Threat ManagementBlend of old and new techniques help attackers dodge detection, report saysTeri RobinsonApril 8, 2015The 2015 Websense Threat Report found that threat actors are employing previously used C&C URLs to launch new threats.
Security ArchitectureCross-platform RAT ‘AlienSpy’ targets Mac OS X, Windows and Android usersDanielle WalkerApril 8, 2015The AlienSpy remote access trojan (RAT) is being sold to attackers via subscription plans, ranging from around $20 to $220.
Incident ResponseResearchers observe malvertising campaign possibly linked to Google ad resellerAdam GreenbergApril 8, 2015Users were being redirected to the Nuclear Exploit Kit, which is exploiting vulnerabilities in Adobe Flash, Oracle Java and Microsoft Silverlight.
Incident ResponseFBI warns of WordPress defacements as new plugin vulnerability is foundAdam GreenbergApril 8, 2015The FBI warned that individuals sympathetic to ISIL, or ISIS, are defacing WordPress websites by exploiting vulnerabilities in plugins.
Critical Infrastructure SecurityCritical Infrastructure Survey: Gov’t, energy sectors targeted most by destructive attacksDanielle WalkerApril 7, 2015Trend Micro and the Organization of American States (OAS) polled 575 critical infrastructure security leaders in the Americas.
Threat ManagementFake Pirate Bay site pushes Nuclear Exploit Kit, distributes trojansRobert AbelApril 3, 2015A copy-cat Pirate Bay site is targeting attacks against WordPress users and injecting them with malware.
Critical Infrastructure SecurityObama orders new sanctions program to deter foreign cyber attackersDanielle WalkerApril 1, 2015On Wednesday, the President declared the need to address "malicious cyber-enabled activities" orchestrated by foreign attackers a national emergency.
Incident ResponseFake voice chat tool spread on Steam is actually malware, researchers warnDanielle WalkerApril 1, 2015Similar to previous attacks, saboteurs spread the malware by leveraging Steam's chat feature.