<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress.com" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>worm &amp;laquo; WordPress.com Tag Feed</title>
	<link>http://en.wordpress.com/tag/worm/</link>
	<description>Feed of posts on WordPress.com tagged "worm"</description>
	<pubDate>Fri, 27 Nov 2009 14:29:42 +0000</pubDate>

	<generator>http://en.wordpress.com/tags/</generator>
	<language>en</language>

<item>
<title><![CDATA[iPhone, Primo worm ostile]]></title>
<link>http://paoblog.wordpress.com/2009/11/27/iphone-primo-worm-ostile/</link>
<pubDate>Fri, 27 Nov 2009 09:01:01 +0000</pubDate>
<dc:creator>paoblog</dc:creator>
<guid>http://paoblog.wordpress.com/2009/11/27/iphone-primo-worm-ostile/</guid>
<description><![CDATA[di Paolo Attivissimo Sono passate solo un paio di settimane dall&#8217;annuncio del primo worm per i]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p>di Paolo Attivissimo</p>
<p>Sono passate solo un paio di settimane dall&#8217;annuncio del <a href="http://attivissimo.blogspot.com/2009/11/worm-per-iphone-solo-se-jailbroken.html">primo worm per iPhone</a>, una burla sostanzialmente innocua che faceva comparire Rick Astley come sfondo del telefonino, ed è già arrivato il primo worm ostile che sfrutta la medesima tecnica per replicarsi e infettare il cellulare di Apple.</p>
<p>Il provider olandese <a href="http://www.xs4all.nl/veiligheid/security.php">XS4ALL</a> ha infatti scoperto che alcuni suoi clienti dotati di iPhone sono infettati da un programma che tenta attivamente di intrufolarsi negli iPhone altrui, saccheggiando i loro archivi di SMS alla ricerca di messaggini usati per autenticare le transazioni bancarie.</p>
<p>L&#8217;attacco funziona soltanto sugli iPhone che sono stati sbloccati dagli utenti usando i vari sistemi di <em>jailbreaking</em> disponibili in Rete per potervi installare software (in particolare SSH) senza dover passare dalle autorizzazioni (e dalle casse) di Apple, e soltanto se l&#8217;utente è stato così malaccorto da non cambiare la password di root standard del telefonino.</p>
<p>Le vittime si trovano il cellulare comandato da ordini che arrivano dalla Lituania: il worm provvede inoltre a cambiare la password di root dell&#8217;iPhone, in modo che il legittimo proprietario non possa riprenderne facilmente il controllo, e assegna un identificativo unico a ciascun iPhone infetto.</p>
<p>Il rimedio consigliato, in caso d&#8217;infezione, è un reset del telefonino usando l&#8217;apposita funzione di iTunes, che naturalmente annulla anche lo sblocco effettuato intenzionalmente dall&#8217;utente. Maggiori dettagli sul worm sono disponibili presso <a href="http://www.sophos.com/blogs/chetw/g/2009/11/21/malicious-iphone-worm-loose/">Sophos.com</a> e <a href="http://www.f-secure.com/weblog/archives/00001822.html">F-secure</a>.</p>
<p>E intanto, ironia della sorte, il creatore del primo worm per iPhone, il ventunenne Ashley Towns, trova impiego: è stato assunto da una società australiana che sviluppa software per il cellulare con il logo della mela morsicata.</p>
<p>Fonte: <a href="http://attivissimo.blogspot.com/">http://attivissimo.blogspot.com</a></p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Virus, Spyware, Worm, Trojan Horse, Rootkit, Malware, and Crimeware]]></title>
<link>http://soemarno91.wordpress.com/2009/11/27/virus-spyware-worm-trojan-horse-rootkit-malware-and-crimeware/</link>
<pubDate>Fri, 27 Nov 2009 03:51:11 +0000</pubDate>
<dc:creator>sumarno</dc:creator>
<guid>http://soemarno91.wordpress.com/2009/11/27/virus-spyware-worm-trojan-horse-rootkit-malware-and-crimeware/</guid>
<description><![CDATA[Apa seh bedanya virus, spyware, worm, trojan horse, rootkit, malware, crimeware&#8230;? Mereka semua]]></description>
<content:encoded><![CDATA[Apa seh bedanya virus, spyware, worm, trojan horse, rootkit, malware, crimeware&#8230;? Mereka semua]]></content:encoded>
</item>
<item>
<title><![CDATA[The Worm From Heaven]]></title>
<link>http://tennisspins.wordpress.com/2009/11/26/the-worm-from-heaven/</link>
<pubDate>Thu, 26 Nov 2009 21:14:21 +0000</pubDate>
<dc:creator>tennisspins</dc:creator>
<guid>http://tennisspins.wordpress.com/2009/11/26/the-worm-from-heaven/</guid>
<description><![CDATA[It was a perfect autumn day for a tennis match.  We were playing the last league match of the season]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p>It was a perfect autumn day for a tennis match.  We were playing the last league match of the season and had already locked up first place.  Our opponents today had been eliminated earlier and were playing only for pride.  One of my mottos is: “Watch out for those guys playing only for pride”.  As we approached the court we knew we were in for a tough match. </p>
<p>We took positions on the court to begin warm-ups.  I was relaxed and focused and ready to play my very best tennis.  As I was returning my opponent’s first forehand shot I heard this obscene noise piercing the afternoon’s solitude: “<strong>twaaaaaang</strong>”!  I had no idea where the annoying sound was coming from but it had to be awfully close.  Finally after a few more shuddering “twaaaaaangs” I determined that it was coming from my partner of all people.  Low and behold, he was playing <span style="text-decoration:underline;">without</span> a dampener!  I don’t think it even fazed him but it was sending vibrations up and down my spine similar to hearing chalk screech on a blackboard, but much worse.  I knew that I couldn’t continue playing under such extreme circumstances.  I had to put a stop to this immediately or I would be spending the next 30 days in the local sanitarium. </p>
<p>I asked him, “Did you lose your dampener”?  “I never use one” he replied, much to my shock and dismay.  I told him that if he relished any desire whatsoever to win this match that he was going to have to use one today.  He reluctantly agreed and I pulled out a nice assortment of miscellaneous little devices that I had accumulated over the years.  After much contemplation and study he chose a little green tennis ball shaped dampener and stuck it right above the bottom string.  I didn’t have the heart to tell him that rules dictated that he put it “below” the bottom string.  I wonder how in the world that rule ever came about. </p>
<p>Well, we resumed warm-ups and were almost ready to start the match when I heard that awful sound again, “twaaaaaang”!  The ear saving little tennis ball dampener had come out of his strings.  We searched the immediate area of the court for the elusive little device but it was nowhere to be found.  I was guessing it was in the next county based on how my partner struck the ball but that’s a story for another day.  By the time we were ready to begin the match he had gone through 6 dampeners.  I only had 2 left and was on the verge of panicking. </p>
<p>I was desperate as I searched through my Pro Supex Elite 9 Pack Bag (black and red, of course).  Finally, when I thought there was no way to avoid forfeiting the match, I found a pack of worms, the <span style="text-decoration:underline;">Forten Worm 2 Pack</span> to be specific.  I was saved!  Now we were ready to play the match! </p>
