Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Tags > advisory

Stories about: advisory


More: next 50 >>

New Tumblr Phishing Scheme Uses Old Login Page

Tumblr users are advised to be careful who they become friends with and what links they click on, especially if they’re posted by a customer whose only messages read “follow me, I follow back.” That’s exactly how the latest Tumblr phishing campaign begins. A shady user starts following random...

22 May 2012
05:31 GMT

“Keep Calm and Play the Tumblr Dating Game” Scam

The “Keep Calm and Play the Tumblr Dating Game” scam is making the rounds again on Tumblr, trying to dupe unsuspecting customers into signing up for an affiliate marketing scheme that can earn the fraudsters a decent amount of money. GFI came across a couple of examples in which potential victims are req...

21 May 2012
07:01 GMT

Spammers Promote Fake Luxury Goods on Hijacked Joomla and WordPress Sites

Security experts have found that a number of compromised WordPress and Joomla websites are used by spammers to advertise shady slimming pills and counterfeit luxury goods. The worst part is that the owners of these sites are most likely unaware of what’s going on. Webmasters often fail to check their websites&...

18 May 2012
04:38 GMT

Malicious Iron Man, Mass Effect Rainmeter Skins Served on deviantART

deviantART users should be on the lookout if they want to download Rainmeter skins, since security experts noticed that some of them actually hide dangerous pieces of malware. Chris Boyd of GFI Labs has found a number of instances in which the regular .rmskin files are replaced with malicious executable files. A la...

16 May 2012
09:09 GMT

Wikipedia: Ads Appear Only If Your Computer Is Infected with Malware

Wikipedia representatives warn users that if they see advertisements on the site, their computers are most likely infected with a piece of malware. “We never run ads on Wikipedia. Wikipedia is funded by more than a million donors, who give an average donation of less than 30 dollars,” Philippe Beaudette,...

15 May 2012
11:01 GMT

BBB Warns of Jamaican Lottery Scam Calls

Scam operations launched by Nigerian crooks, also known as 419 scams, have been around ever since email was invented, but more recently, US residents are being bombarded with shady calls from Jamaica, informing them that they’ve won a lottery. Users are warned that lottery plots don’t arrive only via ema...

14 May 2012
09:55 GMT

Avast Warns About “FakeInst” and Alternative Android Markets

The large number of malicious websites designed to infect Android devices with the well-known Android:FakeInst SMS Trojan have made Avast security experts issue another warning to alert users of its presence. They also advise smartphone owners to beware of shady-looking alternative Android app markets. Research...

14 May 2012
08:15 GMT

US Government Issues Two New Anti-Piracy Warnings for DVD and Blu-Ray

In case you were bored with the old FBI warning and anti-piracy notifications that you were presented with before the start of a movie, fear not. The US government issued a couple of brand-new copyright notices that are designed not only to inform users on the fact that piracy is illegal, but also to educate them. U...

14 May 2012
06:52 GMT

FBI Warns Users to Be Cautious When Using Wi-Fi Connections While Traveling

The FBI’s Internet Crime Complaint Center (IC3) has issued a warning, informing users to be cautious when using Wi-Fi connections in hotels, especially when travelling abroad. Reportedly, a number of individuals have fallen victims to cybercriminals after utilizing the wireless Internet connections provided by...

10 May 2012
09:20 GMT

Shady Windows Technicians Use LogMeIn to Take Control of Devices

Scams in which an alleged Windows technician calls to say that your computer is sending error messages to them are not new, but it seems they will never get old. Norman experts reveal that in some cases the scammers will call even 5 times a day trying to convince their victims to purchase so-called cleaning/repair pr...

10 May 2012
08:07 GMT

DHS Urges Users to Check for DNSChanger Malware, Time Is Running Out

Because of the massive DNSChanger malware infection, a large number of users may lose their Internet access on July 9. That is why the Department of Homeland Security (DHS) issued an advisory, urging people to make sure that by then their computers will be malware-free. Initially, four million computers, spread out ...

10 May 2012
07:00 GMT

Cybercriminals Already Try to Exploit PHP-CGI Bug, Experts Find

Security researchers from Trustwave’s SpiderLabs have noticed that one of their honeypots has recorded a number of attempts to exploit the recently uncovered PHP-CGI vulnerability. For now, no successful exploits have been identified, but it’s clear that cybercriminals are probing systems in search for ...

