<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-5444458813582258922</id><updated>2011-11-27T15:34:30.209-08:00</updated><category term='malicious sites'/><category term='firefox'/><category term='botnets'/><category term='cybersecurity'/><category term='phishing'/><category term='blogger'/><category term='blackhat seo'/><category term='security apps'/><category term='twitter'/><category term='websense'/><category term='malware'/><category term='compromised sites'/><category term='scam'/><category term='banking'/><category term='fraud'/><category term='misc'/><category term='web security'/><title type='text'>Green Cloud</title><subtitle type='html'>Blogs focused on Web Security and Converged Threats</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://greencloudsecurity.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>22</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-5565016480640356503</id><published>2010-07-14T17:38:00.000-07:00</published><updated>2010-07-14T17:38:28.692-07:00</updated><title type='text'>Symantec: Web Threats 2010</title><summary type='text'>Came across this great report on the state of Web Threats this year. One of the key lessons from this report shows how cybercriminals are now focused on compromising existing web servers rather than bringing their own online. In fact, they found 90% of malicious websites are compromised sites.

Key reason for this, as explained by Symantec analyst Dan Bleaken:
The attraction of knowing that </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/5565016480640356503'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/5565016480640356503'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2010/07/symantec-web-threats-2010.html' title='Symantec: Web Threats 2010'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-2979454118479598586</id><published>2010-07-09T20:43:00.000-07:00</published><updated>2010-07-09T20:43:31.514-07:00</updated><title type='text'>News Storm</title><summary type='text'>Here's some key stories that unfolded this week in security:

YouTube Victim of XSS Attack

On Sunday YouTube fell victim to a XSS attack redirecting users to different sites from fake anti-virus pages to porn to Canadian pharmacy. Google patched up the problem relatively quickly but the backlash on Twitter was tremendous. Here's some great posts by SecTechno, The Register, and the SunBelt Blog.
</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/2979454118479598586'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/2979454118479598586'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2010/07/news-storm.html' title='News Storm'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-8876993694215458543</id><published>2010-07-08T18:17:00.000-07:00</published><updated>2010-07-08T18:17:01.607-07:00</updated><title type='text'>Global Spam Rate 89.3% According to Latest Symantec Report</title><summary type='text'>Symantec recently released their Message Labs Intelligence report, highlighting some key stats in email and web based threats. According to the report the global spam rate is now 89.3%, with 80% of these being pharmaceutical spam. The report also goes into depth on the rash of World Cup threats that amassed in the months before the start of the World Cup.

Check out the full report below...

http</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/8876993694215458543'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/8876993694215458543'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2010/07/global-spam-rate-893-according-to.html' title='Global Spam Rate 89.3% According to Latest Symantec Report'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-3786275149154303425</id><published>2010-07-06T19:20:00.000-07:00</published><updated>2010-07-06T19:20:21.681-07:00</updated><title type='text'>Firefox 4 Beta 1 Released!</title><summary type='text'>The long awaited Firefox 4 Beta 1 has been released. This includes tons of changes, including tab placement and other enhancements for CSS and HTML5. Download link and release notes are linked below...check it out!

http://www.mozilla.com/en-US/firefox/all-beta.html
http://www.mozilla.com/en-US/firefox/4.0b1/releasenotes/</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/3786275149154303425'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/3786275149154303425'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2010/07/firefox-4-beta-1-released.html' title='Firefox 4 Beta 1 Released!'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-1334583551842176284</id><published>2010-07-06T19:06:00.000-07:00</published><updated>2010-07-06T19:06:47.647-07:00</updated><title type='text'>Launch Action Still Vulnerable</title><summary type='text'>Adobe release a patch last week to finally patch to limit the vulnerable Launch action that could be used to run script from Adobe Reader. Turns out the patch is not really complete and the Bkis Blog has found ways around this. 
It took Adobe 3 months to issue a patch for this to begin with, are we going to have to wait another 3 months?
In the meantime Didier Stevens, who originally found the </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/1334583551842176284'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/1334583551842176284'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2010/07/launch-action-still-vulnerable.html' title='Launch Action Still Vulnerable'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-2020046119172762268</id><published>2010-07-01T19:30:00.000-07:00</published><updated>2010-07-01T20:06:19.020-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='blogger'/><category scheme='http://www.blogger.com/atom/ns#' term='twitter'/><title type='text'>Adding Twitter Updates with Style</title><summary type='text'>Getting back into things, some things just weren't lining up in the blog template any longer, so we decided to scrap the whole thing and rebuild using the same template. Strangely enough though, the Twitter widget provided by Blogger doesn't allow any styling, which made the Twitter updates almost impossible to read.

