Koobface Botnet Starts Serving Client-Side Exploits

UPDATED, Wednesday, December 02, 2009: The systematic rotation of new redirectors and scareware domains remains ongoing, with no signs of resuming the use of client-side exploits. Some of the latest ones include inviteerverwhere .cn – Email: box@cethcuples.com -> scanner-infoa .com – Email: inout@celestia.com, scareware detection rate; 1economyguide .cn – Email: contact@berussa.de -> superdefenceaj .com –Read More

Delaying Yesterday's "0day" Security Vulnerability

I never imagined we would be waiting for the release of a “0day” vulnerability, but I guess that’s what happens if you’re not a customer of an informediary in the growing market for software vulnerabilities — growth in respect to, researchers, infomediaries and security vulnerabilities. Stay tuned for “Exploit Of Windows 2000 Zero-day To HitRead More

Shaping the Market for Security Vulnerabilities Through Exploit Derivatives

In a previous post “0bay – how realistic is the market for security vulnerabilities?” I gave a brief overview of the current market infomediaries and their position, listed various research I recommend you to go through, and speculated on an auction based market model. During April, at the CanSecWest Security Conference “Groups argued over meritsRead More

The Current State of Web Application Worms

Remeber the most recent Yahoo! Mail’s XSS vulnerabilities, or the MySpace worm? I just read through a well written summary on Web Application Worms by Jeremiah Grossman, from WhiteHat Security, “Cross-Site Scripting Worms and Viruses – The Impending Threat and the Best Defense“, an excerpt : “Samy, the author of the worm, was on aRead More

How to win 10,000 bucks until the end of March?

I feel that, in response to the recent event of how the WMF vulnerability got purchased/sold for $4000 (an interesting timeframe as well), iDefense are actively working on strengthening their market positioning – that is the maintain their pioneering position as a perhaps the first company to start paying vulnerability researchers for their discoveries. TheRead More

Was the WMF vulnerability purchased for $4000?!

Going through Kaspersky’s latest summary of Malware – Evolution, October – December 2005, I came across a research finding that would definitely go under the news radar, as always, and while The Hackers seem to be more elite than the folks that actually found the vulnerability I think the issue itself deserves more attention relatedRead More

Unit-123.org E-shop Owner Information

Who is Dancho Danchev?

Unit-123.org

Focused on delivering daily batches of personally-produced never-ending supply of high-quality and never-published and released before classified and sensitive Intelligence Deliverables.

Latest Products