<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: releases]]></title>
    <link>http://securityratty.com/tag/releases</link>
    <description></description>
    <pubDate>Tue, 14 Oct 2008 00:00:00 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[The Good Get Conned-When Trust is Biological]]></title>
      <link>http://securityratty.com/article/3190bf9fa3c48c293c4965ef526cb117</link>
      <guid>http://securityratty.com/article/3190bf9fa3c48c293c4965ef526cb117</guid>
      <description><![CDATA[Bruce Schnier linked to an interesting article a while back, discussing how brain chemistry causes you to trust people when demonstrate that they trust you, especially when theyre relying on you and...]]></description>
      <content:encoded><![CDATA[<p>Bruce Schnier<a rel="nofollow" target="_blank" href="http://www.schneier.com/blog/archives/2008/11/the_neuroscienc.html"> linked </a>to an interesting article a while back, discussing how brain chemistry causes you to trust people when demonstrate that they trust you, especially when they&#8217;re relying on you and may be vulnerable&#8230;interesting stuff:</p>
<blockquote><p>THOMAS is a powerful brain circuit that releases the neurochemical oxytocin when we are trusted and induces a desire to reciprocate the trust we have been shown&#8211;even with strangers. The key to a con is not that you trust the conman, <em>but that he shows he trusts you</em>. Conmen ply their trade by appearing fragile or needing help, by seeming vulnerable. Because of THOMAS, the human brain makes us feel good when we help others&#8211;this is the basis for attachment to family and friends and cooperation with strangers</p></blockquote>
<p>So my question: if real-life cons can easily<a rel="nofollow" target="_blank" href="http://blogs.psychologytoday.com/blog/the-moral-molecule/200811/how-run-a-con"> scam people</a> by appearing to depend on them, how does this affect the scams we see on the Net? Clearly some online cons rely on this method &#8212; the Nigerian bank scam being a prime example. It seems like social engineering scams particularly rely on this method &#8212; but not all scams. And of course many other vulnerabilities just seem to rely on people&#8217;s habits to just click links willy-nilly online, which is an impersonal event. If the net were a more personal place, we might see many more of those kinds of scams.</p>]]></content:encoded>
      <pubDate>Mon, 01 Dec 2008 11:00:35 +0000</pubDate>
      <category domain="http://securityratty.com/tag/trust">trust</category>
      <category domain="http://securityratty.com/tag/trust people">trust people</category>
      <category domain="http://securityratty.com/tag/online cons rely">online cons rely</category>
      <category domain="http://securityratty.com/tag/rely">rely</category>
      <category domain="http://securityratty.com/tag/scams">scams</category>
      <category domain="http://securityratty.com/tag/easily scam people">easily scam people</category>
      <category domain="http://securityratty.com/tag/nigerian bank scam">nigerian bank scam</category>
      <category domain="http://securityratty.com/tag/powerful brain circuit">powerful brain circuit</category>
      <category domain="http://securityratty.com/tag/impersonal event">impersonal event</category>
      <source url="http://feeds.feedburner.com/~r/itsecurity/~3/471798036/">The Good Get Conned-When Trust is Biological</source>
    </item>
    <item>
      <title><![CDATA[Links for 2008-11-19 [del.icio.us]]]></title>
      <link>http://securityratty.com/article/359d830ca1e8df85568ee491fac7b4b0</link>
      <guid>http://securityratty.com/article/359d830ca1e8df85568ee491fac7b4b0</guid>
      <description><![CDATA[QualysGuard PCI Pass/Fail Status Criteria - Qualys
Press Releases - November 11, 2008 - Q1 Labs free, downloadable, log management and compliance product that provides organizations with visibility...]]></description>
      <content:encoded><![CDATA[<ul>
<li><a href="http://www.qualys.com/products/pci/qgpci/pass_fail_criteria/">QualysGuard PCI Pass/Fail Status Criteria - Qualys</a></li>
<li><a href="http://www.q1labs.com/pr.php?id=711">Press Releases - November 11, 2008 - Q1 Labs</a><br/>
free, downloadable, log management and compliance product that provides organizations with visibility across their networks, data centers, and infrastructures</li>
<li><a href="http://www.cheapest-service.com/blog/2008/11/11/healthy-paranoia-top-50-internet-security-blogs/">&nbsp; Healthy Paranoia: Top 50 Internet Security Blogs&nbsp;by&nbsp;The Daily Netizen</a></li>
<li><a href="http://www.govcert.nl/symposium/audiovideo.html">GOVCERT.NL Symposium 2008</a></li>
<li><a href="http://sec.online.wsj.com/article/SB122461917614955373.html">Looking for Trouble - WSJ.com</a></li>
<li><a href="http://blog.clearnetsec.com/articles/2008/11/11/it%E2%80%99s-hard-to-build-a-smart-siem">ClearNet Security : It&rsquo;s hard to build a smart SIEM</a><br/>
If you find yourself evaluating SIEM products, dig in and investigate how each works - you don’t want yesterday’s product.</li>
<li><a href="http://www.thecomplianceauthority.rsvp1.com/articles/111908_taylor.shtm">PCI Perspectives by Dave Taylor</a></li>
<li><a href="http://physicsworld.com/blog/2008/09/killed_by_complexity_1.html">Lehman Bros 'killed by complexity' (physicsworld.com Blog) - physicsworld.com</a></li>
</ul><img src="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~4/459218630" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 19 Nov 2008 21:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/internet security blogs">internet security blogs</category>
      <category domain="http://securityratty.com/tag/clearnet security">clearnet security</category>
      <category domain="http://securityratty.com/tag/dave taylor">dave taylor</category>
      <category domain="http://securityratty.com/tag/compliance product">compliance product</category>
      <category domain="http://securityratty.com/tag/healthy paranoia">healthy paranoia</category>
      <category domain="http://securityratty.com/tag/labs free">labs free</category>
      <category domain="http://securityratty.com/tag/press releases">press releases</category>
      <category domain="http://securityratty.com/tag/physicsworld">physicsworld</category>
      <category domain="http://securityratty.com/tag/siem products">siem products</category>