After a while of tinkering with the widgets and trying to find the right one to</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/2020046119172762268'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/2020046119172762268'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2010/07/adding-twitter-updates-with-style.html' title='Adding Twitter Updates with Style'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-8475088306840572296</id><published>2010-07-01T19:24:00.000-07:00</published><updated>2010-07-01T20:05:43.633-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='misc'/><title type='text'>We're Back!</title><summary type='text'>Green Cloud Security is back after a long layoff, mostly working on other projects. It's exciting to dig back into the site, and security in general. You can expect more of the same posts, coverage on the latest threats, threat reports, security tips and more. 
Have a great day everyone!</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/8475088306840572296'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/8475088306840572296'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2010/07/were-back.html' title='We&apos;re Back!'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-2034350729618710764</id><published>2009-10-20T19:51:00.000-07:00</published><updated>2009-10-20T19:57:57.816-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='malware'/><category scheme='http://www.blogger.com/atom/ns#' term='banking'/><category scheme='http://www.blogger.com/atom/ns#' term='botnets'/><category scheme='http://www.blogger.com/atom/ns#' term='fraud'/><title type='text'>Banking and Virus Scanning with a Live CD</title><summary type='text'>Last week, Brian Krebs of the Washington Post blogged here advising business owners to perform online banking using a live CD. This excellent advice (IMHO) created quite a stir over the last week.

Essentially, banking on a live CD prevents you from becoming susceptible to Windows viruses, while at the same time loading a fresh, non-compromised OS each time. This can almost guarantee that you </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/2034350729618710764'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/2034350729618710764'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/10/banking-and-virus-scanning-with-live-cd.html' title='Banking and Virus Scanning with a Live CD'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17335573974458352011</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_rl_V5R5NQtY/St50vJsh3VI/AAAAAAAAAAM/xM6oA6gv60o/s72-c/avast2.png' height='72' width='72'/></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-2156518236720440532</id><published>2009-10-19T19:15:00.000-07:00</published><updated>2009-10-19T19:29:50.318-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='cybersecurity'/><title type='text'>Obama Stresses Cybersecurity Awareness</title><summary type='text'>"The lesson is clear, this cyberthreat is one of the most serious economic and national security challenges we face as a nation" (Obama).

This is the message that Obama recently declared in a short video on the White House website. He makes it very clear, in the midst of cybersecurity awareness month, that all Americans need to be aware and secure in their online activities.

"As consumers we </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/2156518236720440532'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/2156518236720440532'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/10/obama-stresses-cybersecurity-awareness.html' title='Obama Stresses Cybersecurity Awareness'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17335573974458352011</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-7716319231998909082</id><published>2009-10-19T17:44:00.000-07:00</published><updated>2009-10-19T17:52:50.714-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='malicious sites'/><category scheme='http://www.blogger.com/atom/ns#' term='malware'/><category scheme='http://www.blogger.com/atom/ns#' term='botnets'/><category scheme='http://www.blogger.com/atom/ns#' term='scam'/><title type='text'>New Zeus Scam Emails and Download Domains</title><summary type='text'>There are some new Zeus emails going around that folks should be aware of. These emails, as reported by the Securosis blog, pretend to be from a system administrator. The administrator asks them to "run SSl updates procedure" as below.

Attention!
On October 22, 2009 server upgrade will take place. Due to this the system may be offline for approximately half an hour. The changes will concern </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/7716319231998909082'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/7716319231998909082'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/10/new-zeus-scam-emails-and-download.html' title='New Zeus Scam Emails and Download Domains'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17335573974458352011</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-3111105159669273181</id><published>2009-10-15T18:20:00.000-07:00</published><updated>2009-10-19T17:48:04.738-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='botnets'/><category scheme='http://www.blogger.com/atom/ns#' term='scam'/><category scheme='http://www.blogger.com/atom/ns#' term='web security'/><title type='text'>New Twist on IRS Spam</title><summary type='text'>There is a new twist on the IRS emails that have been delivering zbot and other threats over the last month. In some new emails, reports Gary Warner, the link contained in the message is to Geocities.An example from the CyberCrime &amp; Doing Time blog:hxxp://geocities.com/FreddyCampbell36/ohuloc.htmWhile the users will ultimately end up at the commonly used http://www.irs.gov.blah.blah.co.uk/</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/3111105159669273181'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/3111105159669273181'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/10/new-twist-on-irs-spam.html' title='New Twist on IRS Spam'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17335573974458352011</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-5742099044467461525</id><published>2009-10-10T07:52:00.000-07:00</published><updated>2009-10-10T07:53:00.501-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='firefox'/><category scheme='http://www.blogger.com/atom/ns#' term='security apps'/><title type='text'>Green Cloud Security Firefox Add-On Collection</title><summary type='text'>Firefox recently added the ability to group collections of add-ons for easy sharing. The ISC recently published their recommended add-ons and we've followed in suit. There was a couple additional add-ons, namely FlagFox and KeyScrambler, that are also useful security add-ons. 

