZBOT’s New Trick –Self-Propagation, Detects Trend Micro |
|
|
|
|
Written by Administrator
|
|
Monday, 17 June 2013 15:00 |
Trend Micro the security company says that one fresh ZBOT variant has been observed as spreading of its own. This is quite unlike of the malware that characteristically proliferates via drive-by downloads, a process which happens when website-visitors access hijacked sites that actually harbor attack toolkits delivering the malware. |
|
Read more... - ZBOT’s New Trick â...
|
| Botnet Exploits Yet-to-be Patched Plesk Flaw |
|
|
|
|
Written by Administrator
|
|
Saturday, 15 June 2013 05:00 |
According to security researchers, one new botnet is capitalizing on certain security flaw affecting Plesk, the regulatory software for hosting, prompting experts to increasingly suggest users for downloading the product's latest version, published threatpost.com dated June 10, 2013. |
|
Read more... - Botnet Exploits Yet-...
|
|
|
|
|
<< Start < Prev 1 2 3 4 5 6 7 8 9 10 Next > End >>
|
|
Page 1 of 1027 |
|
|
|
Who's online |
|
We have 33 guests online |
|
News Flash |
Spam is a growing pain. How are you combating spam?
Submit your favorite spam fighting links to us
Â
Â
 |
|
|
|
|