      <source url="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~3/459218630/anton18">Links for 2008-11-19 [del.icio.us]</source>
    </item>
    <item>
      <title><![CDATA[Will Code Malware for Financial Incentives]]></title>
      <link>http://securityratty.com/article/30eebfa1383ce3a671879e2f1f0af37d</link>
      <guid>http://securityratty.com/article/30eebfa1383ce3a671879e2f1f0af37d</guid>
      <description><![CDATA[A couple of hundred dollars can indeed get you state of the art undetectable piece of malware with post-purchase service in the form of automatic lower detection rate for sure, but what happens when...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><div class="separator" style="clear: both; text-align: center;"></div><div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://4.bp.blogspot.com/_wICHhTiQmrA/SSLQOaWm71I/AAAAAAAACdM/nHHgxqAJn-4/s1600-h/malware_hire_sample_1.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://4.bp.blogspot.com/_wICHhTiQmrA/SSLQOaWm71I/AAAAAAAACdM/nHHgxqAJn-4/s200/malware_hire_sample_1.JPG" /></a>A couple of hundred dollars can indeed get you state of the art <a href="http://ddanchev.blogspot.com/2008/07/coding-spyware-and-malware-for-hire.html">undetectable piece of malware with post-purchase service</a> in the form of automatic lower detection rate for sure, but what happens when the vendors of such releases start vertically integrating just like everyone else, and start offering OS-independent spamming, flooding, modifications and tweaking of popular crimeware kits in the very same fashion? The quality assurance process gets centralized into the hands of experienced programmers that have been developing cybercrime facilitating tools for years.<br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SSLcUHXGAoI/AAAAAAAACdU/wnzsUHFHSrg/s1600-h/malware_hire_sample_2.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SSLcUHXGAoI/AAAAAAAACdU/wnzsUHFHSrg/s200/malware_hire_sample_2.JPG" /></a>It's interesting to monitor the pricing schemes that they implement. For instance, the modularity of a particular malware, that is the additional functions that a buyer may want or not want, increase or decrease the price respectively. Others, tend to leave the price open topic by only mentioning the starting price for their services and they increasing it again in open topic fashion.<br />
<br />
Let's take look at some recently advertised (translated) "malware coding for hire" propositions, highlighting some of the latest developments in their pricing strategies :<br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://4.bp.blogspot.com/_wICHhTiQmrA/SSMEwnRgU6I/AAAAAAAACdc/bFEBpsTalQQ/s1600-h/malware_hire_sample_3.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://4.bp.blogspot.com/_wICHhTiQmrA/SSMEwnRgU6I/AAAAAAAACdc/bFEBpsTalQQ/s200/malware_hire_sample_3.JPG" /></a><b>Proposition 1</b> : <br />
"<i>Programs and scripts under the following categories are accepted : </i><br />
<i>grabbers; spamming tools for forums, spamming tools for social networking sites, modifications of admin panels for (popular crimeware kits), phishing pages</i><br />
<br />
<i>Platform: software running on MAC OS to Windows  </i><br />
<i>Multitasking: have the capacity to work on multiple projects</i><br />
<i>Speed and responsibility: at the highest level  </i><br />
<i>Pre-payment for new customers: 50% of the whole price, 30% pre-pay of the whole price for repreated customers  </i><br />
<i>Support: Paid  </i><br />
<i>Rates: starting from 100 euros</i><br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://1.bp.blogspot.com/_wICHhTiQmrA/SSMGg5E49_I/AAAAAAAACds/lWtlV3eYu4s/s1600-h/malware_hire_sample_4.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://1.bp.blogspot.com/_wICHhTiQmrA/SSMGg5E49_I/AAAAAAAACds/lWtlV3eYu4s/s200/malware_hire_sample_4.JPG" /></a><i>If, after speaking ultimate price, you decide to add to your order something else - the price change. Prepare the job immediately, which will understand what to do and how much it will cost you, if you have any suggestions for a price, then lays them immediately and not after the work is completed. If you order something that requires parsing your logs, and their continued use, you agree to provide "a significant portion of the logs, so that after putting the project did not raise misunderstandings due to the fact that some logs are no longer "fresh", because of their "uniqueness". In this case, for the finalization of the project will be charged an additional fee.</i>"<br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://2.bp.blogspot.com/_wICHhTiQmrA/SSMKeg8y5SI/AAAAAAAACd0/ekeV4Us8PwY/s1600-h/malware_hire_sample_5.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://2.bp.blogspot.com/_wICHhTiQmrA/SSMKeg8y5SI/AAAAAAAACd0/ekeV4Us8PwY/s200/malware_hire_sample_5.JPG" /></a>This is an example of an "open topic pricing scheme" with the vendor offering the possibility to code the malware or the tool for any price above 100 euro based on what he perceives as features included within worth the price.<br />
<br />
<b>Proposition 2</b>:<br />
"<i>Starting price for my malware is 250 EUR. Additional modules like P2P features, source code for a particular module go for an additional 50 EUR. If you're paying in another currency the price is 200 GBP or 395 dollars. I sell only ten copies of the builder so hurry up. The trading process is simple - a password protected file with the malware is sent to you so you can see the files inside. You then sent the money and I mail you back the password. If you don't like this way you lose.&nbsp;</i><br />
<br />
<i>I can also offer you another deal, I will share the complete source code in exchange to access to a botnet with at least 4000 infected hosts because I don't have time to play around with me bot right now.</i> <br />
<br />
This proposition is particularly interesting because the seller is introducing basic understanding of exchange rates, but most of all because he's in fact offering a direct bargain in the form of access to a botnet in exchange for a complete source code of his malware bot. Both propositions are also great examples that vendors engage by keeping their current and potential customers up-to-date with <a href="http://ddanchev.blogspot.com/2008/04/botnet-masters-to-do-list.html">TODO lists of features to come</a> next to the usual CHANGELOGS, and, of course,&nbsp; establish trust by allowing potential customers to take a peek at the source code of the malware they're about to purchase.<br />