Green Cloud Security Add-Ons:
https://addons.mozilla.org/en-US/firefox/collection/greencloudsecurity</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/5742099044467461525'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/5742099044467461525'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/10/green-cloud-security-firefox-add-on.html' title='Green Cloud Security Firefox Add-On Collection'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-1672310483475264291</id><published>2009-10-10T07:37:00.000-07:00</published><updated>2009-10-10T07:53:39.187-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='blackhat seo'/><category scheme='http://www.blogger.com/atom/ns#' term='websense'/><title type='text'>Spike in Blackhat SEO: Websense Monthly Report</title><summary type='text'>Websense published their monthly report, "This Month in the Threat Webscape". September saw a number of new attacks and an increase in some old ones.

One of the most well known and documented problems this month was blackhat SEO poisoning with malicious results leading to rogue AV and other types of malware.

"Searches for current events often lead to malicious Web sites designed to lead people </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/1672310483475264291'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/1672310483475264291'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/10/spike-in-blackhat-seo-websense-monthly.html' title='Spike in Blackhat SEO: Websense Monthly Report'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-4260696302575447720</id><published>2009-10-09T09:15:00.000-07:00</published><updated>2009-10-10T07:52:46.259-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='security apps'/><title type='text'>Comcast Monitoring Users for Malware and Botnet Activity</title><summary type='text'>Comcast is beginning the launch of a new service to notify users when of compromised computers and botted machines. The service, called Comcast Constant Guard, has started an initial roll out in the Denver area. 

Infected customers will be notified via a pop-up message in a browser, and given links to go to the Anti-Virus Center to repair the problem. This will give notification to those not </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/4260696302575447720'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/4260696302575447720'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/10/comcast-monitoring-users-for-malware.html' title='Comcast Monitoring Users for Malware and Botnet Activity'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-6224468656368447592</id><published>2009-10-06T19:20:00.000-07:00</published><updated>2009-10-10T07:53:22.468-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='phishing'/><category scheme='http://www.blogger.com/atom/ns#' term='web security'/><title type='text'>Web Threats Booming: APWG First Half Report</title><summary type='text'>The Anti-Phishing Working Group (APWG) released their first half "Phishing Activity Trends Report" with some startling statistics. For those that have not heard of the APWG, the organization devoted to the elimination of phishing and identity theft scams. 

The report gives statistics on many trends inlcuding phishing trends, rogue AV, keyloggers and others and fully reinforces the fact that the </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/6224468656368447592'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/6224468656368447592'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/10/web-threats-booming-apwg-first-half.html' title='Web Threats Booming: APWG First Half Report'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_YI_gr3gAoqw/Ssu60eY5vGI/AAAAAAAAACw/B5HmaBAf_oA/s72-c/apwg1.png' height='72' width='72'/></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-7056307659367517627</id><published>2009-10-05T18:27:00.000-07:00</published><updated>2009-10-19T17:48:14.853-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='malware'/><category scheme='http://www.blogger.com/atom/ns#' term='botnets'/><title type='text'>Evolution....New Multi-Function Trojan</title><summary type='text'>Webroot has discovered a new trojan that performs a variety of malicious tasks. One of the primary functions is to crack captchas so that forms of all types can be submitted by the attacker. The trojan will download a specific set of instructions from the internet including which sites to attack, and then operate in the background - attempting to connect to targeted sites.

That is not the only </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/7056307659367517627'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/7056307659367517627'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/10/evolutionnew-multi-function-trojan.html' title='Evolution....New Multi-Function Trojan'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-4008330468614671378</id><published>2009-09-30T17:26:00.000-07:00</published><updated>2009-09-30T17:50:15.040-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='security apps'/><title type='text'>Protect Against Keylogging Trojans with KeyScrambler</title><summary type='text'>There has been a lot of news lately surrounding key logging trojans including Zbot, Clampi and others. These trojans are designed to steal authentication credentials and other sensitive information, especially for banking and social networking sites leaving users scrambling for ways to protect themselves. 

