Category: Security News

Make sure are calling the right person from now on!

Security researcher HD Moore’s scanned about 3% of addressable Internet space looking for high-end videoconferencing systems–the type of systems present in many corporate boardrooms and meeting spaces.

The scan, which took about two hours using a handful of computers, discovered a quarter of a million systems that understood the H.323 protocol, widely used by Internet protocol (IP) communication systems. Using that list, Moore, the chief security officer for vulnerability-management firm Rapid7, used a module for the popular Metasploit framework to “dial” each server, connect long enough to grab the public handshake packets, and then dropped the connection.

“Any machine that accepted a call was set to autoanswer,” Moore says. “It was fairly easy to figure out who was vulnerable, because if they weren’t vulnerable, then they would not have picked up the call.”

Beware the malware lurking on Android Market, don’t let 2012 become the year of the bad application for you.

Android’s openness is also its weakness when it comes to malware. But some simple user education can reduce the risk, says KPMG security expert Malcolm Marshall.

The massive adoption of smartphones and tablets in 2011 was accentuated by the Christmas period sales figures. According to mobile analytics firm Flurry, close to seven million new smartphones were activated globally on Christmas Day.

Source: Latest Articles in Security

The man pegged by Microsoft as the mastermind behind the Kelihos botnet, says he’s not guilty, according to a report.

“I was very surprised and shocked to read in the press that I was being accused of a grievous crime in connection with the Kelihos botnet.

I am absolutely not guilty, have never been involved in handling botnets or any other similar programs, and what is more have never made any profit from such activity. I want to highlight that I have no connection either to the activity of Kelihos or to the distribution of spam.

Unfortunately, the avalanche of publications in the press, referencing inaccurate and distorted information, has inadvertently inflicted a great deal of psychological damage on the companies for whom I have worked or am working, and also adversely affected their business reputation.”

Source: CNET News 

Bitdefender®, the creator of one of the world’s fastest and most effective lines of internationally certified internet security software, has released a free removal tool that detects and eliminates infections caused by the Duqu.A rootkit, a piece of malware that has been touted as being the successor of the notorious Stuxnet worm.

 

“Although the Duqu rootkit has been attributed to the Stuxnet gang, we believe the two e-threats are completely unrelated,” said Catalin Cosoi, Head of the Bitdefender Online Threats Lab at Bitdefender. “Stuxnet has been successfully reverse-engineered and its code was published online earlier this year.

 

Now, Stuxnet is serving as a source of inspiration for other cyber-criminal gangs. That code is serving as open source for the virus community, basically addingmillions of dollars in value to the virus community’s R&D.”

 

Facebook, together with researchers working with it,  released the names of five suspected ringleaders that’ why one of the most common sources of computer intrusions has stopped infecting new machines.

They published the names, aliases and photographs of a gang they accused of running a criminal enterprise known as Koobface that had primarily targeted Facebook after it cropped up.

Jan Droemer and Dirk Kollberg, German security researchers, said that servers that ran the Koobface operation stopped responding on Tuesday morning after they released an in-depth report via Kollberg’s employer, the UK anti-virus software maker Sophos.

Source: Markets.com

Mozilla is promoting a browser-based alternative to usernames and passwords for website logins.

Browser ID offers a decentralized system for user identification and authentication along the same lines as OpenID. To use BrowserID users first have to create an account with Mozilla. After this users would be able to use the technology to enter websites that support BrowserID simply by entering their email address.

The technology competes with OpenID, which is already used by prominent sites such as Twitter and Facebook. Mozilla is pushing BrowserID as a more secure and privacy-sensitive method than its competitors.

Source: The Register

You can now enjoy Bit Defenders first security product for the Android market – out of beta, which gives you protection for your Android phone. The new Bitdefender Mobile Security.

The application, which taps Bitdefender’s decade of award winning experience fighting electronic threats, offers a robust defense against invasion of privacy, malicious software and theft while saving battery power for its core purpose – communication.

Bitdefender – “We back this application with a reputation built on a decade of elite detection, acclaimed protection and performance, ease of use and unique user experience.”

The BETA of BitDefender Mobile Security comes in a free version and a subscription version costing $9.95 per year.

What can you expect from Bitdefender Mobile Security?

Free Version:

  • Malware scanner – Scans apps as you install them to prevent unpleasant surprise.
  • Application Audit – Helps you ensure that your apps don’t misbehave.
  • Remote Geolocation – Tracks the location of their device on Google Maps.

Paid Version: (includes all the features listed above)

  • Anti‐Theft – Remote Geolocation, Remote Lock Device, Remote Wipe Device, Message Device & Play Sound.
  • Web Security -Keeps you safe from malicious sites and their traps, stopping* you from the get‐go.

BitDefender Mobile Security is a powerful mobile security tool for Android devices which includes features such as on-demand scanning, on-install scanning, and much more. The open nature of Android OS has made the platform more prone to be infested with malware.

 

Win32.Worm.Coidung.BA worm Win32.Worm.Coidung.B disguised as Office Genuine Advantage, a program Microsoft used to validate copies of Microsoft Office was found by BitDefender Antivirus Makers research team.

“Microsoft retired Office Genuine Advantage in December 2010, but that hasn’t stopped the attackers from using it to ensnare victims a year later,” writes SecurityNewsDaily.

“The fraudulent OGA program, labeled ‘office_genuine.exe,’ is spreading via Yahoo Messenger, and once the attachment is downloaded, it opens a portal in people’s computers for remote attackers to control the machines or install more malicious software”

Source: Security News Daily
Source: Malware City

BitDefender 2012 Total Security Beta is now available for download.

The new version is sees to look very good and a lot of new features has been added.

Read more and download Bitdefender Total Security 2012 Beta

Updata plans to form a new firm, provisionally called Total Defense, Inc, once the deal closes in June.

Around 60,000 businesses worldwide rely on antivirus technologies from CA’s Internet Security Business Unit, the division of the firm that is being sold.

CA will retain its enterprise-focused identity and access management software business, a line of products that fits more closely with its core systems management market. Financial terms of the deal, announced late last week, were not disclosed.

The move following disappointing financial results from the system management firm, which has been a premier league player in the anti-malware market for 10 years without ever managing to knock any of the big four off their perch.

 

 

Source: The Register – Security