<br />
<b>Related posts:</b><br />
<a href="http://ddanchev.blogspot.com/2008/07/coding-spyware-and-malware-for-hire.html">Coding Spyware and Malware for Hire </a><br />
<a href="http://ddanchev.blogspot.com/2007/03/underground-economys-supply-of-goods.html">The Underground Economy's Supply of Goods and Services</a><br />
<a href="http://ddanchev.blogspot.com/2007/10/dynamics-of-malware-industry.html">The Dynamics of the Malware Industry - Proprietary Malware Tools</a><br />
<a href="http://ddanchev.blogspot.com/2008/06/using-market-forces-to-disrupt-botnets.html">Using Market Forces to Disrupt Botnets</a><br />
<a href="http://ddanchev.blogspot.com/2007/10/multiple-firewalls-bypassing.html">Multiple Firewalls Bypassing Verification on Demand</a><br />
<a href="http://ddanchev.blogspot.com/2007/10/managed-spamming-appliances-future-of.html">Managed Spamming Appliances - The Future of Spam</a><br />
<a href="http://ddanchev.blogspot.com/2008/02/localizing-cybercrime-cultural.html">Localizing Cybercrime - Cultural Diversity on Demand</a><br />
<a href="http://ddanchev.blogspot.com/2008/01/e-crime-and-socioeconomic-factors.html">E-crime and Socioeconomic Factors</a><br />
<a href="http://ddanchev.blogspot.com/2007/12/russias-fsb-vs-cybercrime.html">Russia's FSB vs Cybercrime</a><br />
<a href="http://ddanchev.blogspot.com/2007/08/malware-as-web-service.html">Malware as a Web Service</a><br />
<a href="http://ddanchev.blogspot.com/2007/09/localizing-open-source-malware.html">Localizing Open Source Malware</a><br />
<a href="http://ddanchev.blogspot.com/2008/04/quality-and-assurance-in-malware.html">Quality and Assurance in Malware Attacks</a><br />
<a href="http://ddanchev.blogspot.com/2006/09/benchmarking-and-optimising-malware.html">Benchmarking and Optimising Malware</a><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=a8huN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=a8huN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=sEoBN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=sEoBN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=Rj24n"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=Rj24n" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=W4aen"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=W4aen" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=7YAqN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=7YAqN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=rEDhN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=rEDhN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=rpNUn"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=rpNUn" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/457569401" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 18 Nov 2008 10:57:55 +0000</pubDate>
      <category domain="http://securityratty.com/tag/malware">malware</category>
      <category domain="http://securityratty.com/tag/code">code</category>
      <category domain="http://securityratty.com/tag/source malware">source malware</category>
      <category domain="http://securityratty.com/tag/malware attacks">malware attacks</category>
      <category domain="http://securityratty.com/tag/malware bot">malware bot</category>
      <category domain="http://securityratty.com/tag/proprietary malware tools">proprietary malware tools</category>
      <category domain="http://securityratty.com/tag/source code">source code</category>
      <category domain="http://securityratty.com/tag/complete source code">complete source code</category>
      <category domain="http://securityratty.com/tag/tools">tools</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/457569401/will-code-malware-for-financial.html">Will Code Malware for Financial Incentives</source>
    </item>
    <item>
      <title><![CDATA[NetWitness releases free version of security software]]></title>
      <link>http://securityratty.com/article/c9756823da1d504b96f5e12bd39dadf2</link>
      <guid>http://securityratty.com/article/c9756823da1d504b96f5e12bd39dadf2</guid>
      <description><![CDATA[NetWitness, a vendor of networking threat-analysis software, is offering a free version of its NetWitness Investigator package by download, the company said...]]></description>
      <content:encoded><![CDATA[NetWitness, a vendor of networking threat-analysis software, is offering a free version of its NetWitness Investigator package by download, the company said Monday.]]></content:encoded>
      <pubDate>Sun, 16 Nov 2008 21:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/netwitness">netwitness</category>
      <category domain="http://securityratty.com/tag/netwitness investigator package">netwitness investigator package</category>
      <category domain="http://securityratty.com/tag/free version">free version</category>
      <category domain="http://securityratty.com/tag/threat-analysis software">threat-analysis software</category>
      <category domain="http://securityratty.com/tag/monday">monday</category>
      <category domain="http://securityratty.com/tag/company">company</category>
      <category domain="http://securityratty.com/tag/vendor">vendor</category>
      <category domain="http://securityratty.com/tag/download">download</category>
      <source url="http://www.networkworld.com/news/2008/111708-netwitness-releases-free-version-of.html?fsrc=rss-security">NetWitness releases free version of security software</source>
    </item>
    <item>
      <title><![CDATA[A Diverse Portfolio of Fake Security Software - Part Thirteen]]></title>
      <link>http://securityratty.com/article/f98a08c6e830a559db2ccd85e32f048e</link>
      <guid>http://securityratty.com/article/f98a08c6e830a559db2ccd85e32f048e</guid>
      <description><![CDATA[What is the difference between a reactive and proactive threat intell? A reactive threat intell is assessing a campaign, individual, a group of individuals, how are they related to one another, and...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SRri0cTxwTI/AAAAAAAACb0/G9gmDkGawOk/s1600-h/fake_security_software_powerfull.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SRri0cTxwTI/AAAAAAAACb0/G9gmDkGawOk/s200/fake_security_software_powerfull.png" /></a>What is the difference between a reactive and proactive threat intell? A reactive threat intell is assessing a campaign, individual, a group of individuals, how are they related to one another, and what have they been doing in the past, based exclusively on a lead that's been found within the past couple of hours.<br />
