posted in News & media on Jan 6th, 2010
Symantec’s Endpoint Protection Manager has been hit by a classic date bug and fell over at the end of the year, accepting no definition updates dated since then. Symantec have issued a statement, which states that: “An issue has been identified in the Symantec Endpoint Protection Manager (SEPM) server whereby all types of SEP definition [...]
read full post »
posted in News & media on Jan 4th, 2010
With more than a week until Adobe is scheduled to patch a critical vulnerability in its Reader and Acrobat applications, online thugs are targeting it with an unusually sophisticated attack. The PDF file uses what’s known as egg-hunting shellcode to compress the first phase of the malicious payload into 38 bytes, a tiny size that’s [...]
read full post »
posted in Antivirus, External tools on Jan 4th, 2010
I just read about the tool Malheur designed for malware analysis. It looks interesting, I don’t know what other tools like this one are out there (if you know some of them, please leave a comment) but it is worth some minutes to read through their page. After thinking some minutes about their approach using [...]
read full post »
posted in Reading material on Jan 2nd, 2010
Larry Seltzers glossary about wireless security terms found on www.eweek.com. Wireless Security: A Partial Glossary of Wireless Security Terms Just about a month ago, in early November, the news came out that the first cracks were appearing in WPA, or Wi-Fi Protected Access, a very popular wireless security standard. The compromise that was accomplished by [...]
read full post »
This article will take you through the basic steps of building an executable crypter. All of the steps performed in this article require manual setup and integration to prepare the exe for the crypter stub. The focus of this article is to walk you through the theory and knowhow of how crypters work and does [...]
read full post »
posted in Antivirus, News & media, Stuff on Jan 1st, 2010
An extract from Brian Krebs last blog post. I have often recommended file-scanning services like VirusTotal and Jotti, which allow visitors to upload a suspicious file and scan it against dozens of commercial anti-virus tools. If a scan generates any virus alerts or red flags, the report produced by the scan is shared with all [...]
read full post »