<p>The worm saved the day and fate smiled upon us as we pulled out a close three setter.  The little worm remained in his strings without a single escape and I was able to focus on the sweet sounds of topspin shots leaving the racket as opposed to the obnoxious “twaaaaaang”!  Immediately after the match I contacted The Tennis Depot and ordered a dozen packs of “<span style="text-decoration:underline;">Forten Worm 2 Packs</span>”.  I was never going to suffer through this crisis ever again!  Now I was well insured and you can bet that there is plenty of room in my Pro Supex Elite 9 Pack Bag to store plenty of worms, rackets and all of the other paraphernalia that sound freaks like me need to accessorize with. </p>
<p>Incidentally, these handy little dampeners can help prevent tennis elbow or least lessen the severity of the pain.  It’s a great idea to keep a few packs in your tennis bag if you are half as mentally fragile as I am.  Also, they would make a great Christmas gift for those tennis friends that you feel obligated to get something for but don’t want to spend a fortune on.                                                                                                                                            And, take it from me, you can’t have too many of them in your tennis  bag!      <a href="http://tennisspins.wordpress.com/files/2009/11/forten-worms3.jpg"><img class="alignnone size-medium wp-image-10" title="Forten Worms" src="http://tennisspins.wordpress.com/files/2009/11/forten-worms3.jpg?w=183" alt="" width="183" height="300" /></a></p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Crime Doesn't Pay, Except When You're Rick Rollin']]></title>
<link>http://theappleblog.com/2009/11/26/crime-doesnt-pay-except-when-youre-rick-rollin/</link>
<pubDate>Thu, 26 Nov 2009 15:24:11 +0000</pubDate>
<dc:creator>Liam Cassidy</dc:creator>
<guid>http://theappleblog.com/2009/11/26/crime-doesnt-pay-except-when-youre-rick-rollin/</guid>
<description><![CDATA[iPhone Malware has been getting an awful lot of coverage lately, hasn’t it? I’m sorry to add to it, ]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p><img class="size-full wp-image-36449 alignright" title="ikee-iphone-wallpaper" src="http://gigapple.wordpress.com/files/2009/11/ikee-iphone-wallpaper.jpg" alt="" width="171" height="249" /></p>
<p class="excerpt">iPhone Malware has been getting an <em>awful</em> lot of coverage lately, hasn’t it? I’m sorry to add to it, but sophos.com <a href="http://www.sophos.com/blogs/gc/g/2009/11/26/ikee-worm-author-job-iphone-app-firm/">reports</a> that the author of the Ikee iPhone worm has (somewhat predictably) earned himself a nice new job for his troubles.</p>
<p>Ashley Towns is twenty one years of age, Australian, sports a fair bit of lip-and-nose-metalware and is also the latest employee of <a href="http://mogeneration.com/">mogeneration</a>, a company that specializes in iPhone application development.</p>
<p>The Ikee worm was widely reported as the world’s first iPhone worm. It affected only iPhones that had been jailbroken, replacing their wallpaper with an image of 80s pop sensation Rick Astley and the headline text “Ikee is never going to give you up.” (Whether that makes it malicious or not depends entirely on your opinion of that coiffed crooner.) <!--more--></p>
<p>While Ikee didn’t do anything too nasty, an understanding of the precise security weakness the worm exploited was shared quickly on the Internet via widespread reporting in the tech press. Only a matter of days later, the Duh worm (also known as Ikee.B) was found in the Netherlands. Researchers discovered the Duh worm was based largely on Ikee, exploiting the same weak-password method; however this variant of Ikee was much more sinister, acquiring iPhone owners’ online banking information.</p>
<p>Of course, Towns’ can’t be held responsible for the Duh worm, but would Ikee.B have existed if not for Ikee? Didn’t Towns open the door for opportunistic malware authors looking for a way to take advantage of less diligent iPhone jailbreakers? Furthermore, is it appropriate he has been rewarded for his actions?</p>
<p>It’s that age-old argument; should malware authors be punished with heavy fines and jail sentences, or should they be gainfully employed by security companies, where their mad programming skillz can be used to benefit society?</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hacker behind iPhone worm lands job creating apps...for iPhones]]></title>
<link>http://mobilementioned.wordpress.com/2009/11/26/hacker-behind-iphone-worm-lands-job-creating-apps-for-iphones/</link>
<pubDate>Thu, 26 Nov 2009 14:09:51 +0000</pubDate>
<dc:creator>neatnew</dc:creator>
<guid>http://mobilementioned.wordpress.com/2009/11/26/hacker-behind-iphone-worm-lands-job-creating-apps-for-iphones/</guid>
<description><![CDATA[The 21-year-old Australian hacker who wrote the first iPhone worm lands a job developing software fo]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p>The 21-year-old Australian hacker who wrote the first iPhone worm lands a job developing software for the phones&#8230;. From BBC News. <a href="http://news.bbc.co.uk/go/rss/-/2/hi/technology/8380265.stm">Full story</a></p>
<p>This site may contain information about:  mobile contract.  The blog is also related to: cheap phones.</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Prima di Warcraft 4 c'è Starcraft II; nuovo worm su Facebook; Google Chrome OS; Windows 8 nel 2012; arrestato il Padrino dello spam]]></title>
<link>http://sonrayden.wordpress.com/2009/11/26/prima-di-warcraft-4-ce-starcraft-ii-nuovo-worm-su-facebook-google-chrome-os-windows-8-nel-2012-arrestato-il-padrino-dello-spam/</link>
<pubDate>Thu, 26 Nov 2009 13:50:13 +0000</pubDate>
<dc:creator>Luca Rosati</dc:creator>
<guid>http://sonrayden.wordpress.com/2009/11/26/prima-di-warcraft-4-ce-starcraft-ii-nuovo-worm-su-facebook-google-chrome-os-windows-8-nel-2012-arrestato-il-padrino-dello-spam/</guid>
<description><![CDATA[Blizzard: Warcraft 4? Ci stiamo pensando La software house californiana non dimentica la serie di RT]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p><a href="http://www.hwupgrade.it/news/videogiochi/blizzard-warcraft-4-ci-stiamo-pensando_30870.html">Blizzard: Warcraft 4? Ci stiamo pensando</a><br />
La software house californiana non dimentica la serie di <em>RTS</em> che l&#8217;ha resa definitivamente famosa, ma prima bisogna completare i lavori su <em><strong>Starcraft II</strong></em>.</p>
<p><a href="http://www.hwupgrade.it/news/sicurezza/nuovo-worm-via-facebook-attenzione-a-dove-si-clicca_30860.html">Nuovo worm via Facebook, attenzione a dove si clicca</a><br />
La diffusione a macchia d&#8217;olio di <em><strong>Facebook</strong></em> ha fatto di questo social network un vivaio molto prolifico per molti malintenzionati.</p>
<p><a href="http://www.ilsoftware.it/articoli.asp?id=5729">Google Chrome OS: cos&#8217;è e cosa non è</a><br />
La presentazione di un&#8217;anteprima di <em><strong>Chrome OS</strong></em> presso il quartier generale di <strong>Google</strong>, a Mountain View, ha permesso di liberare il campo da alcune informazioni che circolavano sulla stampa nelle scorse settimane.</p>
<p><a href="http://www.ilsoftware.it/articoli.asp?id=5718">Il 2012 vedrà la nascita del successore di Windows 7?</a><br />
Due slide, mostrate da <strong>Microsoft</strong> nel corso dell&#8217;annuale &#8220;<em>Professional Developers Conference</em>&#8221; (PDC) di Los Angeles, hanno stuzzicato la curiosità dei presenti.</p>
<p><a href="http://punto-informatico.it/2760388/PI/News/padrino-dello-spam-finisce-galera.aspx">Il Padrino dello spam finisce in galera</a><br />
