tumblr hit counter

PandaLabs Blog Everything you need to know about Internet threats

Sep 29

An Interview with Anonymous

Visit the main blog post (http://bit.ly/azgKeG) for up to the minute updates on the attack. Over the past few weeks I have been investigating the Anonymous DDoS assault against media authorities around the world.  This small, but vocal Internet community launched an attack campaign called “Operation Payback”, which targeted DDoS attacks against various companies and [...]

  • (70) Comments
Sep 28

LinkedIn Spam Campaign

We’ve noticed a significant increase in realistic looking LinkedIn reminder spam e-mails over the past week. The e-mail appears to arrive from messages-noreply@bounce.linkedin.com on behalf of LinkedIn communication [communication@linkedin.com] and is an exact copy of the official LinkedIn reminder e-mail. Hovering over the link show us that the spam e-mail is attempting to direct us [...]

  • (5) Comments
Sep 21

OnMouseOver XSS Vulnerability on Twitter

This morning we observed a Cross Site Scripting (XSS) attack taking place on Twitter.  This particular vulnerability took advantage of the onmouseover function in JavaScript, which works by executing JavaScript code by simply moving your mouse over some text. The following status updates were observed, causing unsuspecting user feeds to fill up with images of [...]

  • (2) Comments
Sep 10

“Here you have” worm linked to cyber jihadists

A worm collectively dubbed by the security industry as the “Here you have worm” has been making its way onto corporate networks over the past 24 hours.  The worm arrives via e-mail using the subject line “Here you have” or “Just For you“ along with an executable disguised as a PDF file.  The worm is [...]

  • (1) Comment
Sep 8

Malicious Search Suggestions with Google Instant

Google just released its brand new search technology labeled “Google Instant,” which works by dynamically accelerating search results as you type into the Google search box.  Google Instant essentially predicts what users will type and rapidly makes suggestions on which search term is most relevant to what is being typed in real time. So what?  [...]

  • (7) Comments
Aug 27

How to Get Hacked on Facebook

One of the most common scenarios we observe on a daily basis are users coaxed into phishing campaigns and malicious applications on Facebook.  As we interact with our friends and family on social networks, we tend to trust of any and all of the information that appears to be from our “trusted network.”  However, Facebook [...]

  • (11) Comments
Aug 17

Facebook clickjackers target victims using McDonald’s as bait

Would you click on the link below? If so, you would quickly find yourself becoming the latest victim in a recent string of Facebook Clickjacking attacks.  The HappyMeals and other Clickjacking attacks work by enticing victims with catchy one liners, such as “OMG! I cant BELIEVE a WOMAN found THIS in her McDonalds Nuggets! WTFF!! [...]

  • (1) Comment
Aug 13

Blackhat SEO Attack Targeting Halloween and Thanksgiving

It’s not uncommon for us to see cyber criminals targeting current events or upcoming holidays, but this time we came across a campaign that is several months ahead of schedule.  An ongoing Blackhat SEO campaign is heavily targeting Halloween and Thanksgiving related keywords. The Top 5 targeted keywords: 1. Printable (cards) 2. Halloween 3. Thanksgiving [...]

  • (3) Comments
Aug 4

Clickjacking Attack Targeting Shark Week

If you haven’t heard already, it’s Shark Week on the Discovery Network. Around the clock radio and TV advertisements have fueled massive social network buzz on the Internet and Shark Week remains in the top 3 trending topics on Twitter at the time of writing this post CPA (cost-per-action) affiliates who have been running clickjacking [...]

  • (1) Comment
Aug 2

Back from Vegas

We’re back from a week’s worth of Blackhat, Defcon, and Security B-sides action in Las Vegas, Nevada!  During our week long trip we had the unique pleasure of sponsoring and speaking at our 3rd Security B-Sides since the start of the B-sides format last year. Our talk, entitled “Catch that Butterfly,” focused on the Mariposa [...]

  • (0) Comments
  • Become a fan!


    Panda Security on Facebook
  • -->
  • Blogroll

  • Categories