ESET Threat Blog

Archive for the 'Randy Abrams' Category

by David Harley Senior Research Fellow
January 17, 2012 at 12:57 am

Way back in the 1990s, during the Q&A session after an EICAR presentation on social engineering, there was an animated discussion arising from some slides I'd included on password selection and usage. Some wondered why we were still discussing and promoting password strategies when there were (and are) better alternatives to static passwords.
ENTER PASSWORD:

Timeslip… Before you … Read More…

Comments
0

?>
by Randy Abrams
July 15, 2011 at 5:14 pm

If you don’t remember the Rumble in the Jungle, it was a boxing match between George Foreman and Muhammed Ali. Back in 1974 names like Foreman and Ali were as famous as companies like Google and Facebook are now. Google, like the older Ali, has been taking punches in the early rounds of the … Read More…

Comments
1

?>
by Randy Abrams
July 13, 2011 at 3:12 pm

An application written to allow integration between Facebook and Google Plus may be all you need to compromise your computer. According to a PCWorld report an application called Google+Facebook used a well known programming worst practice of downloading a JavaScript file upon launch.
If you aren’t real technical and don’t know what this means, I will … Read More…

Comments
3

?>
by Randy Abrams
July 11, 2011 at 2:57 pm

I’ve been using Google Plus almost as long as it has been around, which is a sneaky way of saying I am a noob to it Frankly, at this point I do not see anything particularly novel or sensational. I just haven’t seen the killer feature that will vanquish the Facebook megalith, but … Read More…

Comments
5

?>
by Randy Abrams
July 8, 2011 at 3:28 pm

This is an impressive looking certificate isn’t it? You might think it means something significant, but then you might be wrong. How hard is it to pass the Internet and Child Safety Advocate certification test? Ask Hanna, a 9 year old (10 this weekend) girl who I met with her father at a local coffee … Read More…

Comments
6

?>
by Randy Abrams
June 29, 2011 at 12:17 pm

Yet another Facebook Clickjacking attack is making the rounds. This time the message shows as below.

A right-click (not left) will allow you to copy the source location and open the link in a protected environment. The link brings up the following image

The “Jaa” button is actually a “Share” button and will post the first … Read More…

Comments
2

?>
by Randy Abrams
June 28, 2011 at 4:26 pm

Our friends at Threatpost have come across what they describe as a massive phishing attack against Tumblr users. It seems the lure of sexual content will work as many times as Lucy can pull the football out each time Charlie Brown tries to kick it.
According to the article, hijacked web pages of Tumbler users contain … Read More…

Comments
0

?>
by Randy Abrams
June 28, 2011 at 1:07 pm

In a ComputerWorld article Gregg Kaiser cites a Microsoft engineer as saying that the trojan that Microsoft calls “Popureb” digs so deeply that the only way to eradicate it is to reinstall the operating system.
If you read the Microsoft blog Feng didn’t actually say that this is the only way to eradicate the trojan. In … Read More…

Comments
3

?>
by Randy Abrams
June 23, 2011 at 10:02 am

Survey Reveals Chasm between Users’ Concerns and Behavior
A recent Survey commissioned by ESET and conducted online by Harris Interactive from May 31-June 2, 2011 among 2,027 U.S. adults 18+ found a startling disconnect between user concerns about privacy and security and their actions on social networking sites.
To start, the study found that 69% of online … Read More…

Comments
1

?>
by Randy Abrams
October 27, 2011 at 2:46 pm

Too bad it doesn’t exist. I mean really exist. Here is how an anti-phishing day that is designed to be a highly effective educational deterrent to phishing would work.
Google, Facebook, Hotmail, Yahoo, Twitter, Myspace, Banks, Online Gaming sites, such as World of WarCraft, and others would all send phishing emails to their users. Yes, phishing … Read More…

Comments
4

?>
Share |
Subscribe by Email
To receive new posts automatically through email, enter your email address:

Delivered by FeedBurner

Blog Search
Archives

Switch to our mobile site