<br />
Try the very latest rogue security domains courtesy of three domainers (<b>Fedor Ibragimov cndomainz@yahoo.com, Anton Golovayk gpdomains@yahoo.com</b> and <b>Ivan Durov idomains.admin@gmail.com</b> ) whose portfolios can always keep you updated about the latest releases of such popular software as The Best Antivirus Cleaner 2008.<br />
<br />
<b>powerfullantivirusscan .com</b> (78.159.118.217; 89.149.253.215; 208.72.168.185)<br />
<b>protection-update .com</b><br />
<b>updatepcprotection .com</b><br />
<b>updateyourprotection .com</b><br />
<b>mac-imunizator .net</b> (67.205.75.10)<br />
<b>avproinstall .com</b> (78.157.141.26)<br />
<b>winavpro .com</b> (92.241.163.30)<br />
<br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://4.bp.blogspot.com/_wICHhTiQmrA/SRtYLfJhw0I/AAAAAAAACcM/NIA5Cb8GMjI/s1600-h/fake_security_software_november_.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://4.bp.blogspot.com/_wICHhTiQmrA/SRtYLfJhw0I/AAAAAAAACcM/NIA5Cb8GMjI/s200/fake_security_software_november_.png" /></a>As far as proactive threat intell is concerned, try the following "upcoming fake security software domains" :<br />
<br />
<b>spywaredefender2009 .com<br />
spywaredestroyer2009 .com<br />
spywareeliminator2009 .com<br />
spywareprotector2009 .com</b><br />
<br />
It would be interesting to monitor whether or not the well known non-existent security software brands we've monitoring throughout 2008, will be basically typosquatted in a 2009 like fashion, or would they simply introduce new brands. With their business model under pressure, I'm starting to see evidence of schemes involving the illegal advertisement of affiliate links to legitimate security software, where the cybercriminals are actual resellers of it. There's also no shortage of surreal situations, where a fake security software is taking advantage of blackhat SEO practices promising the removal of competing fake security software brands.<br />
<br />
Last week, the <b>noadware .net </b>(69.20.71.82; 69.20.104.139) software was persistently advertised in such a way, mostly by generating Wordpress accounts promising to remove competing software :<br />
<br />
<b>antiviruspro2009.wordpress .com<br />
ultraantivirus2009.wordpress .com<br />
smartantivirus.wordpress .com<br />
antiviruslab2009.wordpress .com<br />
antivirusvip.wordpress .com<br />
personaldefender2009.wordpress .com<br />
malwareremoval.wordpress .com</b><br />
<br />
Naturally, it didn't take long before blackhat SEO farms were created for the purpose, like these very latest ones :<br />
<br />
<b>removal-tool.blogspot .com<br />
cgidoctor .com<br />
spywareremoval .net<br />
spyware-adware-remover .com<br />
spywarestop .com<br />
zero-adware .net<br />
adware-remove .com<br />
antispywaresecrets .com<br />
protectyourcomputerfromspyware .info<br />
cleanpcfree .net<br />
spyware-bot&nbsp; .com<br />
spywarezapper.co .uk<br />
thepcsecurity .com<br />
noadware-official-site .com<br />
spywaredoctorfavor .cn<br />
removespywareedge .cn<br />
thespywareremover .com<br />
virusremovalguru .com<br />
virusremovalguide .org</b> <br />
<br />
The day when fake security software sites start attracting traffic by promising to remove other fake security software, is the day when we have clear evidence that an ecosystem has emerged.<br />
<br />
<b>Related posts:</b><br />
<a href="http://ddanchev.blogspot.com/2008/11/diverse-portfolio-of-fake-security.html">A Diverse Portfolio of Fake Security Software - Part Twelve</a><br />
<a href="http://ddanchev.blogspot.com/2008/10/diverse-portfolio-of-fake-security_28.html">A Diverse Portfolio of Fake Security Software - Part Eleven</a><br />
<a href="http://ddanchev.blogspot.com/2008/10/diverse-portfolio-of-fake-security_22.html">A Diverse Portfolio of Fake Security Software - Part Ten</a><br />
<a href="http://ddanchev.blogspot.com/2008/10/diverse-portfolio-of-fake-security_16.html">A Diverse Portfolio of Fake Security Software - Part Nine</a><br />
<a href="http://ddanchev.blogspot.com/2008/10/diverse-portfolio-of-fake-security.html">A Diverse Portfolio of Fake Security Software - Part Eight</a><br />
<a href="http://ddanchev.blogspot.com/2008/09/diverse-portfolio-of-fake-security_30.html">A Diverse Portfolio of Fake Security Software - Part Seven</a><br />
<a href="http://ddanchev.blogspot.com/2008/09/diverse-portfolio-of-fake-security_24.html">A Diverse Portfolio of Fake Security Software - Part Six</a><br />
<a href="http://ddanchev.blogspot.com/2008/09/diverse-portfolio-of-fake-security.html">A  Diverse Portfolio of Fake Security Software - Part Five</a> <br />
<a href="http://ddanchev.blogspot.com/2008/08/diverse-portfolio-of-fake-security_25.html">A  Diverse Portfolio of Fake Security Software - Part Four</a><br />
<a href="http://ddanchev.blogspot.com/2008/08/diverse-portfolio-of-fake-security_20.html">A  Diverse Portfolio of Fake Security Software - Part Three</a><b> </b><br />
<a href="http://ddanchev.blogspot.com/2008/08/diverse-portfolio-of-fake-security.html">A  Diverse Portfolio of Fake Security Software - Part Two</a><br />
<a href="http://ddanchev.blogspot.com/2007/12/diverse-portfolio-of-fake-security.html">Diverse  Portfolio of Fake Security Software</a><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=AqTIN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=AqTIN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=GqbtN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=GqbtN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=AwMMn"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=AwMMn" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=wYg3n"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=wYg3n" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=xmYvN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=xmYvN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=lK1GN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=lK1GN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=uEj3n"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=uEj3n" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/451194751" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 12 Nov 2008 13:57:26 +0000</pubDate>
      <category domain="http://securityratty.com/tag/security software">security software</category>