Ha guadagnato milioni con le sue truffe a base di ingegneria sociale, titoli azionari gonfiati e posta spazzatura. Pagherà con gli interessi in una prigione federale USA.</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[iPhone worm creator lands software job]]></title>
<link>http://mobilementioned.wordpress.com/2009/11/26/iphone-worm-creator-lands-software-job/</link>
<pubDate>Thu, 26 Nov 2009 11:59:48 +0000</pubDate>
<dc:creator>neatnew</dc:creator>
<guid>http://mobilementioned.wordpress.com/2009/11/26/iphone-worm-creator-lands-software-job/</guid>
<description><![CDATA[The 21-year-old hacker who wrote the first iPhone worm lands a job developing software for the phone]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p>The 21-year-old hacker who wrote the first iPhone worm lands a job developing software for the phones&#8230;. From BBC News. <a href="http://news.bbc.co.uk/go/rss/-/2/hi/technology/8380265.stm">Full story</a></p>
<p>This site may contain information about:  cheap mobile phones.  The blog is also related to: pay monthly mobile phones.</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security Firm Warns of Smartphone Malware]]></title>
<link>http://komplettie.wordpress.com/2009/11/26/security-firm-warns-of-smartphone-malware/</link>
<pubDate>Thu, 26 Nov 2009 11:50:48 +0000</pubDate>
<dc:creator>komplettie</dc:creator>
<guid>http://komplettie.wordpress.com/2009/11/26/security-firm-warns-of-smartphone-malware/</guid>
<description><![CDATA[With jailbroken iPhones already being hit by both malicious and not-so-malicious worms already, secu]]></description>
<content:encoded><![CDATA[With jailbroken iPhones already being hit by both malicious and not-so-malicious worms already, secu]]></content:encoded>
</item>
<item>
<title><![CDATA[New Worm Attacks iPhones, Targets Mobile Banking]]></title>
<link>http://comsecllc.wordpress.com/2009/11/25/new-worm-attacks-iphones-targets-mobile-banking/</link>
<pubDate>Wed, 25 Nov 2009 18:17:00 +0000</pubDate>
<dc:creator>comsecllc</dc:creator>
<guid>http://comsecllc.wordpress.com/2009/11/25/new-worm-attacks-iphones-targets-mobile-banking/</guid>
<description><![CDATA[wired.comA second iPhone worm is in the wild, and unlike the jokey Australian worm authored by hacke]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p><a href="http://www.wired.com/gadgetlab/2009/11/new-worm-attacks-iphones-targets-mobile-banking/"><img src="http://3.bp.blogspot.com/__DuAStJeMkY/Sw11xMhjRBI/AAAAAAAAB7w/URlyRRi3y18/s200/2659619029_d09a3bb557_b-660x495.jpg" alt="" border="0" /></a><a href="http://www.wired.com/gadgetlab/2009/11/new-worm-attacks-iphones-targets-mobile-banking/"><span style="font-size:85%;">wired.com</span></a><br />A second iPhone worm is in the wild, and unlike the jokey Australian worm authored by hacker prankster Ikee two weeks ago, this one is dangerous.
<p>Unlike Ikee’s hack, which merely rick-rolled owners of infected iPhones, the new Dutch variant targets customers of the bank ING. When triggered, the worm redirects users visiting the banking site to an address in Lithuania which shows a fake login screen for ING online banking. It is essentially a phishing attack run on compromised iPhones.</p>
<p>The panic that will inevitably spread from this story is unjustified. First, if you are a regular iPhone customer you are safe, even if you are in the Netherlands. This is because, like the Ikee hack before it, the new worm will only work on a jailbroken, or hacked iPhone. Further, you will have to explicitly install SSH remote access, and then you will have to leave the root password at its default, which is <em>alpine</em>.</p>
<p><a href="http://www.wired.com/gadgetlab/2009/11/new-worm-attacks-iphones-targets-mobile-banking/">More&#8230;</a></p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[iPhone worm is 'more serious']]></title>
<link>http://mobilementioned.wordpress.com/2009/11/25/iphone-worm-is-more-serious/</link>
<pubDate>Wed, 25 Nov 2009 16:16:22 +0000</pubDate>
<dc:creator>neatnew</dc:creator>
<guid>http://mobilementioned.wordpress.com/2009/11/25/iphone-worm-is-more-serious/</guid>
<description><![CDATA[A second worm which infects modified iPhones has been discovered by security company F-Secure&#8230;]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p>A second worm which infects modified iPhones has been discovered by security company F-Secure&#8230;. From BBC News. <a href="http://news.bbc.co.uk/go/rss/-/2/hi/technology/8373739.stm">Full story</a></p>
<p>This site may contain information about:  mobile phones offers.  The blog is also related to: contract phone.</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[AVG Peringatkan Pengguna Facebook]]></title>
<link>http://shareberita.wordpress.com/2009/11/25/avg-peringatkan-pengguna-facebook/</link>
<pubDate>Wed, 25 Nov 2009 11:31:53 +0000</pubDate>
<dc:creator>koresh07</dc:creator>
<guid>http://shareberita.wordpress.com/2009/11/25/avg-peringatkan-pengguna-facebook/</guid>
<description><![CDATA[Anda pengguna facebook? berhati-hatilah jika ada gambar seorang wanita yang menantang. JANGAN DIKLIK]]></description>
<content:encoded><![CDATA[Anda pengguna facebook? berhati-hatilah jika ada gambar seorang wanita yang menantang. JANGAN DIKLIK]]></content:encoded>
</item>
<item>
<title><![CDATA[[NOTICIA] Apple "se pone las pilas" contra los gusanos de los Hackers...]]></title>
<link>http://tjuanma.wordpress.com/2009/11/25/noticia-apple-se-pone-las-pilas-contra-los-gusanos-de-los-hackers/</link>
<pubDate>Wed, 25 Nov 2009 09:54:46 +0000</pubDate>
<dc:creator>tjuanma</dc:creator>
<guid>http://tjuanma.wordpress.com/2009/11/25/noticia-apple-se-pone-las-pilas-contra-los-gusanos-de-los-hackers/</guid>
<description><![CDATA[Hace ya un poco que os hablo de gusanos creados por terceros para fastidiarnos el iPhone o robarnos ]]></description>
<content:encoded><![CDATA[Hace ya un poco que os hablo de gusanos creados por terceros para fastidiarnos el iPhone o robarnos ]]></content:encoded>
</item>
<item>
<title><![CDATA[R.I.P Kevin "Squingy" Bennett]]></title>
<link>http://bigphillythelife.wordpress.com/2009/11/24/ripsquingy/</link>
<pubDate>Wed, 25 Nov 2009 07:52:12 +0000</pubDate>
<dc:creator>Big Philly</dc:creator>
<guid>http://bigphillythelife.wordpress.com/2009/11/24/ripsquingy/</guid>
<description><![CDATA[Early Tuesday morning, the reggae world lost one it&#8217;s most charismatic and exciting selectors:]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p style="text-align:center;"><a href="http://bigphillythelife.wordpress.com/files/2009/11/rip-squingy.jpg"><img class="aligncenter size-full wp-image-670" title="rip-squingy" src="http://bigphillythelife.wordpress.com/files/2009/11/rip-squingy.jpg" alt="" width="394" height="604" /></a></p>
<p style="text-align:center;">Early Tuesday morning, the reggae world lost one it&#8217;s most charismatic and exciting selectors: Kevin &#8220;Squingy&#8221; Bennett of &#8220;Bass Odyssey&#8221;</p>
<p style="text-align:center;">Squingy has been battling an undisclosed terminal sickness for the past year or so and unfortunately, he succumb to his illness in a Tampa, Florida hospital yesterday morning.</p>
<p style="text-align:center;">He will be sorely missed by his family, friends, fans and fellow soundsmen&#8230;</p>
<p style="text-align:center;">I will be dedicating the remainder of my 2009 parties as an MC to &#8220;Squingy&#8221;, including &#8220;One Remarkable Year&#8221; on Friday November 27th @ Woo Lounge, &#8220;Rhyme &#38; Wine&#8221; on Friday December 4th @ Premium Rhythm Bar and &#8220;The Triple Threat&#8221; on Saturday December 19th @ Tota Lounge.</p>
<p style="text-align:center;">If you have never seen or heard Mr. Bennett &#8220;talk de tings dem&#8221;, then I suggest you do your research asap, as he was one of the most incredible and vibrant selectors of all time.</p>
<p style="text-align:center;"><span style='text-align:center; display: block;'><object width='425' height='350'><param name='movie' value='http://www.youtube.com/v/YFzrBfn_XvM&#038;rel=1&#038;fs=1&#038;showsearch=0&#038;hd=0' /><param name='allowfullscreen' value='true' /><param name='wmode' value='transparent' /><embed src='http://www.youtube.com/v/YFzrBfn_XvM&#038;rel=1&#038;fs=1&#038;showsearch=0&#038;hd=0' type='application/x-shockwave-flash' allowfullscreen='true' width='425' height='350' wmode='transparent'></embed></object></span></p>
<p style="text-align:center;">R.I.P. Squingy&#8230;</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Conficker cumple un año entre las amenazas informáticas de mayor propagación]]></title>
<link>http://gabrielcarpio.wordpress.com/2009/11/24/conficker-cumple-un-ano-entre-las-amenazas-informaticas-de-mayor-propagacion/</link>
<pubDate>Tue, 24 Nov 2009 21:54:22 +0000</pubDate>
<dc:creator>gcarpio</dc:creator>
<guid>http://gabrielcarpio.wordpress.com/2009/11/24/conficker-cumple-un-ano-entre-las-amenazas-informaticas-de-mayor-propagacion/</guid>
<description><![CDATA[El gusano que aprovecha una vulnerabilidad en el sistema operativo Microsoft Windows persiste encabe]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p style="text-align:justify;">El gusano que aprovecha una vulnerabilidad en el sistema operativo Microsoft Windows persiste encabezando el ranking de los códigos malicioso más propagados, a más de doce meses de su aparición.</p>
<p><a href="http://gabrielcarpio.wordpress.com/files/2009/11/0001conficker.jpg"><img class="alignnone size-medium wp-image-574" title="0001conficker" src="http://gabrielcarpio.wordpress.com/files/2009/11/0001conficker.jpg?w=300" alt="" width="300" height="212" /></a></p>
<p style="text-align:justify;">Conficker lleva ya once meses consecutivos entre los tres primeros puestos del ranking de propagación de amenazas de ESET, a pesar de que ha pasado más de un año de su aparición, según informa la compañía de seguridad informática ESET.</p>
<p style="text-align:justify;">A fines de noviembre del año pasado, el gusano dio inicio a su propagación, aprovechando la vulnerabilidad en uno de los servicios del sistema operativo Microsoft Windows, que afecta a las versiones Windows 2000, Windows XP, Windows 2003, Windows Vista y Windows Server 2008. Microsoft había alertado a sus usuarios sobre la misma el 23 de octubre de 2008 en su boletín de seguridad MS08-067, poniendo también a disposición el parche para solucionar la cuestión.</p>
<p style="text-align:justify;">El Laboratorio de ESET para Latinoamérica alertó de la amenaza en su Blog, donde también está disponible la dirección de descarga de la actualización de Microsoft para los usuarios que aún no la han descargado:<br />
<a href="http://blogs.eset-la.com/laboratorio/2008/11/29/gusano-conficker-parchee-inmediatamente/" target="_blank">http://blogs.eset-la.com/laboratorio/2008/11/29/gusano-conficker-parchee-inmediatamente/</a></p>
<p style="text-align:justify;">La misma vulnerabilidad había sido explotada en primer lugar por Win32/Gimmiv, un gusano diseñado principalmente para robar información, tal como nombres de usuario y contraseñas de MSN Messenger, Outlook Express e Internet Explorer, así como también cookies almacenadas en el sistema. A pesar de su rápida aparición, Gimmiv se propagó principalmente en Asia y no obtuvo altos índices de infección ni perduró en el tiempo, como sí ocurrió con el caso de Conficker.</p>
<p style="text-align:justify;">“Conficker logró infectar a millones de equipos en todo el mundo en apenas pocos días, incluyendo a la Marina Francesa. El hecho de que Microsoft pusiera una recompensa, que finalizando el año 2009 aún no ha sido cobrada por nadie dado que los responsables aún no han sido encontrados, corrobora la gravedad y masividad de la amenaza”, aseguró Cristian Borghello, Director de Educación de ESET para Latinoamérica.</p>
<p style="text-align:justify;">El gusano lleva todo lo que va del 2009 integrando el top 3 de códigos maliciosos con mayor índice de propagación de acuerdo al ranking de amenazas destacadas de ESET y la propagación del malware en América Latina aumenta en relación al resto del mundo.</p>
<p style="text-align:justify;">Para más información acerca de la historia de Conficker, puede leer un artículo preparado por los expertos de ESET Latinoamérica titulado Conficker en números: <a href="http://www.eset-la.com/centro-amenazas/2241-conficker-numeros" target="_blank">http://www.eset-la.com/centro-amenazas/2241-conficker-numeros</a></p>
<p><span style="color:#ff6600;">Fuente:</span> <a href="http://www.noticiasdeinformatica.info/noticias/24-seguridad-informca/859-conficker-cumple-un-ano-entre-las-amenazas-informaticas-de-mayor-propagacion" target="_blank">http://www.noticiasdeinformatica.info/noticias/24-seguridad-informca/859-conficker-cumple-un-ano-entre-las-amenazas-informaticas-de-mayor-propagacion</a></p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[New worm making its way 'ROUND' Facebook]]></title>
<link>http://brothatech.com/2009/11/24/new-worm-making-its-way-round-facebook/</link>
<pubDate>Tue, 24 Nov 2009 20:19:20 +0000</pubDate>
<dc:creator>Brotha Tech</dc:creator>
<guid>http://brothatech.com/2009/11/24/new-worm-making-its-way-round-facebook/</guid>
<description><![CDATA[&#8220;Want To C Something Hot&#8230;Click da Button, Baby!&#8221; Brotha Tech&#8217;s suggestion is]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p>&#8220;Want To C Something Hot&#8230;Click da Button, Baby!&#8221;</p>
<p>Brotha Tech&#8217;s suggestion is that you NOT click da button&#8230;&#8230;&#8230;Baby</p>
<p><strong>The Lowdown:</strong></p>
<p>The folks over at AVG: <a href="http://blogs.avg.com/us-en/blogs">Antivirus and Security Software</a> have uncovered a Facebook worm that infects your <a href="http://facebook.com">Facebook</a> page (and prolly your computer) and is waiting to infect all others who click on the curvy sista in the sexy undergarments that is now lamented on your FB page.</p>
<p>By clicking the pic you noticed on a friend&#8217;s page, it takes you to another site with a larger view of the temptress.  If you roll the dice and &#8220;click da button, baby&#8221; it will take you to an adult site.  <del datetime="2009-11-24T19:58:20+00:00">After a couple more clicks</del>, Instantly you realize that&#8217;s not where you want to be and browse back to you FB page, the image is now pasted on your wall working it&#8217;s magic, and just waiting for others to follow suit.</p>
<p>Here is video from AVG showing how the worm works.</p>
<p><span style='text-align:center; display: block;'><object width='425' height='350'><param name='movie' value='http://www.youtube.com/v/uOBUSzugzFA&#038;rel=1&#038;fs=1&#038;showsearch=0&#038;hd=0' /><param name='allowfullscreen' value='true' /><param name='wmode' value='transparent' /><embed src='http://www.youtube.com/v/uOBUSzugzFA&#038;rel=1&#038;fs=1&#038;showsearch=0&#038;hd=0' type='application/x-shockwave-flash' allowfullscreen='true' width='425' height='350' wmode='transparent'></embed></object></span></p>
