201 new security vulnerabilities
By Davey Winder in Editorial
The sun may well be shining but, as far as IT security is concerned, the summer has got off to a pretty poor start. According to the Fortinet Threat Landscape report for June, which has just been published, the FortiGuard Labs covered 201 new vulnerabilities this period. I’ll repeat that, more than 200 NEW vulnerabilities in the space of a month and that’s nearly double the number from last month. Of these, some 71 (or 35% if your prefer) were being actively exploited by the bad guys before the month was out.
Some so-called security trend reports are little more than crystal ball gazing, to be honest, but I tend to take the FortiGuard Labs one more seriously as it is compiled using threat statistics and trends based on data collected from FortiGate network security appliances and intelligence systems out there in production worldwide.
This reveals that in the space of one month there have been four Flash and Excel vulnerabilities (all disclosed and patched in the same period), a hit-and-run attack for the Internet Explorer HTML Object Memory Corruption Vulnerability (CVE-2010-0249) which first surfaced in January 2010 and was used in the Aurora attacks, as well as some nefarious activity by the Sasfis botnet.
“We observed Sasfis loading a spambot component, which was heavily used to send out binary copies of itself in an aggressive seeding campaign” said Derek Manky, project manager, cyber security and threat research, Fortinet. “The Sasfis socially-engineered emails typically had two themes; one looked like a fake UPS Invoice attachment, and the other was disguised as a fees statement. Much like the Pushdo and Bredolab botnets, Sasfis is a loader - the spambot agent is just one of multiple components downloaded.”
Then there has been the malicious JavaScript code which, in terms of malware, was the only detection that topped those botnet binaries. Obfuscated JavaScript code identified as JS/Redir.BK showed a surge of activity on June 12th and 13th, redirecting unsuspecting users to various legitimate but compromised domains. These hosted an injected HTML page named z.htm and circulated through an HTML attachment in spam emails.
“There is no doubt that JavaScript is one of the most popular languages used today for attacks” Manky warns “it is used in a growing number of poisoned document attacks (PDF), particularly with heap-spray based techniques. It’s also used to launch exploits, and it is popular as a browser redirector to malicious sites, since the JavaScript code can be obfuscated and appear to be more complex than traditional IFrame based attacks from the past.”
Comment by chi hair straightener - August 3, 2010 on 12:53 am
nice post
Comment by wholesale baseball hats - March 25, 2011 on 6:48 am
I’m sure you had fun writing this article. Comfortably, the article is really the sweetest on this precious topic.
Comment by pandora bracelets - April 23, 2011 on 7:35 am
pandora bracelets is very beautiful. I like pandora charms very much. Everyone may want to buy pandora jewellery. pandora beads sells very well. pandora bracelets sale also very well. pandora charms sale very well. These glass pendants are trendy pandora jewellery uk articles and may also make excellent presents on all occasions. pandora is a kind of jewellry. pandora sale very good. pandora uk is very famous. pandora charms sale uk The demand in tiffany jewellery is increasing rapidly. It is recommended employed to have prior knowledge of the important aspects of the cheap tiffany uk to assist you avoid such situations. In many respects mens silver tiffany jewellery uk is the superb binary edged sword of xmas or wedding gifts. tiffany and co gives a number of bracelets, earrings, necklaces to its customers. I hope everyone would like tiffany co jewellery. thomas sabo is a good band in jewellry. The thomas sabo uk brand isn’t only cool with regards to its style and look, but it also has utility and functional value. thomas sabo charms sale well. thomas sabo bracelets are very beautiful. Everyone want to buy thomas sabo jewellry. thomas sabo sale very well.
Comment by dennis - August 22, 2011 on 3:42 am
www.buyravensjersey.com looks so cool, get your jersey there !!
Trackback by - February 9, 2012 on 5:43 am
greenpeace international facebook…
[…]all possibilities set before him before he handed down his dying sentence to […]…
Make a comment
Tag cloud
Archives
- June 2010
- May 2010
- April 2010
- March 2010
- February 2010
- January 2010
- December 2009
- November 2009
- October 2009
- September 2009
- August 2009
- July 2009
- June 2009
- May 2009
- April 2009
- March 2009
- February 2009
- January 2009
- December 2008
- November 2008
- October 2008
- September 2008
- August 2008
- July 2008
- June 2008
- May 2008
- April 2008
- March 2008
- February 2008
- January 2008
- December 2007
- November 2007
- October 2007
- September 2007
- August 2007
- July 2007
- June 2007
- May 2007
- April 2007
- March 2007
- February 2007
- January 2007
- December 2006
- November 2006
- October 2006
- September 2006
- August 2006
Most commented posts
- 80 percent of viruses love Windows 7
150 comments
- Has Microsoft gone mental?
- Has the US Army declared war on Windows 7?
- Cuil frozen out: market share drops to next to nothing
- Xbox 360 FAIL
- The 24GB RAM Desktop is born
- Use old version of Windows instead of Linux, says teacher
- Microsoft reveals time-based licensing model
- Windows XP: the invincible OS
- Nexus Two - The Next Generation
Highest Rated Blog Posts
- Why ecommerce fails (100%)
- Google Chrome stands alone at PWN2OWN (100%)
- Betting on Hubdub technology (100%)
- Has Google gone insane as GMail goes back to beta? (100%)
- Chinese whispers as government implicated in UK hack attacks (100%)
- Crimeware toolkit targets 10,000 trusted sites (100%)
- Black Hat risk to migrating VMs (100%)
- Tough on cyber crime, tough on the causes of cyber crime (100%)
- Firefox 3, Beta 4, Enhancements 900, Tested 5 (100%)
- Has the US Army declared war on Windows 7? (100%)