7 May 2012
10:35 GMT

Phishers Lure Victims with Storage Upgrade Offers

Email services providers offer a lot of storage space for their customers, but some individuals might still be displeased. Cybercriminals are relying on this in their latest campaign in which they offer highly-tempting storage plans for free. Experts from Symantec have come across such schemes in which the fraudster...

3 May 2012
07:21 GMT

Malicious BIOS Update Unmasked by Grammar Mistakes

We often highlight the fact that cybercriminals tend to rush when developing their malicious campaigns. The spam emails and scams are full of typos and grammar mistakes which in many cases give away the plot’s true identity and purpose. Experts from the Spyware Sucks blog found a shady-looking BIOS update that...

2 May 2012
08:35 GMT

FBI Issues Advisory on Social Networking Risks

The Federal Bureau of Investigations (FBI) issued its new Internet Social Networking Risks advisory to highlight the threats that target the customers of social media websites. First of all, the two main tactics used to exploit social networks are explained. On one side, there are highly skilled hackers who use spec...

30 April 2012
16:01 GMT

Fake Windows Antivirus Series Still Doing the Rounds

Not long ago we've presented a series of fake Windows antivirus programs designed to fool users into purchasing shady pieces of software that allegedly cleaned up infections that didn’t exist in the first place. Experts warn that new versions of the phony AV applications are making the rounds. Until now, ...

30 April 2012
04:30 GMT

200,000 Sites Affected by “Nikjju” SQL Injection Attack

Security researchers from AegisLab have identified a number of 179,000 websites as being affected by an SQL Injection attack. A few hours after the report came out, we detected close to 200,000 sites as containing a malicious script. Experts reveal that similar to the Lilupophilupop attack, sites that use ASP, IIS a...

27 April 2012
09:21 GMT

Fake “Security Update KB971033” Emails Point to Malicious Sites

Vulnerabilities such as the one that affected the Windows Remote Desktop Protocol have made many users better understand the need for security updates. Cybercriminals have taken advantage of this and started sending their own “security update” notifications. Hoax Slayer reports that an email with the sub...

27 April 2012
06:55 GMT

ICO: Many Fail to Delete Personal Data Before Selling Storage Devices

A study made by the Information Commissioner’s Office (ICO) found that many individuals from the UK failed to ensure that all their sensitive data was properly erased from storage devices before selling them or giving them away. This allows fraudsters to commit crimes more easily. The organization is urging co...

25 April 2012
09:49 GMT

Expert Offers Tips on How to Clean Up a Computer

Spring is in the air and most people are planning to clean up their households in preparation for the new season. However, Sorin Mustaca, data security expert at Avira, recommends that users also take a look at the dirt that may be on their computer’s hard drive. This winter we’ve seen a lot of...

23 April 2012
04:46 GMT

Ransomware Uses Reveton to Phish Ukash and Paysafecard Credentials

Experts from Microsoft’s Malware Protection Center (MMPC) warn users to be on the lookout for schemes that rely on ransomware to steal login credentials for online payment services such as Ukash and Paysafecard. Similar to previously seen ransomware schemes, the victims’ computers become locked, displayi...

19 April 2012
05:07 GMT

Germany Adopts “Button Law” to Combat Subscription Traps

After revealing some time ago that it combats websites that trick users into signing up for products that come with hidden costs, by cataloging them as being malicious, Avast now gets a helping hand from the European Union’s new “Button Law.” Germany is the first country to adopt it and hopefully, o...

17 April 2012
08:39 GMT

HP Warns About Viruses in ProCurve 5400 zl Switches

The world renowned hardware manufacturer HP issued a security bulletin to warn HP ProCurve 5400 zl switch owners who purchased the device after April 30, 2011, that the compact flash cards contained in them may be infected with a virus that can spread to computers. The company proposes two ways of resolving the issu...

12 April 2012
06:18 GMT

“Easter Egg” Searches Point to Fake AV

With Easter approaching fast and everyone rushing to prepare all sorts of goodies and decorations for the holiday, it’s likely that Google and other popular services will get a lot of requests to search for “Easter eggs” and other related topics. Cybercrooks rely on this to launch their malware-serv...

6 April 2012
05:38 GMT

EFF Warns Syrian Activists of Surveillance Malware

The Electronic Frontier Foundation (EFF) has warned Syrian activists to be on the lookout for malicious elements that target their Facebook and YouTube login credentials. Now the organization warns them about pieces of malware that spread the remote administration tool known as DarkComet. Trend Micro experts de...

