Welcome Guest. | Log In| Register | Membership Benefits
Dark Reading's SophosLabs Weblog

70% Rise In Malware: Time To Block Facebook?


Posted by Graham Cluley @ 11:19 AM ET | Feb 1, 2010

New research published by Sophos today reveals a 70 percent increase in the number of companies reporting spam and malware attacks via social networks.

Continue reading "70% Rise In Malware: Time To Block Facebook?..."

Comment on this blog entry



TechCrunch Hacked Again: Foul-Mouth Hacker Embarrasses Top Blog


Posted by Graham Cluley @ 02:51 AM ET | Jan 27, 2010

Technology blog TechCrunch has been hacked for the second time in 24 hours.

Continue reading "TechCrunch Hacked Again: Foul-Mouth Hacker Embarrasses Top Blog..."

Comment on this blog entry



TechCrunch Hacked


Posted by Graham Cluley @ 04:10 AM ET | Jan 26, 2010

The immensely popular blog TechCrunch has been compromised by hackers who posted an offensive message on its home page.

Continue reading "TechCrunch Hacked..."

Comment on this blog entry



Johnny Depp Death Crash Video Launches Malware Attack


Posted by Graham Cluley @ 06:40 AM ET | Jan 25, 2010

An Internet rumor that Hollywood superstar Johnny Depp has died in a French car crash is being taken advantage of by cybercriminals, who have planted malware posing as video footage of the accident.

Continue reading "Johnny Depp Death Crash Video Launches Malware Attack..."

Comment on this blog entry



Emergency Microsoft Internet Explorer Patch Arrives Thursday


Posted by Graham Cluley @ 01:28 PM ET | Jan 20, 2010

The IT world sighed with relief at the news that Microsoft is releasing an out-of-band patch for Internet Explorer on Thursday, Jan. 21.

Continue reading "Emergency Microsoft Internet Explorer Patch Arrives Thursday..."

Comment on this blog entry



Iranian Cyber Army Attacks Chinese Search Giant


Posted by Graham Cluley @ 01:22 AM ET | Jan 12, 2010

China's No. 1 Website has fallen victim to a group of hackers calling themselves the "Iranian Cyber Army," who replaced the site's home page with a political message.

Continue reading "Iranian Cyber Army Attacks Chinese Search Giant..."

Comments(2)



New Facebook Privacy Settings Under Fire


Posted by Graham Cluley @ 08:56 AM ET | Dec 10, 2009

Facebook is making major changes to its privacy settings, giving you the opportunity to share your personal information with "everyone" on the Internet. But is that wise?

Continue reading "New Facebook Privacy Settings Under Fire..."

Comments(1)



How To Clean Up The Duh iPhone Worm


Posted by Graham Cluley @ 06:17 AM ET | Nov 24, 2009

The latest iPhone worm is much more malicious than the last one.

Continue reading "How To Clean Up The Duh iPhone Worm..."

Comment on this blog entry



Promoting Fake Pharmaceutical Websites Pays Big Bucks


Posted by Graham Cluley @ 06:08 AM ET | Nov 16, 2009

Is it any wonder that the criminal underground is embracing the Internet? The fortunes to be made through spam and search-engine poisoning are enormous.

Continue reading "Promoting Fake Pharmaceutical Websites Pays Big Bucks..."

Comment on this blog entry



World's First iPhone Worm Rick-Rolls Wallpaper


Posted by Graham Cluley @ 09:05 AM ET | Nov 8, 2009

Users of insecure, jailbroken iPhones are reporting their smartphones have been hit by a worm that turns their lock wallpaper to that of 1980s pop star Rick Astley.

Continue reading "World's First iPhone Worm Rick-Rolls Wallpaper..."

Comments(1)



The Dirty Dozen Spam Relaying Countries -- And How Zombie Armies Help Them


Posted by Graham Cluley @ 10:05 AM ET | Oct 29, 2009

Is that computer sitting on your desk secretly a zombie? If so, it could be contributing to the millions of spam messages being pumped out of your country every day.

Continue reading "The Dirty Dozen Spam Relaying Countries -- And How Zombie Armies Help Them..."

