Tag Archive for: widely

Backdoor built in to widely used tax app seeded last week’s NotPetya outbreak

Enlarge (credit: National Police of Ukraine)

The third-party software updater used to seed last week’s NotPetya worm that shut down computers around the world was compromised more than a month before the outbreak. This is yet another sign the attack was carefully planned and executed.

Researchers from antivirus provider Eset, in a blog post published Tuesday, said the malware was spread through a legitimate update module of M.E.Doc, a tax-accounting application that’s widely used in Ukraine. The report echoed findings reported earlier by Microsoft, Kaspersky Lab, Cisco Systems, and Bitdefender. Eset said a “stealthy and cunning backdoor” used to spread the worm probably required access the M.E.Doc source code. What’s more, Eset said the underlying backdoored ZvitPublishedObjects.dll file was first pushed to M.E.Doc users on May 15, six weeks before the NotPetya outbreak.

“As our analysis shows, this is a thoroughly well-planned and well-executed operation,” Anton Cherepanov, senior malware researcher for Eset, wrote. “We assume that the attackers had access to the M.E.Doc application source code. They had time to learn the code and incorporate a very stealthy and cunning backdoor. The size of the full M.E.Doc installation is about 1.5GB, and we have no way at this time to verify that there are no other injected backdoors.”

Read 7 remaining paragraphs | Comments

Technology Lab – Ars Technica

Snowden disclosures prompt warning on widely used computer security formula – NBCNews.com (blog)


RT

Snowden disclosures prompt warning on widely used computer security formula
NBCNews.com (blog)
SAN FRANCISCO (Reuters) – In the latest fallout from Edward Snowden's intelligence disclosures, a major U.S. computer security company warned thousands of customers on Thursday to stop using software that relies on a weak mathematical formula 
Snowden Disclosures Prompt Warning On Widely Used Computer Security Carbonated.tv
Deliberately flawed? RSA Security tells customers to drop NSA-related RT
Major US security company warns over NSA link to encryption formulaHispanicBusiness.com
Pacific Standard –The Guardian
all 31 news articles »

“computer security” – read more

Snowden disclosures prompt warning on widely used computer security formula – Reuters


RT

Snowden disclosures prompt warning on widely used computer security formula
Reuters
SAN FRANCISCO (Reuters) – In the latest fallout from Edward Snowden's intelligence disclosures, a major U.S. computer security company warned thousands of customers on Thursday to stop using software that relies on a weak mathematical formula 
Snowden Disclosures Prompt Warning On Widely Used Computer Security Carbonated.tv
Deliberately flawed? RSA Security tells customers to drop NSA-related RT
Major US security company warns over NSA link to encryption formulaThe Guardian
TucsonSentinel.com –Computing
all 33 news articles »

“computer security” – read more

Windows 8 more widely used than OS X, IE still on the rise

Net Market Share

In July, Windows 8 passed Windows Vista in market share. In August, it passed every single version of Apple’s OS X, combined. Internet Explorer 10 grew sharply, too, with almost one in five Internet users now on the latest version of Microsoft’s browser.

Net Market Share

Windows 8 made substantial gains in August, picking up 2.01 points of share. This is 37 percent growth on July’s figure. Windows XP also fell substantially, losing 3.53 points. With luck, this might mean that Windows XP is finally on the way out. It has less than a year until it stops receiving free security patches from Microsoft; once this happens, it will essentially be in a state of permanent zero day exploits. Even this level of decline isn’t enough to see the operating system eradicated in time for its end of life. That’s good news for spammers, who’ll have plenty of zombie machines to recruit into botnets, but bad news for everyone else.

Net Market Share

Net Market Share

Among desktop browsers, Internet Explorer was up 0.99 points, Firefox was up 0.59 points, and Safari was up 0.17 points. Chrome, however, was down significantly, losing 1.76 points. This means that yet again Chrome has closed in on Firefox, almost passing it, only to fall back.

Read 5 remaining paragraphs | Comments


    




Ars Technica » Technology Lab