<p>Be safe out there on these social networking sites folks!</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Has the worm wriggled into your iPhone?]]></title>
<link>http://aimeesteen.wordpress.com/2009/11/24/has-the-worm-wriggled-into-your-iphone/</link>
<pubDate>Tue, 24 Nov 2009 19:00:39 +0000</pubDate>
<dc:creator>aimeesteen</dc:creator>
<guid>http://aimeesteen.wordpress.com/2009/11/24/has-the-worm-wriggled-into-your-iphone/</guid>
<description><![CDATA[&quot;Ikee is never gonna give you up&quot; It was only a matter of time before it happened again. A]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><div id="attachment_127" class="wp-caption aligncenter" style="width: 310px"><a href="http://aimeesteen.wordpress.com/files/2009/11/rick-astley-phone2.jpg"><img class="size-full wp-image-127" title="rick astley phone" src="http://aimeesteen.wordpress.com/files/2009/11/rick-astley-phone2.jpg" alt="" width="300" height="225" /></a><p class="wp-caption-text">&#34;Ikee is never gonna give you up&#34;</p></div>
<p>It was only a matter of time before it happened again. Another worm has found its way into iPhones.</p>
<p>Luckily for us, it’s based in the Netherlands at the moment and is busy trying to get hold of bank details, apparently, as it attacks those using their phones for internet banking.</p>
<p>It’s only affecting jail-broken phones (mobiles that have been modified to accept non-Apple software – tut-tut) and have <a href="http://en.wikipedia.org/wiki/Secure_Shell">SSH</a> (secure shell) installed and haven’t changed the password.</p>
<p>The worm was discovered by security company <a href="http://www.f-secure.com/weblog/archives/00001822.html">F-Secure</a>, and research director Mikko Hypponen told the <a href="http://news.bbc.co.uk/1/hi/technology/8373739.stm">BBC</a>:</p>
<p><span style="color:#ffffff;">&#8220;It&#8217;s the second iPhone worm ever and the first that&#8217;s clearly malicious &#8211; there&#8217;s a clear financial motive behind it.&#8221;</span></p>
<p>Still, it could be worse. You could be getting a picture of Rick Astley imprinted on your iPhone. Wait – wasn’t that the <a href="http://www.f-secure.com/weblog/archives/00001814.html">last worm</a>…?</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[How To Clean Up The Duh iPhone Worm]]></title>
<link>http://chimac.net/2009/11/24/how-to-clean-up-the-duh-iphone-worm/</link>
<pubDate>Tue, 24 Nov 2009 18:33:39 +0000</pubDate>
<dc:creator>chimac</dc:creator>
<guid>http://chimac.net/2009/11/24/how-to-clean-up-the-duh-iphone-worm/</guid>
<description><![CDATA[Very good instructions including a step by step of how to inoculate yourself if you are testing Jail]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p>Very good instructions including a step by step of how to inoculate yourself if you are testing Jailbreaking for educational reasons.  Click <a href="http://www.darkreading.com/blog/archives/2009/11/how_to_cleanup.html;jsessionid=SPDG5ZIFODKFDQE1GHPSKH4ATMY32JVN" target="_self">here</a> to read.</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[iPhone worm zet jailbreakers in kwaad daglicht]]></title>
<link>http://timoverbeek.wordpress.com/2009/11/24/iphone-worm-zet-jailbreakers-in-kwaad-daglicht/</link>
<pubDate>Tue, 24 Nov 2009 17:49:12 +0000</pubDate>
<dc:creator>timo395</dc:creator>
<guid>http://timoverbeek.wordpress.com/2009/11/24/iphone-worm-zet-jailbreakers-in-kwaad-daglicht/</guid>
<description><![CDATA[De uitbraak van de eerste echte iPhone worm heeft ervoor gezorgd dat veel mensen denken dat gejailbr]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><div id="content"><strong>De uitbraak van de <a href="http://www.security.nl/artikel/31542/1/Nieuwe_worm_bouwt_eerste_iPhone_botnet.html" target="_blank">eerste</a> <a href="http://www.security.nl/artikel/31549/1/iPhone_worm_valt_ING-klanten_aan.html" target="_blank"><strong>echte</strong></a> <a href="http://www.security.nl/artikel/31552/1/iPhone_botnet_raakt_controle_kwijt.html" target="_blank">iPhone</a> worm heeft ervoor gezorgd dat veel mensen denken dat gejailbreakte iPhones standaard kwetsbaar zijn, terwijl dat helemaal niet het geval is, aldus Paul Durden van <a href="http://www.iphoneclub.nl/" target="_blank"><strong>iPhoneclub.nl</strong></a>. De worm weet zich via het standaard SSH wachtwoord “alpine” naar binnen te wurmen. Het is echter de gebruiker die zelf SSH moet installeren. “Er is geen enkele jailbreakmethode die standaard (Open)SSH installeert. Gebruikers hebben na een jailbreak toegang tot de package installer Cydia, waarmee ze zelf (Open)SSH kunnen installeren als ze dat willen”, laat Durden in een interview met Security.nl weten. Hij waarschuwt dat deze gebruikers daarmee zelf de spreekwoordelijke deur voor kwaadwillenden openzetten.</strong><a href="open_image(2420)"><img class="alignleft" src="http://www.security.nl/image/2420/1" alt="" width="100" height="117" /></a>Toch blijft het verwonderlijk dat mensen wel SSH installeren, maar vervolgens niet het standaard wachtwoord wijzigen. “Waarschijnlijk maken ze gebruik van verouderde handleidingen die ze ergens op Internet gevonden hebben. Sommige gebruikers maken van SSH in combinatie met WinSCP gebruik om over Wi-Fi bestanden over te zetten naar de iPhone.” Betere alternatieven zijn volgens Durden programma’s als iPhoneBrowser, DiskAid en de Windows Explorer extensie iPhone Folders. Die werken zowel sneller omdat ze via USB lopen en zijn veiliger voor beginnende gebruikers.</p>
<p><strong>Vrijheid</strong><br />
Scott McIntyre van XS4ALL legde een deel van de verantwoordelijkheid bij Apple, omdat het bedrijf de <a href="http://www.security.nl/artikel/31549/1/iPhone_worm_valt_ING-klanten_aan.html" target="_blank">noodzaak</a> voor het jailbreaken zou moeten wegnemen. Gebruikers zouden zich met de standaard iPhone gevangen voelen. Critici merken op dat veel jailbreakers niet voor apps willen betalen en daarom tot het kraken overgaan. Volgens Durden is de voornaamste reden dat jailbreakers de vrijheid willen hebben om hun eigendom te gebruiken zoals zij dat zelf willen. Hij vergelijkt het met een laptop waarop een besturingssysteem geïnstalleerd staat waarop je geen toegang tot het Administrator- of root-account hebt.</p>
<p>“Als je software wilt installeren moet je maar hopen dat de software toe wordt gestaan door het bedrijf waarvan je de computer hebt gekocht; na een lange en ondoorzichtige procedure. Als de software tot inkomstenderving kan leiden van de producent of de zakenpartners ervan, weet je van tevoren dat de applicatie niet zal worden toegelaten (Google Voice) of alleen met allerlei beperkingen (Skype is bijvoorbeeld standaard alleen over Wi-Fi te gebruiken).”</p>
<p>Hij wijst ook naar Apple, dat zo goed en kwaad als het gaat de winst op de iPhone zou willen maximaliseren. “En dat gaat nu eenmaal ten koste van de vrijheid van de eindgebruiker.” Wat betreft de situatie met het installeren van illegale software, is die volgens Durden niet veel anders dan op een computer. “Als je volledige toegang tot je PC hebt, kun je ook illegale software installeren, maar ik denk niet dat veel mensen dat zouden noemen als de voornaamste reden waarom ze volledige toegang tot hun PC (en/of besturingssysteem) willen hebben. Bij vrijheid hoort ook de eigen verantwoordelijkheid om op een verantwoordelijke manier met die vrijheid om te gaan.” Eerder besprak Durden in <a href="http://www.iphoneclub.nl/39056/jailbreaken-anno-3-x-waarom-eigenlijk/" target="_blank">dit artikel</a> redenen om een iPhone of iPod te jailbreaken.</p>
