Threat News and Information Direct from the Experts
In light of the slew of persistent black hole spam runs, we have been tracking and investigating this threat that leads users to the black hole exploit. These attacks typically start with a spammed message containing a link to a compromised website that redirects a user’s browser to a malicious site hosting the said exploit. [...]
Post from: TrendLabs | Malware Blog – by Trend Micro
Protecting Customers From Black Hole Exploit Kit Spam Runs
Source: TrendLabs | Malware Blog – by Trend Micro | Sandra Cheng (Product Manager) and Jon Oliver (Senior Architecture Director)
Targeted attacks that are part of APT campaigns commonly use exploit documents in their social engineering ploy. These exploit documents serve as unassuming carriers of the attacker’s payload malware into the target’s computer. Since exploit documents are one of the first arrival vectors of APT malware, a little knowledge of the most exploited software and [...]
Post from: TrendLabs | Malware Blog – by Trend Micro
Snapshot of Exploit Documents for April 2012
Source: TrendLabs | Malware Blog – by Trend Micro | Ryan Flores (Senior Threat Researcher)
The Police Trojan has been targeting European users for about a year. It should come as no surprise that the latest incarnations of this obnoxious malware have started targeting the United States and Canada. In the latest batch of C&C servers we have analyzed, not only has the list of countries increased but also their [...]
Post from: TrendLabs | Malware Blog – by Trend Micro
Police Trojan Crosses the Atlantic, Now Targets USA and Canada
Source: TrendLabs | Malware Blog – by Trend Micro | David Sancho (Senior Threat Researcher)
While seven bulletins from Microsoft is generally a “light” release, bulletin MS12-034 surprisingly addresses a number of vulnerabilities found in the Windows operating system, MS Office, Silverlight, and .NET Framework. Of note, Microsoft mentions that this particular bulletin supersedes MS11-087, the bulletin meant to address the Win32k TrueType Font (TTF) vulnerability that was used by [...]
Post from: TrendLabs | Malware Blog – by Trend Micro
Microsoft Releases an Update Covering DUQU; Oracle and Adobe Vulnerabilities Patched, Too
Source: TrendLabs | Malware Blog – by Trend Micro | Dianne Lagrimas (Technical Communications)
Targeted Attack Uses Recent Adobe Flash Player Vulnerability (CVE-2012-0779) Reports of a targeted attack surfaced recently. One such attack arrives as an email message that trick users into executing a malicious attachment. The malicious attachment, as expected, is a file that exploits CVE-2012-0779, found in several versions of Adobe Flash Player. Exploitation results to a [...]
Post from: TrendLabs | Malware Blog – by Trend Micro
Recent Threats Highlight Vulnerabilities CVE-2012-0779 and CVE-2012-0507
Source: TrendLabs | Malware Blog – by Trend Micro | Roland Dela Paz (Threat Response Engineer)
When it comes to traveling, conventional wisdom dictates to pack light. While this usually refers to clothing, the same rule could very well be applied to devices. Lugging around numerous and bulky devices can effectively slow down any traveler. Enter the smartphone. Smartphones have become indispensable to the user on-the-go, offering mobility without sacrificing functionality. [...]
Post from: TrendLabs | Malware Blog – by Trend Micro
[INFOGRAPHIC] Getting Extra Mileage from Your Smartphone
Source: TrendLabs | Malware Blog – by Trend Micro | Abigail Pichel (Technical Communications)
We’ve reported previously that malicious apps were discovered in the official Android app store, which is now known as Google Play. While those reported apps were removed, more malicious apps have been seen in the official marketplace and appear to be still victimizing users. This is just one of the important reasons why we feel [...]
Post from: TrendLabs | Malware Blog – by Trend Micro
17 Bad Mobile Apps Still Up, 700,000+ Downloads So Far
Source: TrendLabs | Malware Blog – by Trend Micro | Bob Pan (Mobile Security Engineer)
Over the past month we’ve been investigating several high-volume spam runs that sent users to websites compromised with the Black Hole exploit kit. Some of the spam runs that were part of this investigation used the name of Facebook, and US Airways. Other spam runs involved LinkedIn, as well as USPS. The most recent campaign [...]
Post from: TrendLabs | Malware Blog – by Trend Micro
Persistent Black Hole Spam Runs Underway
Source: TrendLabs | Malware Blog – by Trend Micro | Jon Oliver (Software Architecture Director)
Mobile security researchers reported the emergence of an Android malware called Tigerbot. The said malware is actually an app called Spyera, which we detect as ANDROIDOS_TIGERBOT.EVL. The said app was found in third party Chinese app stores. We tried to analyze this app to check if it is indeed malicious. Below are our findings: Installation [...]
Post from: TrendLabs | Malware Blog – by Trend Micro
A Closer Look at ANDROIDOS_TIGERBOT.EVL
Source: TrendLabs | Malware Blog – by Trend Micro | Bob Pan (Mobile Security Engineer)
Today, Trend Micro is proud to announce that we are taking part in Facebook’s new security initiative to help protect its more than 900 million users against the wide variety of threats that target users of the world’s most popular social network. As part of this initiative: Facebook and Trend Micro will work together to [...]
Post from: TrendLabs | Malware Blog – by Trend Micro
Trend Micro Partners with Facebook: What It Means for Users
Source: TrendLabs | Malware Blog – by Trend Micro | Trend Micro