Comment on this blog entry



Fake Contract Of Settlements, Fake Antivirus


Posted by Graham Cluley @ 06:17 AM ET | Oct 26, 2009

Cybercriminals have bombarded inboxes around the world with what purports to be a contract but in reality delivers fake antivirus alerts on unsuspecting users' screens.

Continue reading "Fake Contract Of Settlements, Fake Antivirus..."

Comment on this blog entry



Kanye West Car Crash Hoax Fuels Hacker Scareware Attack


Posted by Graham Cluley @ 06:00 AM ET | Oct 21, 2009

An Internet rumor that controversial rapper Kanye West has died in a Los Angeles car crash is being taken advantage of by cybercriminals, bent on stealing money through fake antivirus alerts.

Continue reading "Kanye West Car Crash Hoax Fuels Hacker Scareware Attack..."

Comments(1)



Balloon Boy TV Circus Exploited By Hackers


Posted by Graham Cluley @ 09:38 AM ET | Oct 19, 2009

Malicious hackers are poisoning search engines to entrap computer users hunting for the latest news on the Falcon Heene case.

Continue reading "Balloon Boy TV Circus Exploited By Hackers..."

Comment on this blog entry



IT Staff Braced For Godzilla Of Microsoft Security Updates


Posted by Graham Cluley @ 04:39 AM ET | Oct 13, 2009

This isn't any regular Patch Tuesday. This one is a monster.

Continue reading "IT Staff Braced For Godzilla Of Microsoft Security Updates..."

Comment on this blog entry



Heartless Hackers Exploit Death Of Dirty Dancing Star


Posted by Graham Cluley @ 08:16 AM ET | Sep 15, 2009

Scareware attacks, in which hackers try to frighten innocent users into believing that their computers areinfected with viruses, are on the rise, and the cybercriminals behind them are exploiting hot news stories like never before.

Continue reading "Heartless Hackers Exploit Death Of Dirty Dancing Star..."

Comment on this blog entry



Did Snow Leopard Downgrade Your Adobe Flash, Security Too?


Posted by Graham Cluley @ 07:12 AM ET | Sep 3, 2009

If you upgraded your Mac to run Snow Leopard, then you would be wise to double-check that it's still protected against security vulnerabilities.

Continue reading "Did Snow Leopard Downgrade Your Adobe Flash, Security Too?..."

Comment on this blog entry



Apple Releases Antivirus For Snow Leopard OS -- Or Does It?


Posted by Graham Cluley @ 06:16 AM ET | Aug 28, 2009

You couldn't have missed that Apple just released Snow Leopard, the latest version of its Mac OS X operating system.

Continue reading "Apple Releases Antivirus For Snow Leopard OS -- Or Does It?..."

Comment on this blog entry



Phishing In A World Of Warcraft


Posted by Graham Cluley @ 10:19 AM ET | Aug 25, 2009

Hackers are once again targeting players of the fantasy game "World of Warcraft" in an attempt to steal passwords and other game credentials.

Continue reading "Phishing In A World Of Warcraft..."

Comments(2)



How Hackers Can Steal Your Personal Information From Facebook


Posted by Graham Cluley @ 02:22 PM ET | Aug 20, 2009

A security researcher has uncovered a serious security vulnerability in Facebook that gives hackers a silent method to steal users' personal information, such as their full names, profile pictures, and friends lists.

Continue reading "How Hackers Can Steal Your Personal Information From Facebook..."

Comment on this blog entry



Russian President Urged To Find Twitter Attackers


Posted by Graham Cluley @ 05:57 PM ET | Aug 10, 2009

The pro-Georgian blogger at the eye of the denial-of-service storm that brought down Twitter on August 6 has called on Russian President Dmitry Medvedev to find those responsible for the attacks.

Continue reading "Russian President Urged To Find Twitter Attackers..."

Comment on this blog entry



Windows, Mac Users Braced For Critical Security Patches


Posted by Graham Cluley @ 11:38 AM ET | Aug 10, 2009

Microsoft has announced that on Tuesday it will release a total of nine bulletins to patch a wide range of serious vulnerabilities, including some that affect Mac users.

