Posts tagged as:

trojans

The Brits are raising a Cyber Army!

by Tim Sullivan on November 12, 2009 · 0 comments

UK-Cyber-WarThe UK is going all out against state-sponsored hackers and are in the process of recruiting a cyber army. Baroness Crawley says the Cyber Security Operations Centre (CSOC) will be located at GCHQ in Cheltenham and will have an initial staff of 19. Sounds like a jolly good start and us yanks are glad to have you in the fight with us. I can envision the CSOC now: it will be a bunch of computer geeks sitting at their terminals and they will look just like Bond, James Bond or Austin Powers. Yea, baby, yea!

About Mailprotector
Mailprotector offers SaaS email security and Hosted Exchange 2007. We’re in this battle for you to fight against spam, viruses, Trojans, phishing attacks and other email borne malware. It’s simple to use, highly effective and extremely affordable.

Cyber War Threat

by Tim Sullivan on November 11, 2009 · 0 comments

Cyber-WarToday’s Washington Post shows how aggressive the Chinese have been in probing US systems and interests. There have been reports in the past that the Chinese have trained North Koreans in advanced hacking techniques. South Korea and the US experienced DDoS attacks last summer that originated in North Korea. There have also been numerous reports about repeated hacks and probes into US government networks with many of them being successful in extracting sensitive information.

Attempting to even the playing field
These state run hackers are fighting on a new front to try to level the “playing field” in the event that a shooting war breaks out. The US has the most technologically advanced military in the world. The thought is that if China, North Korea or another enemy can disrupt US military networks and critical infrastructure systems then it may give them a better chance of fighting against the US.

A flurry of preparation
Last month there were reports that NASA’s IT systems lacked thorough security systems. There is a report from yesterday that the Department of Interior failed a recent cybersecurity audit. Rod Beckstrom quit the US cybersecurity post he had been in for a few months due to political infighting. Obama has yet to name a replacement even though he has promised it is a priority of his. Department of Homeland Security and the NSA are spending huge sums of money to increase their staff and datacenters.

About Mailprotector
Mailprotector provides protection from the Chinese, North Koreans and other hackers that want to access your email systems. We block spam, viruses, Trojans, phishing attacks and other email borne malware from getting to your users and disrupting their vital communications. It’s easy to get started (and affordable too).

Happy Birthday! Computer Virus turns 26

by Tim Sullivan on November 10, 2009 · 0 comments

Virus-Birthday-25Today marks the 26th birthday of the computer virus. On November 10th 1983 Fred Cohen, a University of Southern California graduate student, provided a proof-of-concept during a security seminar at Lehigh University. 26 years later the computer virus is still going strong.

My first virus
I recall my first computer virus experience, “Melissa“, back in 1999. I was working for another company in London at the time and we started getting lots of email with the same subject line from multiple European and far eastern affiliates. Before long, many of our users were sending loads of email out that they never initiated. Our network admin “pulled the plug” on our local Exchange server until he could resolve the issue. I called our US headquarters to give them a heads-up but they still had numerous users opening and infecting their mail systems. That was a wake up call and dealing with email-borne malware provided an experience that I’ll never forget.

My how you’ve grown!
Email malware has gotten a lot nastier since then. It presents huge problems for users and admins. Computers can be hijacked and used for nefarious purposes. Information can be stolen and bank accounts drained. The FBI has released a warning about the threat to online cyber fraud. Some figures estimate cyber fraud losses to be upwards of $100 million year-to-date.

About Mailprotector
Mailprotector’s services have been squashing spam, viruses, Trojans, phishing attacks and other email-borne malware for nearly 10 years. It’s affordable, easy to set up and simple to use.

Cybersecurity Dashboard Planned by Federal CIO Kundra

by Tim Sullivan on November 9, 2009 · 0 comments

CybersecurityDashboardVivek Kundra, federal CIO, outlined plans for new cybersecurity metrics and a dashboard for tracking progress in testimony to Congress. “Historically, the federal government has not been as effective as necessary in its cyber defense,” Kundra said to the Senate Homeland Security and Governmental Affairs Committee’s Subcommittee on Federal Financial Management, Government Information, Federal Services, and International Security.

“An inadequate cybersecurity workforce, a focus on compliance rather than outcomes, and a cumbersome and time-consuming process for collecting information hindered our cybersecurity management capabilities.”

A Different Focus
Kundra hopes new initiatives will focus more on performance rather than on paperwork. “The metrics will be focused on game changing ways to address real security,” he said. “It is not necessarily asking the question, do you have patch management program, but how long does it take for you to patch those systems? We are in early phases in terms of deploying a government-wide approach.”

