Archive for the ‘Uncategorized’ Category

You, Your Company, and Some Asshats in Eastern Europe

Monday, August 24th, 2009

We in security see slivers of this just about everyday. The Washington Post has an article titled Eastern European Cyber Criminals Target US Businesses. It's the same old (spear) phishing scheme...with a little trojan or browser based exploit thrown in. As easy as it was to infect and defraud residential ...

Conficker Eye Chart Test

Friday, April 3rd, 2009

Joe Stewart from Secureworks has come up with a nifty little eye chart test to determine if your computer is infected with Conficker. It's based on the fact that Conficker blocks infected hosts from visiting most security vendor websites. It's hosted over at the Conficker Working Group site: http://www.confickerworkinggroup.org/infection_test/cfeyechart.html.

Fake A/V Scamware Revisited

Monday, February 2nd, 2009

Following up on my post from yesterday, if you're interested in IPS or web filter URL pathings, a majority of the fake a/v paths have been consistent: /2009/download/trial/InstallAV* /download/av_2009glof.exe /download/av_360glof.exe /promo/download/trial/InstallAV* /spygd08/install.php Blocking these or blocking executable downloads from URLs including these paths won't stop them all but they will certainly help.

Palin Hack Advice

Wednesday, September 24th, 2008

No, I'm not giving her advice on how to be a political hack...she's getting lots of that already. You've probably heard by now how Sarah Palin's Yahoo! mail account was accessed by a 20 year old from Memphis. Basically, the attacker used the password reset feature, which prompts you to answer ...

Holey DNS!

Wednesday, July 16th, 2008

Been awhile since I posted, but that doesn't mean I've not been busy. Trends have been all over the map lately. It would take me weeks to catch the site up with what all has been going on since my last post, so I'll try to fill in pieces as ...

Raison d’etre

Wednesday, March 5th, 2008

Another great contribution by SearchSecurity.com: Misconfigured networks create huge security risks. The article says it all in terms of why I'm trying to do what I'm trying to do with EyeIS; my reason for being.