Continue reading "Windows, Mac Users Braced For Critical Security Patches..."

Comment on this blog entry



71% Say Extradition Of UFO Hacker Gary McKinnon Is Wrong


Posted by Graham Cluley @ 05:29 AM ET | Jul 31, 2009

Self-confessed hacker Gary McKinnon has lost a judicial review in London that he hoped would have lead to a British investigation into his case, rather than extradition to the United States.

Continue reading "71% Say Extradition Of UFO Hacker Gary McKinnon Is Wrong..."

Comment on this blog entry



West African 419 Scammers Exploit Dilbert


Posted by Graham Cluley @ 06:06 AM ET | Jul 29, 2009

The Dilbert comic strip is loved around the world for its satirical look at life in the corporate office. But now identity thieves and scammers are exploiting the popular Dilbert.com Website in their hunt for potential victims.

Continue reading "West African 419 Scammers Exploit Dilbert..."

Comment on this blog entry



Erin Andrews Video: Get A Life Or Get A Virus


Posted by Graham Cluley @ 05:12 PM ET | Jul 20, 2009

It was early Sunday morning British time when I first heard the name "Erin Andrews." I didn't have a clue who she was -- I don't follow the American sports scene -- but one thing was certain: She was creating an enormous buzz on the Internet.

Continue reading "Erin Andrews Video: Get A Life Or Get A Virus..."





IT Admin Gets Jail Time For Sabotaging Ex-Employer's Network


Posted by Graham Cluley @ 01:26 AM ET | Jul 16, 2009

Hell hath no fury like an IT support administrator scorned. At least that's the message being heard loud and clear by firms that are finding their networks at risk of attack from former employees.

Continue reading "IT Admin Gets Jail Time For Sabotaging Ex-Employer's Network..."

Comment on this blog entry



Independence Day Fireworks Video Carries Malware Payload


Posted by Graham Cluley @ 02:41 AM ET | Jul 4, 2009

Hackers are taking advantage of American Independence Day celebrations by spamming out what pretends to be a link to a Fourth of July fireworks show, but is really an attempt to infect computers.

Continue reading "Independence Day Fireworks Video Carries Malware Payload..."

Comment on this blog entry



Spammers Scramble To Exploit Michael Jackson's Death


Posted by Graham Cluley @ 10:29 AM ET | Jun 26, 2009

It took a mere eight hours for cybercriminals to take advantage of the death of pop superstar Michael Jackson.

Continue reading "Spammers Scramble To Exploit Michael Jackson's Death..."

Comment on this blog entry



Private Facebook Info Exposed By Simple Hack


Posted by Graham Cluley @ 04:50 AM ET | Jun 23, 2009

Facebook's security has been called into question after the creators of a new blog discovered a hack that can expose private profile information of any user.

Continue reading "Private Facebook Info Exposed By Simple Hack..."

Comments(1)



Major Malicious Ecard Campaign Strikes Inboxes


Posted by Graham Cluley @ 10:53 AM ET | Jun 12, 2009

Hackers have spammed out a widespread attack to unsuspecting computer users, disguised as an electronic greeting card.

Continue reading "Major Malicious Ecard Campaign Strikes Inboxes..."

Comment on this blog entry



Microbloggers: Beware Of Dangerous Twitter-Growth Websites


Posted by Graham Cluley @ 08:55 AM ET | Jun 9, 2009

Fueled by hype generated by celebrity devotees like Oprah, Ashton Kutcher, and Stephen Fry, it seems like everyone is jumping on board the Twitter train.

Continue reading "Microbloggers: Beware Of Dangerous Twitter-Growth Websites..."

Comment on this blog entry



Suspected Child Porn Hub Taken Offline


Posted by Graham Cluley @ 07:58 PM ET | Jun 4, 2009

Internet service provider Pricewert -- which trades under names such as 3FN and APS Telecom -- has been shut down and disconnected from cyberspace following allegations it was knowingly involved in major spam attacks, phishing campaigns, malware distribution, and child abuse.

Continue reading "Suspected Child Porn Hub Taken Offline..."