CyberScope
The Office of Management and Budget released a new tool called CyberScope a few weeks ago. It lets federal agencies report FISMA compliance via an authenticated Web-based reporting tool rather than sending spreadsheets via e-mail.

Annual report required
This year agencies are required to report detailed spending information on cybersecurity. That information will make its way to a federal cybersecurity dashboard similar to the IT Dashboard launched earlier this year, a public Web site that tracks federal IT spending and project performance. “Just as the IT dashboard took us from a static, paper based environment to a dynamic digital environment, the new cybersecurity dashboard will provide the government with a real-time view of threats facing us and our vulnerabilities,” Kundra said.

About Mailprotector
Mailprotector’s service provides a web console so you can view your email security whenever you want. You’ll be able to monitor things such as what is being blocked: spam, viruses, Trojans, phishing attacks and other email borne malware. You can get granular reporting down to the user by specific date ranges. You can implement your own specific email compliance policy within the console. You don’t have to wait on our dashboard to be developed – it’s ready and we’re able to get you going now.

NSA To Build $1.5 Billion Data Center

by Tim Sullivan on November 6, 2009 · 0 comments

NSADataCenterThe National Security Agency (NSA) will soon break ground in Utah for a new cyber security data center that’s budgeted at $1.5 billion. The NSA facility will provide cybersecurity intelligence and warnings as well as provide support to defense and civilian agency networks.

“Our country must continue to advance its national security efforts and that includes improvements in cybersecurity. As we rely more and more on our communications networks for business, government and everyday use, we must be vigilant and provide agencies with the necessary resources to protect our country from a cyber attack.”
-Sen. Robert Bennett, R-Utah

Offering a hand to Homeland
They will also lend technical assistance to the Department of Homeland Security, according to a transcript of remarks by Glenn Gaffney, deputy director of national intelligence for collection, who is responsible for oversight of cyber intelligence activities in the Office of the Director of National Intelligence.

Located in Utah
The data center will be built a few miles south of Salt Lake City at Camp Williams, a National Guard training center. It was chosen for its access to cheap power, communications infrastructure, and availability of space, Gaffney said. The complex will comprise up to 1.5 million square feet of building space on between 120 to 200 acres, according to news sources.

About Mailprotector
Mailprotector operates in redundant data centers that provide plenty of horsepower to protect your email systems from spam, viruses, Trojans, phishing attacks and other email borne malware. So if you want to get your email systems protected at affordable prices then give us a call.

Trojan Lurking in Facebook

by Tim Sullivan on November 5, 2009 · 0 comments

FacebookTrojanSecurity researchers recently found a Trojan that uses Facebook to communicate with its command and control server. The Trojan malware is being spread via e-mail through “documents (PDF, or MS Office formats) containing exploits for known vulnerabilities,” writes Andrea Lelli, a security analyst with Symantec Security Response. The malware works by contacting the mobile version of Facebook and using its Notes section.

Clues in the title
By analyzing the Trojan’s code, Lelli found that the Trojan will perform four different actions, depending on the notes’ titles that are found. If the title is Wells, the note will contain the timedate stamp for when a machine was infected. If it is WebServer, however, the note will contain a URL to be contacted from which the Trojan will receive commands, Lelli wrote.

“The real command and data processing is done through the remote URL that was received from the notes, and this URL may point anywhere,” Lelli blogged. “However … one could use a Facebook account as a C&C [command and control] server and this Trojan is able to successfully parse the Facebook html data, retrieve the wanted data from it, and also post new data to it (it may for example send stolen data to it in the form of a note in the same [way] as it sends a timedate stamp).”

The flipside
Social networks have been used to help control malware in the past. In August, Arbor Networks researcher Jose Nazario uncovered a botnet using Twitter to communicate with its army of compromised machines.

About Mailprotector
Mailprotector’s services prevent Trojans, viruses, spam, phishing attacks and other email borne malware from getting to your inbox and spreading havoc throughout your email infrastructure.

Homeland Security Opens Cyber Security Center

by Tim Sullivan on November 4, 2009 · 0 comments

HomelandSecurityCenterSenator Joe Lieberman recently announced the opening of a new Cyber Center. Homeland Security spent about $9 million for the new center. It will help better coordinate the government’s response to cyber attacks. Senator Lieberman, chairman of the Senate Homeland Security and Government Affairs Committee, said legislation being drafted by his committee will require federal agencies and private companies to set up a system to share information on cyber threats.

Government lags in cyber security
The feds are playing catch up when it comes to cyber security. There have been numerous reports about coordinating efforts at various agencies to better protect the U.S. critical government and critical infrastructure. Obama has been attempting to hire a Cyber Security Czar but has been turned down by numerous executives.

