Far East Targeted by Drive by Download Attack
This blog was co-authored by Kevin Brooks, Alex Chiu, Joel Esler , Martin Lee , Emmanuel Tacheau , Andrew Tsonchev , and Craig Williams . On the 21st of [...]
View ArticleOld and Persistent Malware
Malware can find its way into the most unexpected of places. Certainly, no website can be assumed to be always [...]
View ArticleBig Data: Observing a Phishing Attack Over Years
Overview Phishing attacks use social engineering in an attempt to lure victims to fake websites. The websites could allow the [...]
View ArticleThreat Spotlight: “A String of Paerls”, Part 2, Deep Dive
This post has been coauthored by Joel Esler , Craig Williams , Richard Harman , Jaeson Schultz , and Douglas Goddard In part one of our two part blog series [...]
View ArticleThe Art of Escape
Craig Williams and Jaeson Schultz have contributed to this post. We blogged in September of 2013 about variants of Havex. A month ago on June 2, [...]
View ArticleThreat Spotlight: A String of ‘Paerls’, Part One
This post was co-authored by Jaeson Schultz , Joel Esler , and Richard Harman . This is part one in a two-part series due to the [...]
View ArticleA Collection of Cryptographic Vulnerabilities.
The rustic origins of the English language are evident in the words left to us by our agricultural ancestors. Many [...]
View ArticleRIG Exploit Kit Strikes Oil
This post was co-authored by Levi Gundert with contributions from Emmanuel Tacheau and Joel Esler. In the last month we [...]
View ArticleAttack Analysis with a Fast Graph
This post is co-authored by Martin Lee, Armin Pelkmann, and Preetham Raghunanda. Cyber security analysts tend to redundantly perform the [...]
View ArticleWalking in a Winter Wonderland
It is not uncommon to see an anti-spam system catch >99% of the spam passing through it. Most of the [...]
View ArticleApril 2014 Threat Metrics
April kicked off with a 1:292 rate of malware encounters and closed with a rate of 1:315. Highest peak day [...]
View ArticleAngling for Silverlight Exploits
This post is co-authored by Andrew Tsonchev, Jaeson Schultz, Alex Chiu, Seth Hanford, Craig Williams, Steven Poulson, and Joel Esler. Special thanks [...]
View ArticleIE Zero Day – Managed Services Protection
As of May 1, 2014, we can confirm Cisco customers have been targets of this attack. For the latest coverage [...]
View ArticleIE Zero Day and VGX.dll
The recent discovery of a new Internet Explorer zero-day exploit underlines how exposed web browsers are to vulnerabilities for which a [...]
View ArticleYear-Long Exploit Pack Traffic Campaign Surges After Leveraging CDN
Anyone can purchase an exploit pack (EP) license or rent time on an existing EP server. The challenge for threat actors is to redirect unsuspecting web browsing victims by force to the exploit landing...
View ArticleMarch 2014 Threat Metrics
The median rate of web malware encounters in March 2014 was 1:260, compared to a median rate of 1:341 requests [...]
View ArticleFebruary 2014 Threat Metrics
Web surfers in February 2014 experienced a median malware encounter rate of 1:341 requests, compared to a January 2014 median encounter rate [...]
View ArticleCoordinated Website Compromise Campaigns Continue to Plague Internet
This post is co-authored with Levi Gundert and Andrew Tsonchev . Update 2014-03-21: For clarity, the old kernel is a common indicator on the [...]
View ArticleUnderstanding Security Through Probability
This post was also authored by Min-yi Shen and Martin Lee . Security is all about probability. There is a certain probability [...]
View ArticleJanuary 2014 Threat Metrics
January 2014 started with a bang, with one in every 191 web requests resulting in a web malware encounter. The [...]
View Article