<p><strong>Wachtwoord</strong><br />
Wie OpenSSH installeert krijgt een waarschuwing om het standaard wachtwoord van het iPhone OS te wijzigen. “De maker van Cydia Jay Freeman heeft overwogen om gebruikers bij de installatie van OpenSSH te dwingen het wachtwoord te wijzigen, maar dit stuitte op bezwaren van een groep gebruikers die over het algemeen niet graag betutteld wordt”, laat Durden weten. Ook hij hoopt van harte dat Apple gebruikers volledige toegang tot hun iPhone of iPod touch geeft, maar dat lijkt een illusie. “Zolang er meer geld verdiend kan worden met het beperken van deze vrijheid zie ik dat zonder wetgeving die hen daartoe dwingt niet snel gebeuren.”</p>
<p>Doordat de media noemt dat alleen gejailbreakte iPhones kwetsbaar zijn, komt het imago van deze groep niet ten goede. “De indruk ontstaat daardoor al snel dat de schuldige in het verhaal de &#8216;jailbreak&#8217; van de iPhone of iPod touch is; terwijl alleen het ondoordachte handelen van de eindgebruiker het risico heeft veroorzaakt”, merkt Durden op. “Omdat ik denk dat de toekomstige regelgeving met betrekking tot de balans tussen de belangen van de producent (in de zin van omzet/winst) en de vrijheid van de consument, vooral af zal hangen van hoe het kat-en-muis-spel in de praktijk verloopt, is het jammer dat de muis ten onrechte een slechte naam krijgt.”</p>
<p><strong>Ongeschikt</strong><br />
Sophos greep het incident aan om te zeggen dat iPhones <a href="http://www.security.nl/artikel/31557/1/%22iPhone_ongeschikt_voor_bedrijfsomgeving%22.html" target="_blank">ongeschikt</a> voor bedrijven zijn, omdat ze geen status informatie kunnen doorgeven, zowel bij de normale als gejailbreakte versie. Durden is het niet met de kritiek eens. “Ik zie de iPhone als een stukje hardware dat het beste te vergelijken is met een pocket computer. Als je de uitspraken van Sophos door zou trekken naar pocket computers en bijvoorbeeld laptops, zou het betekenen dat deze in principe allemaal ook niet veilig zijn voor gebruik in een bedrijfsomgeving.” Daarnaast is het wel eenvoudig om te achterhalen of een iPhone gejailbreakt is of niet, gaat Durden verder.</p>
<p>Naast het niet wijzigen van de SSH login, waarschuwen sommige critici dat het installeren van vreemde code op een apparaat met zoveel vertrouwelijke informatie niet verstandig is. De software die een gejailbreakte telefoon kan installeren wordt verspreid via repositories waar de software, net zoals bij Apple, ook wordt doorgelicht voordat deze beschikbaar wordt gemaakt. “Het verschil zit hem er vooral in welke software niet wordt toegelaten. Bij Apple is dit een lange lijst van beperkingen, bij de eigenaars van de repositories in Cydia is dit eigenlijk vooral beperkt tot software die schade toe zou kunnen brengen aan de iPhone of iPod touch van de eindgebruiker of software die het mogelijk maakt om gekraakte software te installeren (en dus schade doet aan de ontwikkelaars). Je zult dus in de standaard repositories van Cydia ook geen &#8220;warez&#8221; tegen komen.”</p>
<p>Het lijkt zelfs of “jailbreakers” in dit geval beter af zijn dan doorsnee AppStore gebruikers. Er zijn namelijk verschillende bedrijven die Apple’s online winkel gebruiken om zonder medeweten van de gebruiker allerlei persoonlijke informatie over hem of haar te verzamelen. Daarnaast stelde de maker van Cydia een applicatie beschikbaar genaamd &#8220;<a href="http://www.iphoneclub.nl/33648/saurik-brengt-privacy-applicatie-privacy-voor-iphone-uit-cydia/" target="_blank">PrivaCy</a>&#8220;, die een opt-out voor het verzamelen van deze informatie mogelijk maakt.</p>
<p><strong>Bewustzijn</strong><br />
Ondanks de “5 euro idioot” en Rick Astley malware, waren en zullen er nog ongetwijfeld nog voldoende gebruikers zijn die hun SSH login niet hebben aangepast. Mogelijk omdat ze niet weten dat de software is geïnstalleerd of hoe dit moet. “Security leeft niet echt bij de gemiddelde iPhone-gebruiker, net zoals dat security waarschijnlijk niet echt leeft voor de gemiddelde Windows-gebruiker.” Durden merkt op dat iPhone-gebruikers in dit geval nog de luxe hebben dat er weinig is om bezorgd over te zijn. “Maar het zelf installeren van een SSH-service zonder het standaard root-wachtwoord te veranderen is natuurlijk wel het andere uiterste.”</p>
<p>Apple heeft aangegeven dat het jailbreaking harder wil gaan aanpakken, wat gezien het aantal kwetsbare gebruikers misschien niet eens zo’n slecht idee is. Durden is echter faliekant tegen zo’n draconische maatregel. “Zoals gezegd is voor vrijheid ook een zekere mate van verantwoordelijkheid nodig. Ik zou er zeker geen voorstander van zijn om de vrijheid van velen vergaand te beperken, om onverantwoordelijk gedrag van weinigen te voorkomen.”</p>
<p>Volgens Durden leert de laatstgenoemde groep gebruikers op dit moment een harde les. “Maar uiteindelijk valt het risico dan ook onder hun eigen verantwoordelijkheid. De vrijheid van iedereen zou wat mij betreft zover moeten strekken als mogelijk is zonder inbreuk te maken op de vrijheid van een ander.”</p>
</div>
<p><a href="http://www.security.nl/artikel/31575/1/iPhone_worm_zet_jailbreakers_in_kwaad_daglicht.html"> </a></p>
<div><a href="http://www.security.nl/artikel/31575/1/iPhone_worm_zet_jailbreakers_in_kwaad_daglicht.html">bron</a></div>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Facebook Worm Spreads with a Lurid Lure]]></title>
<link>http://joetheflow.wordpress.com/2009/11/24/facebook-worm-spreads-with-a-lurid-lure/</link>
<pubDate>Tue, 24 Nov 2009 16:25:39 +0000</pubDate>
<dc:creator>joetheflow</dc:creator>
<guid>http://joetheflow.wordpress.com/2009/11/24/facebook-worm-spreads-with-a-lurid-lure/</guid>
<description><![CDATA[Tue, November 24, 2009 — IDG News Service — Some Facebook users have been infected with a worm after]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p><!-- ARTICLE CONTENT GOES HERE -->Tue, November 24, 2009 		  			— 		  				 												IDG News Service — Some Facebook users have been infected with a worm after clicking on an image of a scantily clad woman, which then redirects the victims to a pornography site, according to security researchers.</p>
<p>The worm posts an image on a victim&#8217;s Facebook Wall with a photo of a woman in a bikini and the message &#8220;click &#8216;da button, baby.&#8221; Wall posts are viewable by a Facebook user&#8217;s friends.</p>
<p>If a friend clicks on the image and is logged into Facebook, the image is then is posted to their own Wall. Their Web browser will then open a Web page with a larger version of the same image. A further click on &#8220;da button&#8221; redirects the friend to a pornography site, according to Roger Thompson chief research officer for antivirus vendor AVG Technologies. Thompson posted a video of the attack on his blog. [<a href="http://www.cio.com/article/508742/Facebook_Worm_Spreads_with_a_Lurid_Lure?source=rss_all" target="_blank">read: CIO</a>]</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Worm Has Turned: iPhone Exploit Gets Nasty]]></title>
<link>http://theappleblog.com/2009/11/24/the-worm-has-turned-iphone-exploit-gets-nasty/</link>
<pubDate>Tue, 24 Nov 2009 14:16:53 +0000</pubDate>