6 April 2012
04:25 GMT

ABB Refuses to Patch Vulnerabilities in Legacy Systems

Researchers Terry McCorke and Billy Rios identified a buffer overflow flaw in a number of components of the ABB WebWare Server applications that are currently being used in many legacy ABB products. However, because they’re approaching the end of their life cycle, the company revealed that no patches should be ...

5 April 2012
07:46 GMT

Fake BBB Email Helps Fraudsters Steal $100,000 (€75,000) from Firm

Some time ago we’ve reported that a malicious email purporting to originate from the Better Business Bureau (BBB) was landing in inboxes, urging recipients to download an alleged complaint that in reality contained a nasty piece of malware. As it turns out, there are already a number of victims, one of which lo...

5 April 2012
04:51 GMT

Beware of Siberian Husky Puppy Scams

Internet security experts warn that an old email scam is hitting inboxes again, offering Siberian Husky puppies to anyone who promises to take good care of them. Commtouch Café reports that the shady email advertises six puppies, three male and three female, all “registered from multi-championship blood...

4 April 2012
04:33 GMT

Crooks Use Rogue Applications to Take Over Twitter Accounts

Sophos experts identified a number of rogue Twitter applications which take over accounts and start spamming other users. When installed, applications such as Unfollow Monitor App, Who Unfollowed You, Tweet Statistics App, Tweet Info App, and Twit Stats App, request permission to make posts on the user’s behal...

31 March 2012
13:21 GMT

Scammers Call Victims Pretending to Be “Tech Department of Windows”

Some cybercriminals aren't patient enough to wait for fake antiviruses and money-stealing malware to do their duty, so they pick up the phone and start calling potential victims, pretending to represent the “Tech department of Windows.” Internet Storm Center researcher Daniel Wesemann informs that t...

31 March 2012
04:34 GMT

Strong Passwords Can Be Inspired by the Bible, Bishop Says

The use of strong passwords is recommended by every security expert out there and many of them even devised clever techniques for creating hard-to-guess passwords that are easy to remember. Now, the Bishop of Rochester started teaching his parishioners how to create strong passwords using Bible passages. According ...

27 March 2012
08:14 GMT

Fake Windows AV Changes Its Name, But Never Its Nature

No-Risk Agent, AntiHazard Center, Process Director, Guardian Angel, Software Keeper, Problems Stopper, Health Keeper, and No-Risk Center all have one thing in common. They are all fake Windows antiviruses (AVs) that try to fool users into making payments in order to remove phony infections from their computers. An o...

26 March 2012
08:46 GMT

War Driving Project: Australian Police to Secure Wi-Fi Connections

As part of the National Consumer Fraud Week, the Queensland Police launched a campaign called the War Driving Project that’s aimed at raising awareness among Internet users regarding identity theft, especially incidents that occur due to unsecure Wi-Fi connection. “Unprotected or unsecured wireless netwo...

23 March 2012
08:59 GMT

GTradeInc Spam SMSs Sign Up Users for Premium Services

Individuals from Finland are warned that a SMS spam campaign launched by GTradeInc is making the rounds, claiming to subscribe recipients to unsolicited premium services. F-Secure informs that CERT-FI released an advisory regarding these scam messages that are apparently received even by users who didn’t provi...

20 March 2012
10:19 GMT

Exclusive Interview with a Hacker: XSS and Website Security

The grey hat hacker known as Freedom found a large number of sites that contain cross-site scripting (XSS) and other types of vulnerabilities. Since it’s clear that he knows a lot of things about XSS, we decided to get his opinion on the matter and asked him to share some information on what website administra...

18 March 2012
04:51 GMT

Valid VeriSign Certificate Used to Sign Mediyes Malware

Kaspersky Lab experts came across pieces of malware that were validated by a legitimate digital certificate issued by Symantec's VeriSign for a Swiss company called Conpavi AG, known for working with government agencies from Switzerland. Identified by Kaspersky as Trojan-Dropper.Win32.Mediyes or Trojan-Dropper.W...

17 March 2012
07:37 GMT

“The Devil’s in Your Details” Anti-Fraud Campaign (Video)

Action Fraud, the Telecommunications UK Fraud Forum (TUFF) and Financial Fraud Action UK have joined their forces in a new campaign called “The Devil’s in Your Details”, purposed to reduce fraud and help raise awareness on the threats that lurk behind every received email or phone call. In the past...

15 March 2012
06:05 GMT

Petition: Remove the Baby Charity Scam Photos from Facebook

Some time ago, a campaign was launched with the purpose of convincing Facebook to treat baby charity scams more seriously. Unfortunately, the social media company hasn’t done much to prevent the phenomenon and that’s why the initiators of the project have made a petition called “Remove The Baby Char...

15 March 2012
05:24 GMT

Scam: Facebook Bans Customers Who Send Unanswered Friend Requests

Another scam is causing panic among Facebook customers. This time the false message claims that if a user clicks No when he’s asked if he knows the person that sent a friend request, the latter will be banned from performing basic operations for up to 30 days and maybe even permanently. The scam message provid...

12 March 2012
05:46 GMT

Experts vs Experts: The Use of Antivirus

Speaking to security professionals at the RSA Conference in San Francisco, Wired learned that many of them don’t use antivirus at all, considering that it lost its effectiveness. Other experts say that antivirus software is still useful and statements like this should never be made by those in the security busi...

6 March 2012
02:50 GMT

Expert on Recovery After an Iframe Injection Attack (Exclusive)

Seeing that a lot of websites are plagued with Iframe Injection vulnerabilities, independent security researcher Shadab Siddiqui made up an advisory to help website administrators recover their websites after such a security hole has been exploited. He also listed some safety measures that must be implemented in orde...

4 March 2012
02:11 GMT

Facebook to Require Social Security Numbers from Users, Hoax

After the hoax that claimed Facebook would be shut down soon because its CEO Mark Zuckerberg was too stressed, and the one which warned users that they have to pay for their membership, the latest hoax notifies the social media site’s customers that starting with April 2012 they will have to provide Social Secu...

2 March 2012
06:03 GMT

Windows Basic Antivirus Installed via Fake Flash Player Updates

The latest rogue antivirus, called Windows Basic Antivirus, spreads with the aid of fake codecs that are allegedly requested to see the phony videos users are presented with almost daily on Facebook and other social media sites. GFI informs that the malicious software is installed on computers along with a fake Flas...

1 March 2012
04:12 GMT

Video: Fake AV Page in Action

Fake antivirus programs that take over computing devices and hold them for ransom are not uncommon, researchers determining the many “purchase software” Google searches lead to such malicious elements. Zscaler researchers found that many of these fake AVs are unchanged, being precisely the same as they ...

29 February 2012
03:15 GMT

Fraudsters Rely on Live Chat Sessions to Steal Bank Accounts

Fraudsters and cybercriminals have been coming up with highly complex techniques to dupe unsuspecting users into handing them over sensitive information needed to access valuable assets. Now, they’re turning to live chat to make sure that they’re convincing enough. Trusteer researchers identified an atta...

29 February 2012
02:38 GMT

FBI Warns of Robert English Soccer Academy Scams

The FBI’s office in Knoxville issued a warning to inform people on the existence of a scam email that invites recipients to enroll to the Robert English Soccer Academy, an allegedly newly-founded club. Individuals who fall for the plot are requested to provide tons of sensitive data that can be used by the cybe...

21 February 2012
09:24 GMT

The Privacy and Security Risks Posed by Online Dating Services

This time of year many users may be tempted to turn to online dating sites to find someone to spend Valentine’s Day with. Unfortunately, many internauts are not aware of the privacy and security risks some of these websites expose them to. The Electronic Frontier Foundation (EFF) made a list of factors that sh...

14 February 2012
09:56 GMT

Metropolitan Police: Beware of Law Enforcement Viruses

The UK Metropolitan Police’s Central e-crime Unit (PCeU) is warning Internet users about the massive malware campaign that locks computers allegedly in the name of the law enforcement agency. Microsoft’s Malware Protection Center informed us a while back that the campaign is targeting users from all acro...

14 February 2012
07:02 GMT

Bradesco Phishing Emails Target Internet Banking Accounts

After Anonymous hacktivists took down the official Brazilian websites of the Bradesco bank, a series of phishing emails were spotted in inboxes. It’s uncertain if the incidents are related, but users are advised to be on the lookout for any suspicious emails that seem to come from the bank. Originating from th...

9 February 2012
04:29 GMT

Background Checking Mobile App Marketers Warned by the FTC

Mobile app marketers received letters from the Federal Trade Commission (FTC) regarding a number of six mobile applications used to perform background checks. The FTC warns the companies that if their applications are used for employment screening, housing or credit purposes, they must comply with the Fair Credit Rep...

8 February 2012
14:01 GMT


More: next 50 >>

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM