Researchers from security vendor AlienVault have identified a variant of a recently discovered Internet Explorer exploit that is used to infect targeted computers with the PlugX remote access Trojan (RAT) program.The newly discovered exploit variant targets the same unpatched vulnerability in IE 6, 7, 8 and 9 as the original exploit, but uses slightly different code and has a different payload, AlienVault Labs manager Jaime Blasco said Tuesday... full story ![]()

A new piece of malware that infects point-of-sale (POS) systems has already been used to compromise thousands of payment cards belonging to customers of U.S. banks, according to researchers from Group-IB, a security and computer forensics company based in Russia. POS malware is not a new type of threat, but it's increasingly used by cybercriminals, said Andrey Komarov,...
pcworld.com (1 month and 23 days ago)
A recently patched Java remote code execution vulnerability is already being exploited by cybercriminals in mass attacks to infect computers with scareware, security researchers warn.The vulnerability, identified as CVE-2013-2423, was one of the 42 security issues fixed in Java 7 Update 21 that was released by Oracle last week, on April 16.According to Oracle's advisory at...
pcworld.com (27 days ago)

Since the start of the year, hackers have been exploiting vulnerabilities in Java to carry out a string of attacks against companies including Microsoft, Apple, Facebook and Twitter, as well as home users. Oracle has made an effort to respond faster to the threats and to strengthen its Java software, but security experts say the attacks are unlikely to let up any time soon....
pcworld.com (2 months and 9 days ago)

The attacks discovered last week that exploited a previously unknown Java vulnerability were likely launched by the same attackers that previously targeted security firm Bit9 and its customers, according to researchers from antivirus vendor Symantec. Security researchers from FireEye, who found the new Java attacks last week, said that the Java exploit installs a remote...
pcworld.com (2 months and 19 days ago)
Security researchers from Russian cybercrime investigations company Groub-IB have recently identified a new piece of malware designed to steal login credentials from specialized software used to trade stocks and other securities online.The malware targets Internet trading software called QUIK and FOCUS IVonline from Russian software development firms ARQA Technologies and...
pcworld.com (1 month and 2 days ago)
A recently found exploit that bypasses the sandbox anti-exploitation protection in Adobe Reader 10 and 11 is highly sophisticated and is probably part of an important cyberespionage operation, the head of the malware analysis team at antivirus vendor Kaspersky Lab said. The exploit was discovered Tuesday by researchers from security firm FireEye, who said that it was being...
pcworld.com (3 months and 6 days ago)

Researchers from security vendor FireEye have uncovered a new advanced persistent threat (APT) that uses multiple detection evasion techniques, including the monitoring of mouse clicks, to determine active human interaction with the infected computer. Called Trojan.APT.BaneChant, the malware is distributed via a Word document rigged with an exploit sent during targeted...
pcworld.com (1 month and 14 days ago)

Security researchers have identified an ongoing cyber-espionage campaign that compromised 59 computers belonging to government organizations, research institutes, think tanks and private companies from 23 countries in the past 10 days. The attack campaign was discovered and analyzed by researchers from security firm Kaspersky Lab and the Laboratory of Cryptography and...
pcworld.com (2 months and 24 days ago)

Researchers from security firm FireEye claim that attackers are actively using a remote code execution exploit that works against the latest versions of Adobe Reader 9, 10 and 11. “Today, we identified that a PDF zero-day [vulnerability] is being exploited in the wild, and we observed successful exploitation on the latest Adobe PDF Reader 9.5.3, 10.1.5, and 11.0.1,” the...
pcworld.com (3 months and 7 days ago)

Political activists from the Middle East were targeted in attacks that exploited a previously unknown Flash Player vulnerability to install a so-called lawful interception program designed for law enforcement use, security researchers from antivirus vendor Kaspersky Lab said Tuesday. Last Thursday, Adobe released an emergency update for Flash Player in order to address two...
pcworld.com (3 months and 7 days ago)
Review: FreeSpace 2 sim launches you...
Yahoo returns to list of most valuable...
Stephen King logs out of e-books and...
VMware launches network-savvy cloud service
Apple defends offshore decisions that...
How to Get First in Line for Xbox One...
Samsung rumored to roll out fingerprint...
The new consoles from Microsoft,...
With Xbox One, Microsoft Emphasizes TV...
The all-in-one console that recognises...
Dot Earth Blog: Kids (and Teachers) in...
Pandora's new Premieres station will let...
Laptop Week Review: The 13-Inch MacBook...
This Radio-Book Was The Future of Education
A Quadcopter's-Eye View Of The Costa...
Microsoft Confirms That The Xbox One...
WHAT Steven Spielberg Is Making a...
Summer classical 2013: San Francisco...
Rapper Chief Keef arrested at hotel near...
"Dancing with the Stars": Champion...
Summer jazz 2013: Festivals in San...
Harry Potter book with author notes sold...
Jessica Chastain Nabs Maui Film Fest Honor
Dennis Lehane Reteams With Leonardo...
Carol Burnett to receive Mark Twain...
Spider-Man STREET BALLIN' in NYC -- Is...
Melissa McCarthy -- FIRES Extra From...
Luke Skywalker's 'Star Wars' Levi's Up...
Yoking cognitive computing with customer service, IBM has launched a system that can reference...
Donations to WikiLeaks since January have only been enough to cover expenditures in essential...
If you have any expectations about the privacy of your Skype communications, you may want to...