      <category domain="http://securityratty.com/tag/software">software</category>
      <category domain="http://securityratty.com/tag/fake security software">fake security software</category>
      <category domain="http://securityratty.com/tag/popular software">popular software</category>
      <category domain="http://securityratty.com/tag/diverse portfolio">diverse portfolio</category>
      <category domain="http://securityratty.com/tag/wordpress">wordpress</category>
      <category domain="http://securityratty.com/tag/wordpress accounts">wordpress accounts</category>
      <category domain="http://securityratty.com/tag/proactive threat intell">proactive threat intell</category>
      <category domain="http://securityratty.com/tag/net">net</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/451194751/diverse-portfolio-of-fake-security_12.html">A Diverse Portfolio of Fake Security Software - Part Thirteen</source>
    </item>
    <item>
      <title><![CDATA[Summarizing Zero Day's Posts for October]]></title>
      <link>http://securityratty.com/article/a5e118769d179df503db1386a2fbc30e</link>
      <guid>http://securityratty.com/article/a5e118769d179df503db1386a2fbc30e</guid>
      <description><![CDATA[Here's a brief summary of all of my posts at Zero Day for October. You can also go through previous summaries for September , August and July , as well as subscribe to my personal RSS feed or Zero...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SRBYNIh0VgI/AAAAAAAACa0/MKlcakIiNx0/s1600-h/zdnet_zeroday.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SRBYNIh0VgI/AAAAAAAACa0/MKlcakIiNx0/s200/zdnet_zeroday.png" /></a>Here's a brief summary of all of my posts at <a href="http://blogs.zdnet.com/security">Zero Day</a> for October. You can also go through previous summaries for <a href="http://ddanchev.blogspot.com/2008/10/summarizing-zero-days-posts-for.html">September</a>, <a href="http://ddanchev.blogspot.com/2008/09/summarizing-zero-days-posts-for-august.html">August</a> and <a href="http://ddanchev.blogspot.com/2008/08/summarizing-zero-days-posts-for-july.html">July</a>, as well as subscribe to my <a href="http://updates.zdnet.com/tags/dancho+danchev.html?t=0&amp;s=0&amp;o=1&amp;mode=rss">personal RSS feed</a> or <a href="http://feeds.feedburner.com/zdnet/security">Zero Day's main feed</a>.<br />
<br />
Notable articles for October - <a href="http://blogs.zdnet.com/security/?p=2000">Scammers introduce ATM skimmers with built-in SMS notification</a>; <a href="http://blogs.zdnet.com/security/?p=2054">Inside an affiliate spam program for pharmaceuticals</a>; <a href="http://blogs.zdnet.com/security/?p=2084">CardCops: Stolen credit card details getting cheaper</a>.<br />
<br />
<b>01.</b> <a href="http://blogs.zdnet.com/security/?p=1995">Cybercriminals syndicating Google Trends keywords to serve malware</a><br />
<b>02.</b> <a href="http://blogs.zdnet.com/security/?p=2000">Scammers introduce ATM skimmers with built-in SMS notification</a><br />
<b>03.</b> <a href="http://blogs.zdnet.com/security/?p=2006">Atrivo/Intercage's disconnection briefly disrupts spam levels</a><br />
<b>04.</b> <a href="http://blogs.zdnet.com/security/?p=2009">Adobe posts workaround for clickjacking flaw, NoScript releases ClearClick</a><br />
<b>05.</b> <a href="http://blogs.zdnet.com/security/?p=2016">Asus ships Eee Box PCs with malware</a><br />
<b>06.</b> <a href="http://blogs.zdnet.com/security/?p=2027">Fake Microsoft Patch Tuesday malware campaign spreading</a><br />
<b>07.</b> <a href="http://blogs.zdnet.com/security/?p=2030">Secunia: popular security suites failing to block exploits</a><br />
<b>08.</b> <a href="http://blogs.zdnet.com/security/?p=2033">Survey: 88% of Mumbai's wireless networks easy to compromise</a><br />
<b>09.</b> <a href="http://blogs.zdnet.com/security/?p=2039">Adobe's Serious Magic site SQL Injected by Asprox botnet</a><br />
<b>10.</b> <a href="http://blogs.zdnet.com/security/?p=2054">Inside an affiliate spam program for pharmaceuticals</a><br />
<b>11.</b> <a href="http://blogs.zdnet.com/security/?p=2055">Google to introduce warnings for potentially hackable sites</a><br />
<b>12.</b> <a href="http://blogs.zdnet.com/security/?p=2064">Lack of phishing attacks data sharing puts $300M at stake annually</a><br />
<b>13.</b> <a href="http://blogs.zdnet.com/security/?p=2084">CardCops: Stolen credit card details getting cheaper</a><br />
<b>14.</b> <a href="http://blogs.zdnet.com/security/?p=2089">Cybercrime friendly EstDomains loses ICANN registrar accreditation</a><br />
<b>15.</b> <a href="http://blogs.zdnet.com/security/?p=2095">Phishers apply quality assurance, start validating credit card numbers</a><br />
<b>16.</b> <a href="http://blogs.zdnet.com/security/?p=2097">Spammers targeting Bebo, generate thousands of bogus accounts</a><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=eZ1fN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=eZ1fN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=qtJGN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=qtJGN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=Gek7n"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=Gek7n" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=XQG3n"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=XQG3n" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=vFULN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=vFULN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=alTPN"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=alTPN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=OHk6n"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=OHk6n" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/442142169" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 04 Nov 2008 05:28:07 +0000</pubDate>
      <category domain="http://securityratty.com/tag/posts">posts</category>
      <category domain="http://securityratty.com/tag/credit card details">credit card details</category>
      <category domain="http://securityratty.com/tag/credit card">credit card</category>
      <category domain="http://securityratty.com/tag/built-in sms notification">built-in sms notification</category>
      <category domain="http://securityratty.com/tag/adobe posts workaround">adobe posts workaround</category>
      <category domain="http://securityratty.com/tag/adobe">adobe</category>
