Incident ResponseCompromised forums redirect to Fiesta Exploit Kit, distribute malware possibly for click fraudAdam GreenbergApril 9, 2015Cyphort Labs researchers observed a number of popular forum websites redirecting visitors to the Fiesta Exploit Kit.
Compliance ManagementMalicious Google Chrome extension collected users’ data for third partiesAshley CarmanApril 8, 2015"Webpage Screenshot," a Google Chrome extension, was found to be malicious by two security firms earlier this week.
Security ArchitectureCross-platform RAT ‘AlienSpy’ targets Mac OS X, Windows and Android usersDanielle WalkerApril 8, 2015The AlienSpy remote access trojan (RAT) is being sold to attackers via subscription plans, ranging from around $20 to $220.
Incident ResponseResearchers observe malvertising campaign possibly linked to Google ad resellerAdam GreenbergApril 8, 2015Users were being redirected to the Nuclear Exploit Kit, which is exploiting vulnerabilities in Adobe Flash, Oracle Java and Microsoft Silverlight.
MalwareDrive-by-login attack identified and used in lieu of spear phishing campaignsAshley CarmanApril 7, 2015A new attack, drive-by-logins, allows attackers to target specific victims on sites they trust.
MalwareNew ransomware makes encrypted files appear quarantinedAdam GreenbergApril 7, 2015The ransomware, detected by Trend Micro as CRYPVAULT, is being distributed as an attachment in spam emails and is targeting Russian speakers.
MalwareCyber attackers target FAAAshley CarmanApril 7, 2015The Federal Aviation Administration (FAA) said a virus infected its administrative computer system but didn't cause any damage to agency systems.