<dc:creator>Liam Cassidy</dc:creator>
<guid>http://theappleblog.com/2009/11/24/the-worm-has-turned-iphone-exploit-gets-nasty/</guid>
<description><![CDATA[Last week the news about yet another non-belligerent iPhone worm did the rounds and people responded]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p><img class="alignright size-full wp-image-36292" title="wormcode" src="http://gigapple.wordpress.com/files/2009/11/wormcode.jpg" alt="" width="210" height="140" /></p>
<p class="excerpt">Last week the news about yet another <a href="http://theappleblog.com/2009/11/09/jailbreakers-first-iphone-worm-discovered-features-rick-astley/">non-belligerent iPhone worm</a> did the rounds and people responded by saying things like “How silly jailbreaker’s are for not changing their SSH root passwords,” and “It’s only a matter of time until a worm appears that’s not so friendly…” OK, yes, geeky people said those things. <em>Normals</em> will likely never know that jailbreaking is something you can do to a phone.</p>
<p>Well, the predictions of gloom have proven true. Over the last few days, and <a href="http://www.macobserver.com/tmo/article/jailbroken_iphones_hit_with_another_worm/">reported</a> by The Mac Observer, a new worm has been identified. This one, (so-far limited to iPhone owners in the Netherlands), takes advantage of the exact same SSH-exploit as the previous worm. Once on a user’s iPhone, it circumvents Mobile Safari’s anti-phishing technology to present a spoof of a popular banking website. Users are tricked into handing over their online banking authentication details. The worm spreads from iPhone to iPhone, but is limited to jailbroken handsets connected to the same Wi-Fi network. <!--more--></p>
<p>Apple has weighed-in with its own sage wisdom and advice on the matter. <a href="http://www.loopinsight.com/2009/11/23/apple-responds-to-reports-of-new-iphone-worm/">Speaking</a> to The Loop’s Jim Dalrymple, Apple spokesperson Natalie Harrison said:</p>
<blockquote><p>The worm affects only a very specific set of iPhone users who have jail broken their iPhones and hacked it with unauthorized software. As we’ve said before, the vast majority of customers do not jailbreak their iPhones, and for good reason. These hacks not only violate the warranty, they will also cause the iPhone to become unstable and not work reliably.</p></blockquote>
<p>If you live in the Netherlands and have jailbroken your iPhone and installed SSH, you need to change the default password to protect yourself from this particular exploit. Just don&#8217;t think you&#8217;ll be safe &#8212; Apple might keep the iPhone platform locked-down tight, but you can&#8217;t argue against the obvious security advantages of doing so. To date, there have been four confirmed worms &#8220;in the wild&#8221; on jailbroken iPhones. How many confirmed worms have appeared in the wild that affect non-jailbroken iPhones? There you have it.</p>
<h3>The Real Question Is…</h3>
<p>But the real question, as I see it, is this; who jailbreaks any more? I mean, <em>really</em>… who? Why? The single biggest reason people originally went to the trouble of jailbreaking their iPhones was due to frustration at the lack of native apps. (Back in the early days of iPhone ownership, and before the app store existed, only Apple’s own home-grown apps were locally installed on the device. Every third-party apps ran inside Mobile Safari and, therefore, required access to the Internet.) I did a lot of travel back then, usually by air and train, so I didn&#8217;t always have a reliable Internet connection; this rendered most of my web apps useless. That annoyed me, and I very nearly did the whole jailbreaking thing just so I could install applications locally that would work irrespective of an active Internet connection. (Ultimately I wussed-out, too afraid I’d permanently mess-up my precious &#8212; and expensive &#8212; iPhone.)</p>
<p>But that was then, and times have changed.. What other compelling reasons were there to void Apple’s iPhone warranty? MMS, video recording, exchange server support, multitasking and Copy &#38; Paste were the “most missed” features. Today we have more apps than you can shake an iPhone at. We have MMS and video recording, exchange support <em>and</em> copy &#38; paste.</p>
<p>The only thing missing is “true” multitasking, but for the vast majority of iPhone owners (for whom multitasking is another way of saying “I want instant messaging!”), Apple’s Push Notification Service does a decent job of balancing productive multitasking with preserving battery life.</p>
<p>So… <em>why</em> jailbreak? Is it a form of protest against Apple’s broken application approval process? Is it because you absolutely <em>must</em> replace the default icons with something far less classy? Perhaps you can&#8217;t live without tethering? Tell us in the comments the (few) remaining reasons for jailbreaking an iPhone.</p>
<p>Just please don’t say it’s for geek cred… I might cry!</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[iPhone Worm]]></title>
<link>http://myxaab.wordpress.com/2009/11/24/iphone-worm/</link>
<pubDate>Tue, 24 Nov 2009 12:35:05 +0000</pubDate>
<dc:creator>wsw1jaya</dc:creator>
<guid>http://myxaab.wordpress.com/2009/11/24/iphone-worm/</guid>
<description><![CDATA[Yesterday, I stumble upon an article in CNet. &#8220;Another iPhone worm, but this one is serious]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p>Yesterday, I stumble upon an article in CNet. &#8220;<a title="Another iPhone worm" href="http://news.cnet.com/8301-13506_3-10403425-17.html?part=rss&#38;subj=news&#38;tag=2547-1_3-0-20" target="_blank">Another iPhone worm, but this one is serious</a>&#8220;, that is the title. Initially I did not really care about because I know I won&#8217;t be affected. I believe only jailbroken iPhone will be affected <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>In case you have jailbroken your phone and worried about it. My friend Son Tung knows a way to prevent it, by changing the root password. Try the steps in this blog<a title="Change iPhone root Password" href="http://justanotheriphoneblog.com/wordpress/iphone-tips/how-to-change-the-iphones-root-password" target="_blank"> http://justanotheriphoneblog.com/wordpress/iphone-tips/how-to-change-the-iphones-root-password</a></p>
<p>I personally never try it, so I won&#8217;t be able to share my experience. But if you worry about the worm, it is worth to try <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> &#8230;..</p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Clickjacking Worm Crawling Through Facebook]]></title>
<link>http://starbuck50.wordpress.com/2009/11/24/clickjacking-worm-crawling-through-facebook/</link>
<pubDate>Tue, 24 Nov 2009 12:13:56 +0000</pubDate>
<dc:creator>starbuck50</dc:creator>
<guid>http://starbuck50.wordpress.com/2009/11/24/clickjacking-worm-crawling-through-facebook/</guid>
<description><![CDATA[The scantily dressed woman has nothing else to show you. The Facebook staff has been hard at work to]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p><em>The scantily dressed woman has nothing else to show you</em>.</p>
<p>The Facebook staff has been hard at work to squash a new worm propagating on the social networking platform with the help of unwary users. Using the image of a female model in lingerie as lure, the nuisance spread from wall to wall through a Web exploitation technique known as clickjacking.</p>
