The various spam campaigns leading to Blackhole
Posted on 14.09.2012
Bookmark and Share
At any given time, there is a considerable number of email spam campaigns that ultimately lead users to pages hosting exploit kits - more often then not the extremely popular Blackhole exploit kit.

Websense researchers warn about the ones that are currently hitting inboxes around the world: the first one takes the form of a voice mail notification from Microsoft Exchange servers, the second one poses as a ADP invoice reminder, the third one mimics a FDIC notification claiming the users' wire transfer ability was suspended, and the fourth one is a bogus thank you note that tries to trick the recipients into believing that they have somehow signed up for a premium service of accountingWEB.com (click on the screenshot to enlarge it):


"A lot of the email messages pretend to come from trusted sources (well-known establishments, or the victim's own infrastructure), and try to catch the reader off-guard by focusing their attention on something urgent, like money matters," the researchers point out.

The landing pages are different in all the attacks, but some look like they could have been set up since the recent advent of the new version of the Blackhole exploit kit.







Spotlight

Review: Logging and Log Management

Posted on 22 May 2013.  |  Every security practitioner should be aware of the overwhelming advantages of logging and perusing logs for discovering system intrusions. But logging and log management comes with its own set of difficulties.


Daily digest

By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
  

Weekly newsletter

With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.
  

 
DON'T
MISS

Thu, May 23rd
    COPYRIGHT 1998-2013 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //