Posts filed under 'Anti-Virus'

US-Cert Reports Gmail Phishing Attack

Add comment

US-Cert recently published an article about a new phishing attack, which is aimed as specific targets in the US Government.

The Story:

US-CERT is aware of public reports of a phishing attack that specifically targets US government and military officials’ Gmail accounts. The attack arrives via an email sent from a spoofed address of an individual or agency known to the targeted user. The email contains a "view download" link that leads to a fake Gmail login page. The login information is then sent to an attacker. Google has indicated that this phishing campaign has been disrupted and that affected parties have been notified.

  • US-CERT encourages users and administrators to do the following to help mitigate the risks:
  • Review the Google blog entry Ensuring your information is safe online.
  • Do not follow unsolicited web links or attachments in email messages.
  • Use caution when providing personal information online.
  • Verify the legitimacy of the email by contacting the organization directly through a trusted contact method.
  • Refer to the Recognizing and Avoiding Email Scams (pdf) document for more information on avoiding email scams.
  • Refer to the Avoiding Social Engineering and Phishing Attacks document for more information on social engineering attacks.
  • Refer to the Using Caution with Email Attachments document for more information on safely handling email attachments.
Relevant Url(s):

http://www.us-cert.gov/cas/tips/ST04-014.html

http://www.us-cert.gov/reading_room/emailscams_0905.pdf

http://googleblog.blogspot.com/2011/06/ensuring-your-information-is-safe.html

http://www.us-cert.gov/cas/tips/ST04-010.html

 

Original Article:  http://www.us-cert.gov/current/index.html#gmail_phishing_attack

Panda Security finds 20 Million New Malware Strains In 2010

Continue Reading Add comment

Apparently malware writers have “cranked up” their production this year. Security firm Panda Security has reported that 20 Million new strains of malware have been created by “the badguys” this year already. That includes over 33% of all active malicious programs.

Swine Flu Phishing Attacks and Email Scams

Continue Reading Add comment

US-CERT is aware of public reports of email scams circulating related to the Swine Flu. The attacks arrive via an unsolicited email message typically containing a subject line related to the Swine Flu. These email messages may contain a link or an attachment. If users click on this link or open the attachment, they may be directed to a phishing website or exposed to malicious code.

US-CERT: Waledac Trojan Horse Spam Campaign Circulating

Continue Reading Add comment

US-CERT is aware of public reports of malicious code circulating via spam email messages related to bogus terror attacks in the recipient’s local area.

Should Mail Servers Keep ‘Office Hours’?

Continue Reading Add comment

Why leave the door open to a hacker after hours. Using a schedule to block this feature is like pulling down the security bars you see in the mall. Using this same feature you could restrict inbound e-mail to reasonable hours.

Merry Malware – Tis the season for postcards

Continue Reading Add comment

Every year at the holidays we see an upsurge of ‘postcard ware’ based malware. They look like a e-card from a loved one so you are enticed to open them up and while some do display a pretty picture or a play a nice tune in the background they are infecting your pc.

It pays to get a second opinion on Free Online Virus Scanners

Continue Reading Add comment

Once in a while


Our Author

Shaun Sturby, MCSE Technical Services Manager, and Optrics' point person for email security
Shaun Sturby, MCSE