Posted by nart on January 15th, 2010.
Tags: China, Malware, Social Engineering.
By Nart Villeneuve After researchers discovered that portions of China’s Greendam filtering software were stolen from an American filtering company’s software, Cybersitter, the company that produces the software, Solid Oak, same under a targeted malware attack. This short post from the Malware Lab (www.malwarelab.org) analyzes two samples from the attacks. Findings: The delivery component of [...]
Posted by nart on November 6th, 2009.
Tags: Black Energy, Botnet, China, DDoS, Iframe Injection, Malware, Rogue AV, Russia, Storm.
by Nart Villeneuve This Malware Lab blog post analyzes a packet capture file from an infected computer associated with a political figure. While evidence of compromise was found, the malware infection is most likely unrelated to political activities and was not a targeted attack. Rather, the infection is related to the criminal activities of attackers [...]
Posted by nart on October 28th, 2009.
Tags: 0day, Civil Society, Malware, Social Engineering.
by Nart Villeneuve & Greg Walton Civil society organizations face a wide range of online security threats that they are often ill equipped to defend. The lack of both resources and training leaves many organizations vulnerable to even basic Internet-based attacks. However, civil society organizations are being compromised by attackers using “0day” exploits – vulnerabilities [...]
Posted by nart on September 28th, 2009.
Tags: China, Malware, Media, Social Engineering, Taiwan.
By Nart Villeneuve and Greg Walton Overview There have been recent reports of malware attacks on journalists based in China. The attacks specifically targeted Chinese employees working for media organizations, including Reuters, the Straits Times, Dow Jones, Agence France Presse, and Ansa.1 These employees received an email from “Pam ” who claimed to be an [...]