About Mailprotector
Mailprotector has been providing email security for customers for nearly 10 years. It didn’t take an act of Congress to get the ball rolling either. Just an abundance of annoying junk email flooding our inboxes gave the inspiration to put a stop to that nonsense. If you’re tired of waiting on Congress, Obama and the rest of the U.S. government to get started then join us in the good fight. Mailprotector will provide protection from spam, viruses, Trojans, phishing attacks and other email borne malware from getting to your inbox.

SpamKingFacebook won a victory against a notorious spammer on October 29th when a federal judge awarded them $711 million. The judge found the spammer Sanford Wallace guilty of violating the Can-Spam Act as well as a restraining order. Wallace and two others used phishing sites and other methods to take control of Facebook accounts to use in their spamming operations.

Not the first lawsuit for “Spam King”
Sanford Wallace is better known as “Spam King” and “Spamford”. He’s been sued numerous times for spam and spyware related damages. Facebook attorney Sam O’Rourke was cautious about the win:

Facebook happy with outcome
“While we don’t expect to receive the vast majority of the award, we hope that this will act as a continued deterrent against these criminals,” blogged O’Rourke, Facebook’s lead counsel for litigation and intellectual property. “Most notably, the judge referred Wallace to the U.S. Attorney’s Office with a request that Wallace be prosecuted for criminal contempt, which means that in addition to the judgment, he now faces possible jail time. This is another important victory in our fight against spam. We will continue to pursue damages against other spammers.”

About Mailprotector
Mailprotector’s services help mitigate “Spam King’s” ways by blocking spam, spyware, phishing, Trojans, viruses, and other email borne malware to your inbox.

Nigeria Shuts Down 800 Scam Websites

by Tim Sullivan on October 30, 2009 · 0 comments

Nigeria-CrackdownNigeria’s anti-corruption police have shut down 800 scam websites and busted 18 syndicates of email fraudsters. “Over 800 fraudulent e-mail addresses have been identified and shut down,” Economic and Financial Crimes Commission (EFCC) boss Farida Waziri said. “There have been 18 arrests of high profile syndicates operating cyber-crime organisations,” she added.

Microsoft lends a hand
In a statement EFCC, which has previously relied on raiding cyber cafes and complaints from the public to clampdown on the crime, said it has now adopted smart technology working in conjunction with Microsoft, to track down fraudulent emails. The operation, dubbed “Eagle Claw” should be able to forewarn around a quarter of million potential victims when fully implemented within the next six months.

Nigeria has a history of email fraud
Nigeria has the notorious reputation of being the center of email fraudsters. Spanish police arrested 23 people in March, mainly Nigerians, suspected of running an email and letter scam thought to have defrauded over 150 people in the United States and Europe. The gang sent out thousands letters every day to potential prey. Victims were swindled of their money when asked to pay processing fees or supply their bank account details into which non-existent funds were promised to be transferred. Some of the email fraudsters hacked into private email accounts of prominent personalities and sent e-mails to their contacts claiming to be stranded and asking for emergency cash.

How you can prevent email attacks
Mailprotector’s services help prevent many of these types of email scams. Our services are great for keeping spam, viruses, Trojans, phishing and other email-borne malware and attacks from reaching your user’s inbox. Contact us today to learn more.

IT-JobsJust in case you haven’t heard the economy has been in a bit of a rough patch. Everyone has been tightening their belts. Well, here’s a ray of sunshine. The Department of Homeland Security has been authorized by the Obama administration to hire as many as 1,000 IT security professionals over the next 3 years. Areas they will be hiring include vulnerability detection, cyber risk and strategic analysis, network and systems engineering, and much more.

Cyber Security Dream Team is the goal
DHS Secretary Janet Napolitano made the announcement October 1 during remarks tied to the start of National Cybersecurity Awareness Month:

“Effective cyber-security requires all partners—individuals, communities, government entities and the private sector—to work together to protect our networks and strengthen our cyber-resiliency,” Napolitano said. “This new hiring authority will enable DHS to recruit the best cyber-analysts, developers and engineers in the world to serve their country by leading the nation’s defenses against cyber-threats.”

Join ranks soldier
So whether you’re out of work or just want a new job, update your resume, pay all your back taxes, and apply for one of these new government slots ASAP! Now, since I was kind of enough to give you a lead on your new job all I’ll ask is that you put in a good word with your rich Uncle Sam for Mailprotector’s award winning email security and Hosted Exchange 2007 services. We’ll make you look like a rock star when you show him the reports of all the spam, viruses, Trojans and other email-borne malware we’re stopping. He may even give you some of that bailout money as a bonus for doing such a great job. Now that’s kick-starting the economy!

Happy National Cyber Security Awareness Month!