New variant of Zeus banking trojan concealed in JPG images

Tuesday, February 18th, 2014

A new variant of the nefarious Zeus banking trojan – dubbed ZeusVM – is concealed in JPG image files, according to the collaborative findings of Jerome Segura, senior security researcher with Malwarebytes, and French security researcher Xylitol. The act is known as steganography – concealing messages or images in other messages or images. In ...

New IE Zero-Day Found in Watering Hole Attack

Thursday, February 13th, 2014

FireEye Labs has identified a new Internet Explorer (IE) zero-day exploit hosted on a breached website based in the U.S. It’s a brand new zero-day that targets IE 10 users visiting the compromised website–a classic drive-by download attack. Upon successful exploitation, this zero-day attack will download a XOR encoded payload ...

Java-based malware hits Windows, Mac and Linux

Wednesday, January 29th, 2014

Kaspersky Lab researchers have recently analysed a piece of malware that works well on all three of the most popular computer operating systems - the only thing that it needs to compromise targeted computers is for them to run a flawed version of Java. The Trojan is written wholly in Java, and exploits ...

New Windows malware tries to infect Android devices connected to PCs

Friday, January 24th, 2014

A new computer Trojan program attempts to install mobile banking malware on Android devices when they're connected to infected PCs, according to researchers from Symantec. This method of targeting Android devices is unusual, since mobile attackers prefer social engineering and fake apps hosted on third-party app stores to distribute Android malware. "We've ...

New DDoS malware targets Linux and Windows systems

Wednesday, December 18th, 2013

Attackers are compromising Linux and Windows systems to install a new malware program designed for launching distributed denial-of-service (DDoS) attacks, according to researchers from the Polish Computer Emergency Response Team (CERT Polska). The malware was found by the Polish CERT at the beginning of December and the Linux version is being ...