Blog

Writing on software engineering, Linux, health, and the things I build and learn along the way.

Writing from the Field

Another Bot Bites the Dust?

Published: March 4, 2010 Reading time: 1 min

Remember Microsoft’s action against 277 Waledac domains last week? Well, that’s one way of going after a botnet… Another way of shutting down a botnet? Arrest the botmasters! Three Spanish citizens have been arrested for running the “Mariposa” botnet. The three reportedly have no criminal records and have limited hacking skills. Mariposa is a Butterfly Kit based botnet, and the kit is no longer for sale. Details are available from the BBC and The Register. Kudos to those involved in the arrests.

Continue Reading

Haiti relief email scams still circulate

Published: March 4, 2010 Reading time: 1 min

Want a place to check the legitimacy of a charity? “Founded in 2001, Charity Navigator has become the nation’s largest and most-utilized evaluator of charities. In our quest to help donors, our team of professional analysts has examined tens of thousands of non-profit financial documents. As a result, we know as much about the true fiscal operations of charities as anyone. We’ve used this knowledge to develop an unbiased, objective, numbers-based rating system to assess the financial health of over 5,000 of America’s best-known charities.” ...

Continue Reading

Battlefield Keygens are Bad Company

Published: March 4, 2010 Reading time: 1 min

In the same way that media event X guarantees Rogue Antispyware Y, a new and highly anticipated videogame that’s about ready to launch will similarly bring out the scams and fakes. If you have any family members that like their PC games but perhaps aren’t clued up on their Internet fakeouts, you might want to warn them that no matter how cool the so-called “Battlefield: Bad Company 2” keygens look, they should steer clear: ...

Continue Reading

Microsoft updates MS010-15 [Fixed]

Published: March 4, 2010 Reading time: 1 min

It won’t work if you have a rootkit infection, but it won’t blue screen your machine either. Microsoft has reissued Security Bulletin MS010-15 from last month to work around a problem that had occurred when a WinXP user attempted to install the patch on a machine that was infected with a rootkit. (blue screen, blue screen) Jerry Bryant, Microsoft’s senior security communications manager lead, writing on the company TechNet blog said that the new installation packages for MS10-015 have new logic that will prevent the security update from installing on rootkit-infected systems. Microsoft also is offering guidance for those with infected machines and a scanning tool that can detect system conditions that will prevent the patch from applying itself. ...

Continue Reading

Steve Ballmer talks Bing, Google, Xbox and Windows Phone

Published: March 4, 2010 Reading time: 5 min

For anyone that missed Microsoft CEO’s Q&A during the Search Marketing Expo West yesterday, a transcript is now available online. I went through and picked out key quotes, so that you don’t have to read the whole thing. Several things stand out from Ballmer’s comments: Mobile operators that want a search engine other than Bing can’t have Windows Phone 7 Series. Microsoft almost certainly is stirring up trouble for Google in Europe through third parties. Microsoft isn’t interested — at least for now — in releasing a Bing application for Android phones. A Bing for iPhone search deal is still possible, simply because Ballmer deflected the question rather than denying it. Twitter is a great Microsoft partner, but the value of an acquisition is “not clear.” My favorite quote from the Q&A: “I haven’t found that when you’re trying to sell something to somebody yelling is very effective.” How funny is that. coming from boisterous Ballmer? ...

Continue Reading

Big Brother in Social Networking Scam

Published: March 4, 2010 Reading time: 2 min

“Big Brother Brazil” is a Brazilian reality TV program adapted from the popular Big Brother television series. The show is about a group of people living together in a purpose-built Big Brother house, isolated from the outside world, while being monitored by cameras 24×7. The television series is viewed by scores of people during primetime hours, but live feeds are also available from multiple cameras in the house on the Web. Part of the popularity is due to the fact that some of the videos are suitable only for adult viewing. ...

Continue Reading

Beware of Targeted Scams and Phishing Attacks!

Published: March 3, 2010 Reading time: 3 min

According to latest State of Spam and Phishing report, scam and phishing messages accounted for 21 percent of all spam, which is the highest level recorded since the inception of the report. For comparison, these types of spam represented only 10 percent of total spam a year ago. Historically, the primary vector for spam attacks was to blast out as many messages as possible, hoping that someone would open a message and click on the call to action. The call to action could be anything from clicking on a link to purchase medications, to visiting an adult website. While we continue to see high volumes of spam originating from expansive botnets, spammers are also moving towards a sophisticated and more targeted approach to spam. Two primary examples of this trend are 419/Nigerian type scams and phishing messages. ...

Continue Reading

KOOBFACE Makes a Comeback

Published: March 2, 2010 Reading time: 2 min

A new KOOBFACE variant is again making the rounds in the social-networking scene. According to Trend Micro researcher, Norman Ingal, the malware employs Facebook’s Private Message feature to proliferate. The threat arrives as a Facebook private message that does not bear a subject but contains a supposed link to a YouTube video. Taking a closer look at the link, however, indicates that it is not an authentic YouTube link as in previous attacks. ...

Continue Reading

I'm Feeling Lucky?

Published: March 2, 2010 Reading time: 2 min

Criminals like to attack the biggest target because BIGGER generally provides a better Return On Investment (ROI). Windows is a good example. Mac is indeed safer than Windows but it isn’t necessarily because Mac is more secure. Windows has a larger market share and that equals more potential victims. How about search engines? What is the biggest search engine on the block? Google — and the bad guys know it. The result? ...

Continue Reading

Don’t press F1

Published: March 2, 2010 Reading time: 1 min

Here’s a new vector: exploiting a Windows vulnerability through an Internet Explorer help menu Visual Basic script: “get ‘em to hit F1 and you own ‘em.” Microsoft is warning of a VBScript vulnerability in Internet Explorer (on Win2K, XP and Server03) that could be used to run malicious code. A malicious operator could create a web site that displays a specially crafted dialog box and prompts a victim to press the F1 key (help menu.) The exploit could then execute malicious code on a victim machine. (Windows versions that are not vulnerable are: Vista, Win7, Server08 R2 and Server08.) ...

Continue Reading

Apple sues HTC for iPhone patent infringement

Published: March 2, 2010 Reading time: 2 min

Apple has sued smartphone maker HTC for patent infringement, citing 20 patents related to the iPhone’s user interface, architecture, and hardware, a statement from the company said this morning. A statement from Apple CEO Steve Jobs today said, “We can sit by and watch competitors steal our patented inventions, or we can do something about it. We’ve decided to do something about it. We think competition is healthy, but competitors should create their own original technology, not steal ours.” ...

Continue Reading

[for India] Register for ‘Do Not Call/Disturb’ (NDNC) to Stop Promotional calls and messages from Telecom Operators

Published: March 2, 2010 Reading time: 1 min

Do you want to avoid unwanted telemarketing calls and SMS, arriving on your Mobile or Landline phones from Telecom companies which aim to provide additional services, promotions, offers, plans, tariffs, etc? National Do Not Call Registry (NDNC Registry) is a measure from Telecom Regulatory Authority of India, whose main objective is to control Unsolicited Commercial Communication (UCC) and let you get rid of it. To Register in NDNC Registry – Call 1909 (toll free) or SMS START DND to 1909 (toll free). In case you want to de-register yourself from the NDNC registry SMS STOP DND to 1909 (toll free). Alternatively, users can visit the ‘Do not Call/Disturb’ registration webpage of their desired telecom subscribers to apply for same. ...

Continue Reading

60+ Compromised Sites with SEO Poisoning

Published: March 2, 2010 Reading time: 2 min

More than 60 websites have been found to be hotbeds for SEO poisoning. Each of these domains host hundreds of possible matches for search keys. Also, the topics in one domain overlap with that of the other domain, thus making it possible that they will both emerge in the search results. Topics range from the Winter Olympics Luge Crash to the death of Alexander McQueen and even to NASCAR Schedule. ...

Continue Reading

Baidu: Register.com replaced its DNS credentials for some guy in a chat room

Published: March 2, 2010 Reading time: 3 min

Last month, Baidu, the leading search engine in China, filed suit against US-based Internet registrar Register.com, in a legal event that took place at the height of the debate over Google’s continued business dealings with China. Baidu accused the registrar of changing its DNS records, so that customers were redirected to a completely different site purporting to represent the “Iranian Cyber Army.” But that original suit was heavily redacted, so we didn’t know the specifics of the alleged defacement. This week, US District Court in New York released the unredacted version of Baidu’s complaint, and now, as the man once said, we know the rest of the story. ...

Continue Reading

Skype gives up on Microsoft, will work with operators on Windows Mobile

Published: March 2, 2010 Reading time: 2 min

Popular instant messaging, voice chat, and video conferencing client Skype and Skype Lite are no longer available on Windows Mobile devices. The company says, “We’ve chosen to withdraw Skype Lite and Skype for Windows Mobile because we want to offer our new customers an improved mobile experience — much like the version that has proved so popular on the iPhone, and which is now available on Symbian phones. Our focus is on providing a rich user experience that allows you to enjoy free Skype-to-Skype and low cost calls as easily on the move as you do at your desktop. We felt that Skype Lite and Skype for Windows Mobile were not offering the best possible Skype experience.“ ...

Continue Reading

Search