Test of China Internet connections reveals heavy filtering

Author: Omid Farhang Published: March 30, 2010 Reading Time: 2 min

Using a Firefox 3.0 add-on created by developers in Hong Kong, Betanews was able to briefly establish a connection with the Internet via a proxy based in mainland China. With that proxy, we were able to confirm that searches performed using Google’s Hong Kong-based page were effectively blocked. Firefox 3.0 reported the blockage with this message: “The connection to the server was reset while the page was loading” — a message from the browser, not from an ISP. We used version 3.0.16 of Firefox (an older edition) because it is the only version compatible with China Channel, a tool made for the express purpose of testing China’s filtering ability. It has not been upgraded for version 3.6. ...

Continue Reading Test of China Internet connections reveals heavy filtering

Back to Basics with Fake AV

Author: Omid Farhang Published: March 30, 2010 Reading Time: 1 min

We’ve been seeing Fake AV programs getting more convincing for a while now. Some of the tricks employed by the guys behind these rogue programs include Windows-7-style fake scanners, in-browser “scanners”, and program features that ape other aspects of the operating system. Yesterday, though, we came across a misleading application called AntiVirusDemoFraud that is—how to say?—possibly a little less sophisticated than some in terms of user interface design. ...

Continue Reading Back to Basics with Fake AV

Facebook AV

Author: Omid Farhang Published: March 30, 2010 Reading Time: 1 min

Does a Facebook-specific antivirus application sound like a good idea? Maybe not. One of our analysts saw this particular application claiming to be an antivirus wreak havoc on his Friends list. Of course, there is no such thing. Once installed on one Friend’s account, this application tags 20 Friend into a picture such as the one below: If a Friend looking through the photos then clicks on the app’s (apparently randomly generated) link, they’ll see this: ...

Continue Reading Facebook AV

Microsoft out-of-band patch tomorrow

Author: Omid Farhang Published: March 30, 2010 Reading Time: 1 min

Microsoft said today it will issue an out-of-band patch tomorrow for a vulnerability in Internet Explorer 6 and 7 that is being actively exploited. “The vulnerability exists due to an invalid pointer reference being used within Internet Explorer. It is possible under certain conditions for the invalid pointer to be accessed after an object is deleted. In a specially-crafted attack, in attempting to access a freed object, Internet Explorer can be caused to allow remote code execution,” Microsoft said in its Security Advisory 981374 earlier this month. ...

Continue Reading Microsoft out-of-band patch tomorrow

MPEG LA wins major MPEG-2 settlement from Alcatel-Lucent

Author: Omid Farhang Published: March 30, 2010 Reading Time: 3 min

Could the manufacturers of DVD players (no, not just Blu-ray, but the original DVDs) owe back royalties to Alcatel-Lucent for the use of patented technology by way of the MPEG-2 codec? The MPEG Licensing Authority had asserted that Alcatel may have structured its 2006 merger with Lucent in such a way that it could hide up to five patents in a special trust, and spring their overdue royalties on the video industry long after DVDs already began the march to obsolescence. ...

Continue Reading MPEG LA wins major MPEG-2 settlement from Alcatel-Lucent

It's not dead yet: Microsoft's out-of-band IE6 fix impacts IE8

Author: Omid Farhang Published: March 30, 2010 Reading Time: 2 min

Last month, Microsoft sent flowers to a mock funeral for Internet Explorer 6, in a show of support for the ideal that the old browser should be declared defunct worldwide. But for a few years yet, the company is still bound to support the product for those users (generally businesses) who refuse to upgrade it. That’s why new exploits that continue to target old browsers, such as IE6 and IE7, continue to get attention even a full year after the proper security fix — IE8 — has been deployed. ...

Continue Reading It's not dead yet: Microsoft's out-of-band IE6 fix impacts IE8

Fake Lawsuit Notification Attack

Author: Omid Farhang Published: March 26, 2010 Reading Time: 1 min

A few of days ago, we encountered an e-mail with a malicious RTF attachment. It was sent with a supposed lawsuit notification message. The e-mail didn’t mention any company by name and took a shotgun, rather than targeted, approach. Today, a security blogger forwarded us (and others) his version of the e-mail: At this point, it appears that the attachment has been replaced by hyperlink pointing to the Marcus Law Center. ...

Continue Reading Fake Lawsuit Notification Attack

Child Tax Credit is the New Phishing Bait

Author: Omid Farhang Published: March 26, 2010 Reading Time: 2 min

Who wouldn’t want some tax benefits in the current economic times? Don’t phishers and scammers know that all too well! In a new phishing scheme, We found that Child Tax Credit is being used as bait to lure parents to disclose their financial data. This attack specifically tries to convince users to make claims for credit and lower their tax burden by using their children’s education expenses. According to the Internal Revenue Service (IRS) website [PDF], taxpayers may be able to reduce their federal income tax by up to $1,000 for each qualifying child. Making use of this information, spam email discusses the expensive education of children and quickly advises recipients to use this expense to make claims for tax credits under the numerous tax benefits provided by the IRS. They make a further appeal that as a U.S. citizen or resident, recipients should apply for their tax returns. According to the email, users can get a tax refund of $75,000 for their children’s education. To apply for a refund, users need to complete a form attached to the email message. The fraudulent email has an HTML attachment named “#1924819299.pdf.htm”. ...

Continue Reading Child Tax Credit is the New Phishing Bait

Google denies YouTube outage speculation

Author: Omid Farhang Published: March 25, 2010 Reading Time: 3 min

Google Inc., owner of YouTube, said an outage of the popular video-sharing site Thursday was technical and not caused by outside tampering. “YouTube is up again following a technical issue which has now been resolved,” a spokeswoman for Google said in a written statement. “We know how important YouTube is for people and apologize for any inconvenience the downtime may have caused.” The outage apparently lasted for just over an hour, from roughly 7 to 8 a.m. ET. ...

Continue Reading Google denies YouTube outage speculation

Google, China trade shots

Author: Omid Farhang Published: March 25, 2010 Reading Time: 2 min

Google and the Chinese government are continuing to trade shots in the PR battle over net censorship. Earlier in the week, Google moved its Chinese search facility to Hong Kong where it claims it is legal under Chinese law to provide searches without censoring results. In China: The Chinese government slashed Google in an op-ed piece in China Daily. The op ed, under the name of Ding Yifan, included the assertion: ...

Continue Reading Google, China trade shots