Alex Eckelberry
Articles by Alex Eckelberry
Nasty little Twitter Hack
Something our friend Lance James came up with: Computer security researchers have devised a new Twitter attack that they say could spread virally, much...
Should be an interesting news day for security
Joanna claims she’ll be releasing exploit code later today (12 noon EDT, 16:00 UTC) for a new nasty rootkit, that embeds itself into Intel chipsets...
Interesting Conficker C analysis published
The folks over at SRI have published an interesting additional information on Conficker.C. Worth reading. Link here. In this addendum report, we...
SMM exploit POC code published
As mentioned earlier today, Rafal Wojtczuk and Joanna Rutkowska have published a new paper on using cache poisoning to exploit the Systems Management Mode...
Symantec changes tack on Ask relationship
Follow-up from a prior post on the subject, Rowan Trollope, Symantec senior veep posted something on the subject: Safe Search updateI’ve seen the...
More Facebook malware...
If you’re invited to watch a movie on Facebook, realize that downloading a “special codec” or “media player” is ill-advised....
The BBC botnet debacle
There is an active thread over at Funsec on a very interesting subject: The BBC’s recent use of a botnet for a televised story.The BBC wanted to...
More Facebook malware...
If you’re invited to watch a movie on Facebook, realize that downloading a “special codec” or “media player” is ill-advised....
Heuristics are dead?
Some people in the security industry may be baffled by a video presented by Richard Steinnon with Amrit Williams, Martin McKeay and Mike Murray.The discussion...
Mitigating the Adobe zero day
Reports of the Adobe Acrobat zero day exploit should not be shrugged off.However, mitigating this exploit may be a bit bewildering due to lack of...
A useful new tool from Google focused on malvertisements
Malvertisements (malicious advertisements) have been a bane of advertising networks the world over. Sleazy malware distributors try to place malicious ads onto...
Here comes the Ask Toolbar again
In a trend that is increasingly popular, Symantec will be bundling a version of the Ask Toolbar with the upcoming release of Norton 360. This will add to...
Botnet controllers for sale
I recently blogged about was a design agency promoting its work on malware. Now, we see a development shop boasting about its work on malware.Sniffing around...
Kaspersky responds
We confirm that the vulnerability existed in the new version of usa.kaspersky.com/support. We analyzed the log files and found requests with SQL injection....
Some more thoughts on Mailinfo
Back in October, I blogged briefly about Mailinfo, the service that allows you to track whether or not anyone has opened your email.Lior Kimchi, one of our...