The highlights of these news articles has been how easily these trojans can evade </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/4008330468614671378'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/4008330468614671378'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/09/protect-against-keylogging-trojans-with.html' title='Protect Against Keylogging Trojans with KeyScrambler'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-8186267478306449649</id><published>2009-09-27T08:50:00.000-07:00</published><updated>2009-09-27T08:57:49.272-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='malware'/><category scheme='http://www.blogger.com/atom/ns#' term='botnets'/><title type='text'>Zbot Trojan: World's Most Dangerous Malware</title><summary type='text'>The Zbot Trojan, aka Zeus or WSNPoem, is the world's largest and most dangerous malware. A recent whitepaper by Trusteer, who specializes in securing online transactions, proven the Zbot trojan has an incredibly low detection rate amongst anti-virus scanners.

Trusteer reports that 3.6 million PCs are infected in the US alone, and even up to date anti-virus scanners cannot stop it. "Installing an</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/8186267478306449649'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/8186267478306449649'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/09/zbot-trojan-worlds-most-dangerous.html' title='Zbot Trojan: World&apos;s Most Dangerous Malware'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_YI_gr3gAoqw/Sr-B4hFrTiI/AAAAAAAAAB4/-oENn0ygIig/s72-c/zeusfilelocations.png' height='72' width='72'/></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-4089519042863097619</id><published>2009-09-25T20:20:00.000-07:00</published><updated>2009-09-25T20:30:43.822-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='compromised sites'/><title type='text'>Marijuana Related Sites Compromised</title><summary type='text'>A new list of malicious domains was released, all with marijuana related content. The domains all point to the same server and include marijuana related terms in the domains. A spot check shows these domains have been registered for some time, and no recent changes so the sites and server have likely been compromised. 

Examples include marijuanause.com, purethc.com and gasmaskbong.com. Below is </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/4089519042863097619'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/4089519042863097619'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/09/marijuana-related-sites-compromised.html' title='Marijuana Related Sites Compromised'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-8704346475729061915</id><published>2009-09-23T19:57:00.000-07:00</published><updated>2009-10-19T17:47:37.527-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='malicious sites'/><category scheme='http://www.blogger.com/atom/ns#' term='scam'/><title type='text'>Newly Listed IRS Scam and Zbot Domains</title><summary type='text'>A new list of IRS Scam and Zbot domains was recently posted on malwareurl.com. These are interesting as the domain names are altered only slightly and end in .eu. There are a total of 28 domains and 20 unique IP addresses. 

yoky1w.eu 79.117.171.75
mi11f1.eu 187.64.34.106
mi11fa.eu 187.64.34.106
mi11fd.eu 79.184.58.166
mi11fe.eu 187.64.34.106
mi11ff.eu 85.106.95.114
mi11fi.eu 194.54.48.50
</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/8704346475729061915'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/8704346475729061915'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/09/newly-listed-irs-scam-and-zbot-domains.html' title='Newly Listed IRS Scam and Zbot Domains'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-4719673825422337695</id><published>2009-09-21T19:50:00.000-07:00</published><updated>2009-09-21T19:54:53.731-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='websense'/><category scheme='http://www.blogger.com/atom/ns#' term='web security'/><title type='text'>Introductory Post</title><summary type='text'>As internet threats continue to evolve it's becoming clear that web threats and blended threats are becoming the most predominant danger to network security. Green Cloud Security and this blog are dedicated to the proliferation of information about web security issues - increasing awareness for both network administrators and regular internet users.

The creation of this blog comes on the heels </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/4719673825422337695'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/4719673825422337695'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/09/introductory-post.html' title='Introductory Post'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-5444458813582258922.post-7720513749677292143</id><published>2009-09-20T15:07:00.000-07:00</published><updated>2009-10-03T19:13:03.601-07:00</updated><title type='text'>Resources</title><summary type='text'>Below is a list of resources that can be used to analyze web based threats, viruses and malware. I will update this list continually.


Web Analysis Services
Virus Total - http://www.virustotal.com/
Wepawet  - http://wepawet.iseclab.org/
Virus.org - http://scanner.virus.org/
JSUnpack - http://jsunpack.jeek.org/dec/api
Web Sniffer - http://web-sniffer.net/

 

Applications and Plugins
Malzilla - </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/7720513749677292143'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5444458813582258922/posts/default/7720513749677292143'/><link rel='alternate' type='text/html' href='http://greencloudsecurity.blogspot.com/2009/09/resources_20.html' title='Resources'/><author><name>Green Cloud Security</name><uri>http://www.blogger.com/profile/17822028485314254179</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry></feed>