<p>This most recent attack doesn&#8217;t appear to have had a malicious component and was most likely a proof of concept. The rogue Facebook posts featured the picture of an attractive female model looking over her shoulder and an accompanying message reading &#8220;Wanna C Somthin&#8217; HOT!?? Click Da&#8217; Button, Baby!&#8221; Choosing to comply with the instruction while being logged into Facebook did nothing more than re-post the message without authorization on your own wall, thus propagating it further.</p>
<p>The trick was so well crafted and intriguing that it even managed to trick some security professionals. &#8220;The worm&#8217;s landing page is brilliant &#8212; alluring yet mysterious, and very clean, just like we techies like it. […] As a personal lesson, I have to admit mea culpa. I saw the worm being posted from a friend&#8217;s page and didn&#8217;t believe it to be dangerous because the lure is pretty cool,&#8221; Gadi Evron, a reputed security consultant and former Israeli CERT manager, writes for Dark Reading.</p>
<p>After analyzing the worm, Nick FitzGerald, emerging threats researcher at antivirus vendor AVG, concluded that the attack technique used was cross-site request forgery (CSRF). &#8220;A sequence of iframes on the exploit page call a sequence of other pages and scripts, eventually resulting in a form submission to Facebook &#8216;as if&#8217; the victim had submitted a URL for a wall post and clicked on the &#8216;Share&#8217; button to confirm the post,&#8221; he explains.</p>
<p>However, the Facebook staff disagrees with the CSRF assessment and says that a technique known as clickjacking, or in technical lingo, user interface redressing, is the culprit. Clickjacking is a term referring to an entire class of attacks that affect all browsers and involve overlapping hidden buttons onto visible ones. Therefore, when a user attempts to click the legit button in order to perform an apparently harmless action, their mouse click is hijacked and used to trigger an unintended one.</p>
<p>&#8220;This problem isn’t specific to Facebook, but we’re always working to improve our systems and are building additional protections against this type of behavior. We’ve blocked the URL associated with this site, and we’re cleaning up the relatively few cases where it was posted,&#8221; a Facebook spokesperson commented for The Register.</p>
<p>Clickjacking is a growing concern amongst the infosec community and browser vendors have yet to completely address it. The technique is actually exploiting an architectural flaw at the core of the Web; therefore, it is difficult to mitigate without breaking other legit functionality.</p>
<p>This doesn&#8217;t mean that users are completely exposed. For example, Firefox users can protect themselves against most of these attacks by installing a popular security extension called NoScript.</p>
<p>With Internet Explorer 8, Microsoft also introduced a directive called X-FRAME-OPTIONS that web developers can declare on their websites in order to counter clickjacking abuse. Unfortunately, this means that IE8 users have to rely on website owners to protect them, which is not very practical. </p>
<p>Source: <a href="http://news.softpedia.com/news/Clickjacking-Worm-Crawling-Through-Facebook-127824.shtml">Softpedia.com</a></p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Worm Hits Facebook Walls]]></title>
<link>http://komplettie.wordpress.com/2009/11/24/worm-hits-facebook-walls/</link>
<pubDate>Tue, 24 Nov 2009 11:00:06 +0000</pubDate>
<dc:creator>komplettie</dc:creator>
<guid>http://komplettie.wordpress.com/2009/11/24/worm-hits-facebook-walls/</guid>
<description><![CDATA[Thanks to the fact that it stores so much of users’ personal data, Facebook has long been the source]]></description>
<content:encoded><![CDATA[Thanks to the fact that it stores so much of users’ personal data, Facebook has long been the source]]></content:encoded>
</item>
<item>
<title><![CDATA[Yeni virüs tespit edildi]]></title>
<link>http://kaangural.wordpress.com/2009/11/24/yeni-virus-tespit-edildi/</link>
<pubDate>Tue, 24 Nov 2009 10:30:04 +0000</pubDate>
<dc:creator>kaangural</dc:creator>
<guid>http://kaangural.wordpress.com/2009/11/24/yeni-virus-tespit-edildi/</guid>
<description><![CDATA[Çin hükümetinden dünyaya virüs uyarısı. Çin yeni tespit edilen tehlikeli bir virüsle ilgili olarak u]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p><img class="alignleft" src="http://www.veteknoloji.com/resimler/haberler/20091124011913_worm.jpg" alt="" width="287" height="238" /><strong>Çin hükümetinden dünyaya virüs uyarısı.</strong></p>
<p><strong></strong>Çin yeni tespit edilen tehlikeli bir virüsle ilgili olarak uyarı yayınladı. İnternet üzerinden çok çabuk yayılacağı tahmin edilen virüsün tüm dünyadaki bilgisayar kullanıcılarını tehdit ettiği açıklandı.</p>
<div>
<p>Worm_Piloyd.B adlı virüsün exe, html ve asp uzantılı dosyaları etkileyen virüsün kullanıcıların dosyalarını düzeltmelerine de imkan tanımadığı tespit edildi.</p>
<p>Virüsün bulaştığı bilgisayarların internet bağlantıları üzerinden yayıldığı ve bu tehdite karşı antivirüs yazılımlarının güncellenmesi tavsiye edildi.</p>
</div>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Collaboration will help us through the winter]]></title>
<link>http://sociauxanswers.wordpress.com/2009/11/24/collaboration-will-help-us-through-the-winter/</link>
<pubDate>Tue, 24 Nov 2009 08:26:12 +0000</pubDate>
<dc:creator>sociauxanswers</dc:creator>
<guid>http://sociauxanswers.wordpress.com/2009/11/24/collaboration-will-help-us-through-the-winter/</guid>
<description><![CDATA[In a week when both Facebook and iPhone have been infiltrated by yet another viral worm, one would t]]></description>
<content:encoded><![CDATA[<div class='snap_preview'><p>In a week when both <a href="http://mashable.com/2009/11/23/avg-facebook-worm/" target="_blank">Facebook</a> and <a href="http://mashable.com/2009/11/23/iphone-worm-malicious/" target="_blank">iPhone</a> have been infiltrated by yet another viral worm, one would think we would all be on a bit of a downer. In actuality, these bugs and hickups seem to draw us digital geeks closer together.</p>
<p>When the Internet entered out homes, it was a scary world, full of spam, hackers and new online threats. Today, it has become a world of collaboration, sharing and a vehicle for conversations to take place.</p>
<p>What always astounds me is others willingness to offer help and support in the digital world. Ask a question on Twitter and you will be overwhelmed with answers, ask for advice on LinkedIn and you will be inundated with support, ask what your friends are having for lunch on Facebook and you will find out about the best restaurants in your area.</p>
<p>The digital sphere is no longer associated with fear but with collabaration and honesty.</p>
<p>If you&#8217;ve been infected by one of the latest attacks, tell us about it. You&#8217;ll find a community at your fingertips ready to help you tweet your sorrows away.</p>
<p><a href="http://sociauxanswers.files.wordpress.com/2009/11/p_677_460_448d3f4c-b0fd-4777-bdf0-0dbf7dc4ccbc.jpeg"><img class="alignnone size-full wp-image-364" src="http://sociauxanswers.files.wordpress.com/2009/11/p_677_460_448d3f4c-b0fd-4777-bdf0-0dbf7dc4ccbc.jpeg?w=203&#038;h=300" alt="" width="203" height="300" /></a></p>
</div>]]></content:encoded>
</item>

</channel>
</rss>
