Browse by Tags

All Tags » Security » Vulnerabilities » viruses and exploits » safety and privacy on the Internet (RSS)

Hold fire on Fuse Kit....

Moses Gunesch, the author of Fuse Kit, has posted a comment to my blog here: http://msmvps.com/blogs/spywaresucks/archive/2008/08/17/1644872.aspx#1644983 I may have to eat an awful lot of humble-pie if I have misunderstood the capabilities and features...

ALERT: Firefox with NoScript does NOT ALWAYS protect from SWF clipboard hijacks

Topic subjected edited to add the word "always". I stand by my statement that there are users out there who believe that "NoScript" will protect them from incidents like the clipboard hijack, even when they have disabled "Forbid...

ALERT: malvertizement at newsweek.com (hosted by washingtonpost.com)

Edit: Please review this article re Fuse: http://msmvps.com/blogs/spywaresucks/archive/2008/08/19/1644991.aspx Once again, it is a malvertizement created using Fuse Kit. Again, there are signs that the malvertizement came from the now defunct trackstarmedia...

ALERT: malvertizement featuring cardstore.com

Edited to fix typos - changing cardshop to cardstore - (it had been a *long* day) I finally got a sample of the malicious advertisement featuring cardstore.com: Interesting points to bear in mind about this incident are: The malvertizement was received...

ALERT: malvertizement from trackstarmedia.com (domain suspended)

Edit: please review this URL re Fuse: http://msmvps.com/blogs/spywaresucks/archive/2008/08/19/1644991.aspx I have just received word that a malvertizement featuring cardstore.com has been discovered. The distributor of the malvertizement is, according...

Microsoft Security Intelligence Report (July through December 2007) - Key Findings Summary (Australia, Canada, Germany, Japan, Netherlands and Norway)

Downloadable here: http://www.microsoft.com/downloads/details.aspx?familyid=671355c2-4002-4671-8619-95c96c8a897f&displaylang=en&tm The worldwide average was malware removal from 1 out of every 123 Windows-based computers in the second half of...

ALERT: Malvertizements at disney.fr

These criminals, whoever they are, have absolutely no shame. I thought that they were the scum of the earth when they impersonated Oxfam; now they are getting their malvertizements onto popular chidren's sites. As reported by Kimberley - the malvertizements...

ALERT: Adobe Flash Player SWF File Unspecified Remote Code Execution Vulnerability

Affected versions are 9.0.124.0 and 9.0.115.0. The best analysis that I've seen so far is at SecurityFocus: http://www.securityfocus.com/bid/29386/info The frightening thing about this alert is that the vulnerability is being actively exploited, with...

A new look dottunes malvertizement

A new style Dot Tunes advertisement: The adopstools results are here: http://www.adopstools.net/index.asp?page=quicklink&id=r60Siyiw02bZgpaa When the SWF is displayed on a system it hits the following URLs: traveltray.com/crossdomain.xml and traveltray...

I am NOT associated with bucksbill.com

Ok, there are a lot of people out there who are upset at being overcharged and defrauded by bucksbill.com. Just check out the comments here and here . Unfortunately, people are also emailing me directly because they (mistakenly) believe that I and/or...

ALERT: Malvertizement at en.f1-live.com?

A comment has been made to this blog warnin that http://en.f1-live.com/f1/en/index.shtml has been serving malvertizements during the the past week or so. We're investigating. If anybody sees anything, please let me know.

ALERT: malvertizement at boston.com?

I received this alert via email: " My girlfriend was surfing boston.com last night and she landed on some nasty code that redirected her to that classic alert bos in the lower left hand corner of the screen. This time is was for XPShield which is...

Press Release: Washington Attorney General settles case with man accused of using pop-ups to hawk software

SEATTLE – A 21-year-old Scottsdale, Ariz., man accused of coercing consumers to buy software that actually turned their computers into spamming machines agreed to a settlement that substantially restricts how he markets software in the future, the Washington...

Photobucket.com - an update

I am pleased to advise that one of the malvertizements that was appearing at photobucket.com, being the Tokyo Drift malvertizement being distrubted via adbureau.net, has been removed from circulation. As far as I know, the other malvertizements, hosted...

Photobucket are not cleaning up their act

Photobucket has been mentioned several times on this blog because of malvertizements appearing on the site. The most recent outbreak is proving to be problematic, to say the least. Photobucket have been advised several times that there are malvertizements...

Malvertizements on mininova.org

Several comments have been posted to my blog recently about a malvertizement problem at mininova.org: http://msmvps.com/blogs/spywaresucks/archive/2008/03/23/1550824.aspx#1601871 http://msmvps.com/blogs/spywaresucks/archive/2008/03/23/1550824.aspx#1602159...

Hooray for teamwork - the malvertizements at photobucket.com have been identified

Once again, communication and cooperation between anti-malvertizement activists around the world has resulted in success. We have found the malicious malvertizements on photobucket.com - Kimberley has the details . The incident has been reported to Photobucket...

ALERT: Firefox 2 Vietnamese Language Pack infected by malware

Thanks to Susan for the heads up... Cite: http://blog.mozilla.com/security/2008/05/07/compromised-file-in-vietnamese-language-pack-for-firefox-2/ Cite: https://bugzilla.mozilla.org/show_bug.cgi?id=432406 Anybody who downloaded and installed the Vietnamese...
More Posts Next page »