Archive for February, 2007

Solaris Telnet Scanning — Possible Worm?

February 27, 2007 by Jose Nazario

Updated Information Below – 28 Feb 2007 This morning on ATLAS we saw a pair of hosts scanning for Telnet servers. While this may seem like a throwback to days gone by, and maybe someone is starting from scratch in their exploit activity, this is related to a recent Solaris bug, specifically CVE-2007-0882 (the telnet [...]

Read More

Security Markets – Microsoft and March, 2007

February 26, 2007 by Jose Nazario

A few of us have been exploring the idea of using predictive markets as a means of exploring the realm of information security. Can we predict what kinds of software attacks we’ll see in the coming weeks? Can we leverage the crowd’s wisdom to tell us something? After all, economics markets and options trading already [...]

Read More

PHP/WebGuard (and ASP/WebGuard) Attacks

February 19, 2007 by Jose Nazario

Last week I got three separate emails about an attack that people were seeing, blending phishing, a Trojan, a backdoor, and a website hack all in one. The whole thing relies on the target user falling prey to the “phish”. In this case, they’re not after someone’s bank account, they’re after their participation in a [...]

Read More