Comment on this blog entry



$50,000 Reward For Al Gore's Daughter's Social Security Number


Posted by Graham Cluley @ 03:09 AM ET | May 30, 2009

When the National Archives lost a hard drive containing records from the Clinton administration, they also realized more than 100,000 social security numbers were missing.

Continue reading "$50,000 Reward For Al Gore's Daughter's Social Security Number..."

Comments(1)



Twitter Users Hit By More Phishing Attacks


Posted by Graham Cluley @ 06:17 AM ET | May 22, 2009

Thursday wasn't a good day for Twitter security: The site was rocked by two new phishing attacks that attempted to steal identities from a large number of users.

Continue reading "Twitter Users Hit By More Phishing Attacks..."

Comments(1)



Mac Users Told To Hold Their Breath For PowerPoint Security Fix


Posted by Graham Cluley @ 09:57 AM ET | May 15, 2009

Is Microsoft treating users of the Mac version of its PowerPoint software as second-class citizens? That's the question some are asking following the release of a criticial security update for the popular presentation software. The problem? The patch was only for the Windows version.

Continue reading "Mac Users Told To Hold Their Breath For PowerPoint Security Fix..."

Comment on this blog entry



Man Pleads Guilty To Scientology Cyberattack


Posted by Graham Cluley @ 05:15 AM ET | May 12, 2009

A 19-year-old man has admitted to launching a distributed denial-of-service (DDoS) attack that brought down Scientology Websites.

Continue reading "Man Pleads Guilty To Scientology Cyberattack..."

Comments(2)



Spammers Deluge Inboxes With Mother's Day Offers


Posted by Graham Cluley @ 06:04 PM ET | May 8, 2009

I never thought I would be thanking spammers for anything -- but they're the ones who reminded me about Mother's Day.

Continue reading "Spammers Deluge Inboxes With Mother's Day Offers..."

Comment on this blog entry



Facebook Flaw Reveals Personal Email Addresses


Posted by Graham Cluley @ 11:21 AM ET | May 7, 2009

Facebook has moved quickly to patch a security loophole that potentially allowed identity thieves and spammers to gather users' personal email addresses.

Continue reading "Facebook Flaw Reveals Personal Email Addresses..."

Comment on this blog entry



Why Twitter Security Needs To Grow Up


Posted by Graham Cluley @ 10:26 AM ET | May 1, 2009

Twitter is growing at phenomenal speed -- but this week's breach by a French hacker who accessed the accounts of Britney Spears, Barack Obama, and others proves it's time for the service to show a more mature attitude to security.

Continue reading "Why Twitter Security Needs To Grow Up..."

Comment on this blog entry



Zero-Day Flaw Hits All Versions Of Adobe PDF Reader


Posted by Graham Cluley @ 01:48 AM ET | Apr 29, 2009

I can't put this any more plainly: If you use Adobe Reader, I urge you to disable its JavaScript support today.

Continue reading "Zero-Day Flaw Hits All Versions Of Adobe PDF Reader..."

Comment on this blog entry



Russian Malware Blocks Windows Use, Demands SMS Ransom


Posted by Graham Cluley @ 05:03 PM ET | Apr 23, 2009

How important is it for you to be able to access your data? Would you pay money to recover your data if a hacker stole it?

Continue reading "Russian Malware Blocks Windows Use, Demands SMS Ransom..."

Comment on this blog entry



Latest Twitter Worm Taunts Celebs With Huge Followings


Posted by Graham Cluley @ 12:41 AM ET | Apr 18, 2009

Another weekend, another attack on Twitter users. On the same day word surfaced that 17-year-old Mikeyy Mooney had been offered a job on the back of the Twitter worms he had written, a new version of his Twitter worm was unleashed.

Continue reading "Latest Twitter Worm Taunts Celebs With Huge Followings..."

Comment on this blog entry



Write A Twitter Worm, Get A Job?


Posted by Graham Cluley @ 12:28 AM ET | Apr 18, 2009

The teenage author of the Mikeyy and StalkDaily worms that hit Twitter users hard one weekend ago appears to have struck lucky. As a result of his infamy, he has a brand new job.

Continue reading "Write A Twitter Worm, Get A Job?..."

