Clipboards hijacked in web attack

Tuesday, August 19th, 2008

Computer security firms are warning about an attack that hijacks the clipboard where copied text is stored.The attack puts a hard-to-delete weblink into the clipboard that, if followed, leads people to a website selling fake security software.The code that inserts the link has been found in flash-based adverts seen on ...

Black Hat 2008: Dan Kaminsky

Saturday, August 16th, 2008

http://www.youtube.com/watch?v=R-SSVxsH7vw Source: http://www.youtube.com/watch?v=R-SSVxsH7vw

Fake MSNBC news alerts used in latest malicious spam campaign

Wednesday, August 13th, 2008

IT security and control firm Sophos is reminding computer users to exercise diligence when checking their email in the wake of a new widespread wave of dangerous spam messages that claim to be breaking news alerts from MSNBC. Samples intercepted at SophosLabs, Sophos's global network of virus, spyware and spam ...

New Gpcode (encryption) ransomware speading via botnet

Wednesday, August 13th, 2008

There are confirmed reports on a new version of the Gpcode ransomware being spread via a botnet.According to Vitaly Kamluk of Kaspersky Lab (my employer), the Trojan encrypts files on an infected machine (AES-256) and leaves a text file named crypted.txt with a ransom note demanding $10 to decrypt the ...

Keyczar – Google’s crypto for non-cryptographers

Tuesday, August 12th, 2008

Google has released Keyczar, billed as a "Toolkit for safe and simple cryptography", under an Apache 2.0 open source licence. Keyczar has been developed by members of the Google security team and aims to make cryptography more accessible to application developers.Keyczar's design goals were to manage the complexity of cryptography ...