      <category domain="http://securityratty.com/tag/google">google</category>
      <category domain="http://securityratty.com/tag/google trends keywords">google trends keywords</category>
      <category domain="http://securityratty.com/tag/day">day</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/442142169/summarizing-zero-days-posts-for-october.html">Summarizing Zero Day's Posts for October</source>
    </item>
    <item>
      <title><![CDATA[Microsoft Releases Emergency Patch For Critical Windows Vulnerability]]></title>
      <link>http://securityratty.com/article/e9fe767ddd9bdb8b6ec01768b3f18a55</link>
      <guid>http://securityratty.com/article/e9fe767ddd9bdb8b6ec01768b3f18a55</guid>
      <description><![CDATA[Microsoft has released an out-of-band patch to fix an extremely critical vulnerability that exposes Windows users to remote code execution attacks. The emergency update comes just one week after the...]]></description>
      <content:encoded><![CDATA[Microsoft has released an out-of-band patch to fix an extremely critical vulnerability that exposes Windows users to remote code execution attacks.
The emergency update comes just one week after the regularly scheduled Patch Tuesday and follows the discovery of a targeted zero-day attack, Microsoft said in an advisory. The vulnerability is rated critical on Windows 2000, [...]]]></content:encoded>
      <pubDate>Thu, 23 Oct 2008 21:01:14 +0000</pubDate>
      <category domain="http://securityratty.com/tag/vulnerability">vulnerability</category>
      <category domain="http://securityratty.com/tag/windows">windows</category>
      <category domain="http://securityratty.com/tag/critical">critical</category>
      <category domain="http://securityratty.com/tag/extremely critical vulnerability">extremely critical vulnerability</category>
      <category domain="http://securityratty.com/tag/microsoft">microsoft</category>
      <category domain="http://securityratty.com/tag/exposes windows users">exposes windows users</category>
      <category domain="http://securityratty.com/tag/patch tuesday">patch tuesday</category>
      <category domain="http://securityratty.com/tag/zero-day attack">zero-day attack</category>
      <category domain="http://securityratty.com/tag/emergency">emergency</category>
      <source url="http://cyberinsecure.com/microsoft-releases-emergency-patch-for-critical-windows-vulnerability/">Microsoft Releases Emergency Patch For Critical Windows Vulnerability</source>
    </item>
    <item>
      <title><![CDATA[Microsoft releases emergency Windows patch to head off worm attack]]></title>
      <link>http://securityratty.com/article/33db2633ac40d1620ba52ce8ccf44817</link>
      <guid>http://securityratty.com/article/33db2633ac40d1620ba52ce8ccf44817</guid>
      <description><![CDATA[Microsoft warned that attackers are exploiting a critical flaw in the Windows operating system that could be used in a worm attack and rushed out an emergency patch on...]]></description>
      <content:encoded><![CDATA[Microsoft warned that attackers are exploiting a critical flaw in the Windows operating system that could be used in a worm attack and rushed out an emergency patch on Thursday.<br style="clear: both;"/>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:46fd65dd8796aaba3d3d51e92c7ab66b:iSuBc3X4EBBwK%2FGkOhN82Drbf6rI40n6Uo%2BhSiw5HMu43WtYB9urI8oz%2BH5TGG3fKyI9F6tYDJQB'><img border='0' title='Add to digg' alt='Add to digg' src='http://www.pheedo.com/images/mm/digg.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:2ec241a4ff7c41f02c20b0b24320c2b7:8e7SE7VJ%2FpnMh44njeovY4jmJDFLNxd1Q29qYi5ZSG7t2JwMGLRYuPB2mpJeLR0QWlWD3Lht7jOCcA%3D%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://www.pheedo.com/images/mm/stumbleit.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:93142091bb68ee4ac629c65f331eb763:b7ekJx4%2FFZBWcmeFZLXADy5Ii05u5EfVyVvkPGEZK7fcH6PcDdxPxGlhoBqhqSljlJ3Yv3jnLjcRNw%3D%3D'><img border='0' title='Add to Twitter' alt='Add to Twitter' src='http://www.pheedo.com/images/mm/twitter.png'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:84f5cb2b5718a0ac328baf77d7dbfe94:B71fMmUCTMz13SGP4rGBakTN2gc5JXlUf%2BcDYln5pYz%2BxC6vgrblGMW0CGF1y%2FX6RyKC5n3lDXd1mQ%3D%3D'><img border='0' title='Add to Slashdot' alt='Add to Slashdot' src='http://www.pheedo.com/images/mm/slashdot.png'/></a>
<br style="clear: both;"/>      <a href="http://www.pheedo.com/feeds/ht.php?t=c&amp;i=2be21a7718e3bfb1d63f9a30f1ee4bd3"><img src="http://www.pheedo.com/feeds/ht.php?t=v&amp;i=2be21a7718e3bfb1d63f9a30f1ee4bd3" border="0" /></a>
  <img src="http://www.pheedo.com/feeds/tracker.php?i=2be21a7718e3bfb1d63f9a30f1ee4bd3" style="display: none;" border="0" height="1" width="1" alt=""/>]]></content:encoded>
      <pubDate>Thu, 23 Oct 2008 00:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/worm attack">worm attack</category>
      <category domain="http://securityratty.com/tag/critical flaw">critical flaw</category>
      <category domain="http://securityratty.com/tag/windows">windows</category>
      <category domain="http://securityratty.com/tag/emergency patch">emergency patch</category>
      <category domain="http://securityratty.com/tag/microsoft">microsoft</category>
      <category domain="http://securityratty.com/tag/attackers">attackers</category>
      <category domain="http://securityratty.com/tag/system">system</category>
      <category domain="http://securityratty.com/tag/thursday">thursday</category>
      <source url="http://feeds.computerworld.com/click.phdo?i=2be21a7718e3bfb1d63f9a30f1ee4bd3">Microsoft releases emergency Windows patch to head off worm attack</source>
    </item>
    <item>
      <title><![CDATA[Blue Box #84: New Cisco, Avaya, Nortel VoIP security vulnerabilities from VoIPShield, Skype in China, UCSniff and other new tools, news and more]]></title>
      <link>http://securityratty.com/article/5ad9e83dc3458677a18e9f3f40c0fb21</link>
      <guid>http://securityratty.com/article/5ad9e83dc3458677a18e9f3f40c0fb21</guid>
      <description><![CDATA[Synopsis: Blue Box #84: New Cisco, Avaya, Nortel VoIP security vulnerabilities from VoIPShield, Skype in China, UCSniff and other new tools, news and more
Welcome to Blue Box: The VoIP Security...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Synopsis:</strong>&nbsp; Blue Box #84: New Cisco, Avaya, Nortel VoIP security vulnerabilities
from VoIPShield, Skype in China, UCSniff and other new tools, news and
more