Comments(1)



First StalkDaily, Now Mikeyy - Twitter Under Attack


Posted by Graham Cluley @ 07:11 AM ET | Apr 12, 2009

A new cross-site scripting worm is hitting Twitter users less than 24 hours after StalkDaily embedded itself in profiles across the micro-blogging system. This time it appears to be inspired by StalkDaily's alleged author, the mysterious Mikeyy Mooney.

Continue reading "First StalkDaily, Now Mikeyy - Twitter Under Attack..."

Comment on this blog entry



StalkDaily Attack Hits Twitter Users


Posted by Graham Cluley @ 09:26 PM ET | Apr 11, 2009

If anyone was in any doubt that social networks are the new battleground for cybercriminals, then just log in to Twitter right now. The hugely popular micro-blogging network is overrun with warnings about messages referring to a website called StalkDaily.com, said to be spreading through compromised Twitter accounts.

Continue reading "StalkDaily Attack Hits Twitter Users..."

Comment on this blog entry



Hackers Launch Fake Conficker Antivirus Attacks


Posted by Graham Cluley @ 08:28 AM ET | Apr 9, 2009

With all the focus on the Conficker worm in recent weeks, it should come as no surprise at all to find that cybercriminals are taking advantage of the headline-grabbing worm for their own ends.

Continue reading "Hackers Launch Fake Conficker Antivirus Attacks..."

Comments(1)



IT Staff Wait For Critical Zero-Day PowerPoint Fix


Posted by Graham Cluley @ 12:33 PM ET | Apr 3, 2009

You may have experienced the soul-destroying feeling of sitting through a far-too-long corporate presentation, but a new critical flaw could deliver a far more serious case of "Death by PowerPoint."

Continue reading "IT Staff Wait For Critical Zero-Day PowerPoint Fix..."

Comment on this blog entry



A Quick And Easy Way To Tell If You're Infected With Conficker


Posted by Graham Cluley @ 07:13 AM ET | Apr 2, 2009

Even though April 1st is now history, you would be foolish to think the Conficker worm is no longer a problem. It's still out there, still causing a nuisance, and could be instructed to activate a payload whenever the hackers choose. So what you want is a quick and easy way to tell if you might be infected, right?

Continue reading "A Quick And Easy Way To Tell If You're Infected With Conficker..."

Comment on this blog entry



All's Quiet On The Conficker Front


Posted by Graham Cluley @ 01:20 AM ET | Apr 1, 2009

It's 6:30 a.m. on April Fool's Day here in the U.K., and so far we've not seen any evidence of the Conficker worm "melting your computer," turning off the nation's air defenses, or dialing the local pizza company. My guess is that -- as widely predicted by the security vendors -- Conficker and April 1st was mostly about hype rather than havoc.

Continue reading "All's Quiet On The Conficker Front..."

Comment on this blog entry



Will They Ever Catch Conficker's Authors?


Posted by Graham Cluley @ 12:06 PM ET | Mar 31, 2009

While the world is holding its breath, wondering whether the Conficker worm is going to do anything dramatic on April 1st (I'm placing money that no computers are reported to have melted by the end of the day, and the Internet won't have turned to blancmange), perhaps a more important question is: Are we ever going to catch the pond life who wrote it?

Continue reading "Will They Ever Catch Conficker's Authors?..."

Comment on this blog entry




Go on to the weblog archives...

Related Content

Sponsored by:
sponsor logo
Not All Malware Detection Is Created Equal
The internet is now the number-one conduit for infecting users with malware. Sophos detects a new infected web page every few seconds. This white paper outlines the terms you need to know and the steps you should take to stay safe.

How To Protect Your Critical Information Easily
Safeguarding massive amounts of sensitive, confidential data--from legally protected personal information to intellectual property and trade secrets--from malicious attacks and accidental loss is one of IT's biggest challenges. With employees having greater mobility than ever before to work outside the office, the job of protecting data has never been more difficult.

Buyers Guide to Endpoint Protection Platforms
Discover how you can leverage endpoint security and data protection to provide simplified cross-platform security, centralized management, and control of devices, apps, and network access.