</p><hr /><p>Welcome to <strong>Blue Box: The VoIP Security Podcast</strong> #84, a 30-minute podcast&nbsp; from Dan York and Jonathan Zar covering VoIP security news, comments and opinions.&nbsp; &nbsp; </p>

<p><a href="http://media.libsyn.com/media/lodestar/BBP-084-2008-10-10.mp3" rel="enclosure">Download the show here</a> (MP3, MB) or <a href="http://feeds.feedburner.com/BlueBox">subscribe to the RSS feed</a> to download the show automatically.&nbsp; </p>

 

<p>You may also listen to this podcast right now:</p> 

<p><object width="200" height="20" type="application/x-shockwave-flash" data="http://www.blueboxpodcast.com/dewplayer.swf?son=http://media.libsyn.com/media/lodestar/BBP-084-2008-10-10.mp3"><param name="movie" value="http://www.blueboxpodcast.com/dewplayer.swf?son=http://media.libsyn.com/media/lodestar/BBP-084-2008-10-10.mp3&amp;bgcolor=#FFFFFF" /></object> </p> 

<p><strong>Show Content:</strong></p> 
 


	<ul> <li>00:20 - Intro to the show, contact information and how to provide comments.&nbsp; Welcome to all the new listeners - and to all those listeners who have been here for so long!</li>
<li>Programming notes:
	<ul>
	<li>Three-year anniversary of Blue Box coming up on October 24th - any thoughts you'd like to share with us? (Please send them to us by October 23rd.)</li>
		
	</ul>
</li>

<li><a href="http://www.marketwatch.com/news/story/voipshield-uncovers-new-security-vulnerabilities/story.aspx?guid=%7B956C0D98-121F-4E95-BC14-3B5F448AF25A%7D&amp;dist=hppr">VoIPShield announces new vulnerabilities</a> and <a id="r9se" href="http://www.voipshield.com/research.php" title="http://www.voipshield.com/research.php">http://www.voipshield.com/research.php</a></li>

<li><span style="font-family: Arial;"><a href="http://www.theregister.co.uk/2008/09/30/voip_eavesdropping_tool">http://www.theregister.co.uk/2008/09/30/voip_eavesdropping_tool</a><span style="font-size: 0.8em;">/</span></span></li>

<li><span style="font-family: Arial;"><span style="font-size: 0.8em;">&quot;Sipera Develops VoIP Spy Program - to Prove a Point&quot; - <a title="http://www.voipplanet.com/trends/article.php/3776136" href="http://www.voipplanet.com/trends/article.php/3776136" id="gfhu">http://www.voipplanet.com/trends/article.php/3776136</a></span></span></li>

<li><span style="font-family: Arial;"><span style="font-size: 0.8em;"><a href="http://www.marketwatch.com/news/story/securelogix-announces-free-availability-voip/story.aspx?guid=%7BF1947C89-8177-4FA2-A40E-8D6E021BF558%7D&amp;dist=hppr">SecureLogix Announces Free Availability of VoIP Security Tools</a></span></span></li>

<li>NY Times: Surveillance of Skype Messages Found in China - <a title="http://www.nytimes.com/2008/10/02/technology/internet/02skype.html?_r=2&amp;partner=rssnyt&amp;pagewanted=print" href="http://www.nytimes.com/2008/10/02/technology/internet/02skype.html?_r=2&amp;partner=rssnyt&amp;pagewanted=print" id="dnb2">http://www.nytimes.com/2008/10/02/technology/internet/02skype.html?_r=2&amp;partner=rssnyt&amp;pagewanted=print</a> </li>

<li><a title="http://securitywatch.eweek.com/privacy/skypechina_breach_is_anyone_really_surprised.html" href="http://securitywatch.eweek.com/privacy/skypechina_breach_is_anyone_really_surprised.html" id="i8rz">http://securitywatch.eweek.com/privacy/skypechina_breach_is_anyone_really_surprised.html</a> </li>

<li><a title="http://www.informationweek.com/news/telecom/voip/showArticle.jhtml?articleID=210605439" href="http://www.informationweek.com/news/telecom/voip/showArticle.jhtml?articleID=210605439" id="ugx5">http://www.informationweek.com/news/telecom/voip/showArticle.jhtml?articleID=210605439</a> </li>

<li>Skype CEO's blog post about the issue: <a title="http://share.skype.com/sites/en/2008/10/answers_to_some_commonly_asked.html" href="http://share.skype.com/sites/en/2008/10/answers_to_some_commonly_asked.html" id="mucu">http://share.skype.com/sites/en/2008/10/answers_to_some_commonly_asked.html</a></li>

<li><span style="font-family: Arial;"><a title="http://www.itbusinessedge.com/blogs/top/?p=398" href="http://www.itbusinessedge.com/blogs/top/?p=398">http://www.itbusinessedge.com/blogs/top/?p=398</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.voip-news.com/feature/google-phone-europe-growth-092408/" href="http://www.voip-news.com/feature/google-phone-europe-growth-092408/">http://www.voip-news.com/feature/google-phone-europe-growth-092408/</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.itnewsafrica.com/?p=1269" href="http://www.itnewsafrica.com/?p=1269">http://www.itnewsafrica.com/?p=1269</a></span></li>

<li><span style="font-family: Arial;"><a title="http://news.cnet.com/8301-1009_3-10052393-83.html" href="http://news.cnet.com/8301-1009_3-10052393-83.html">http://news.cnet.com/8301-1009_3-10052393-83.html</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.broadbandreports.com/shownews/VoIP-Vulnerabilities-Being-Exposed-Today-98039" href="http://www.broadbandreports.com/shownews/VoIP-Vulnerabilities-Being-Exposed-Today-98039">http://www.broadbandreports.com/shownews/VoIP-Vulnerabilities-Being-Exposed-Today-98039</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.itbusinessedge.com/blogs/top/?p=402" href="http://www.itbusinessedge.com/blogs/top/?p=402">http://www.itbusinessedge.com/blogs/top/?p=402</a></span></li>

<li><span style="font-family: Arial;"><a id="tvjh" href="http://voipsa.org/blog/2008/10/07/5th-emergency-services-workshop-to-be-held-oct-21-23-in-vienna/" title="http://voipsa.org/blog/2008/10/07/5th-emergency-services-workshop-to-be-held-oct-21-23-in-vienna/">http://voipsa.org/blog/2008/10/07/5th-emergency-services-workshop-to-be-held-oct-21-23-in-vienna/</a></span></li>

<li><span style="font-family: Arial;"><a title="http://eon.businesswire.com/news/eon/20080924005342/en" href="http://eon.businesswire.com/news/eon/20080924005342/en">http://eon.businesswire.com/news/eon/20080924005342/en</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.crn.com/security/210602442" href="http://www.crn.com/security/210602442">http://www.crn.com/security/210602442</a></span></li>

<li><span style="font-family: Arial;"><a title="http://it.tmcnet.com/topics/it/articles/41236-infoblox-unveils-dns-firewall-address-dns-vulnerability-concerns.htm" href="http://it.tmcnet.com/topics/it/articles/41236-infoblox-unveils-dns-firewall-address-dns-vulnerability-concerns.htm">http://it.tmcnet.com/topics/it/articles/41236-infoblox-unveils-dns-firewall-address-dns-vulnerability-concerns.htm</a></span></li>

<li><span style="font-family: Arial;"><a title="http://www.newswire.ca/en/releases/archive/September2008/29/c9005.html" href="http://www.newswire.ca/en/releases/archive/September2008/29/c9005.html">http://www.newswire.ca/en/releases/archive/September2008/29/c9005.html</a></span></li>

<li>No comments this week.<br />
</li>

<li>Review of the last week's traffic on the <a href="http://www.voipsa.org/VOIPSEC/">VOIPSEC </a>public mailing list<br />
</li>

<li>Wrap-up of the show<br />
</li>

<li>30:26 - End of show&nbsp; </li></ul> <p><em>NOTE: Long-time listeners will note that the show notes above are in a less descriptive form than usual. After almost three years of using one wiki for preparing for our shows, Jonathan and I switched to using a new system and are still working out some of the details that will speed the input into show notes. </em></p>

<p>Comments, suggestions and feedback are welcome either as replies to this post&nbsp; or via e-mail to <a href="mailto:blueboxpodcast@gmail.com">blueboxpodcast@gmail.com</a>.&nbsp; Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.&nbsp; You may also call the listener comment line at either +1-415-830-5439 or via SIP to '<a href="sip:bluebox@voipuser.org">bluebox@voipuser.org</a>' to leave a comment there.&nbsp; </p> <p>Thank you for listening and please do let us know what you think of the show. </p></div>

<p><a href="http://feeds.feedburner.com/~a/BlueBox?a=vzRu3i"><img src="http://feeds.feedburner.com/~a/BlueBox?i=vzRu3i" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/BlueBox?a=MSaWM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=MSaWM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=Uy3HM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=Uy3HM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=yGFHM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=yGFHM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=eCUOM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=eCUOM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=ZOgKm"><img src="http://feeds.feedburner.com/~f/BlueBox?i=ZOgKm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/BlueBox?a=5vEnM"><img src="http://feeds.feedburner.com/~f/BlueBox?i=5vEnM" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/BlueBox/~4/426417749" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 20 Oct 2008 04:32:28 +0000</pubDate>
      <category domain="http://securityratty.com/tag/skype">skype</category>
      <category domain="http://securityratty.com/tag/blue box">blue box</category>
      <category domain="http://securityratty.com/tag/news">news</category>
      <category domain="http://securityratty.com/tag/tools">tools</category>
      <category domain="http://securityratty.com/tag/voipshield">voipshield</category>
      <category domain="http://securityratty.com/tag/comments">comments</category>
      <category domain="http://securityratty.com/tag/audio comments">audio comments</category>
      <category domain="http://securityratty.com/tag/podcast">podcast</category>
      <category domain="http://securityratty.com/tag/skype messages">skype messages</category>
      <source url="http://feeds.feedburner.com/~r/BlueBox/~3/426417749/blue-box-84-new.html">Blue Box #84: New Cisco, Avaya, Nortel VoIP security vulnerabilities from VoIPShield, Skype in China, UCSniff and other new tools, news and more</source>
    </item>
    <item>
      <title><![CDATA[Patch releases push down Microsoft's stock, researcher says]]></title>
      <link>http://securityratty.com/article/60829f2e11c1d10a243de7165906dd02</link>
      <guid>http://securityratty.com/article/60829f2e11c1d10a243de7165906dd02</guid>
      <description><![CDATA[Microsoft's stock price regularly takes a hit on the days the company issues security patches, but it typically rebounds the next day, according to research by...]]></description>
      <content:encoded><![CDATA[Microsoft's stock price regularly takes a hit on the days the company issues security patches, but it typically rebounds the next day, according to research by McAfee.<br style="clear: both;"/>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:db14c18906cd6286171e36f1b505c124:PZRqyGV%2BeVa56x8QsuZ1VGwJWiRnmHRE1xlP3ci%2F5p1SfVikRFO48hOxvAClo82GAhcWsPr4yHcX'><img border='0' title='Add to digg' alt='Add to digg' src='http://www.pheedo.com/images/mm/digg.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:98eb766b41f634677acf8ddde49db90c:ZzI17ZwYNmR7A2ZN3a6jdB0CY6a5MW%2BRQXJnuVGbFu5VDEzds7F91%2FmoeTTjR2BPvmI6btv6OC2GjQ%3D%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://www.pheedo.com/images/mm/stumbleit.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:a807c85fa0121c3b446785811f18c8c8:97WQ7amn%2BLeQsiFbtP5Aj7NvY4O8TLDdeAMJoJQbyf0Ju7h8xaX43uxgP%2BdUHRyMVTVThX1bOqqlAA%3D%3D'><img border='0' title='Add to Twitter' alt='Add to Twitter' src='http://www.pheedo.com/images/mm/twitter.png'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:409e2aba6741dee052205b069874ddb8:CBsAbNQ8xSZ5fx7jz41wXWUBy1PvNUvUONYI5K05O%2Fz4o80YCtJ7YTDb4BFulM4NdLEHCTE9voKO5g%3D%3D'><img border='0' title='Add to Slashdot' alt='Add to Slashdot' src='http://www.pheedo.com/images/mm/slashdot.png'/></a>
<br style="clear: both;"/>  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=05e2089097a863c74e110674976997a0" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=05e2089097a863c74e110674976997a0" style="display: none;" border="0" height="1" width="1" alt=""/>]]></content:encoded>
      <pubDate>Tue, 14 Oct 2008 00:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/microsoft">microsoft</category>
      <category domain="http://securityratty.com/tag/research">research</category>
      <category domain="http://securityratty.com/tag/day">day</category>
      <category domain="http://securityratty.com/tag/mcafee">mcafee</category>
      <category domain="http://securityratty.com/tag/rebounds">rebounds</category>
      <category domain="http://securityratty.com/tag/hit">hit</category>
      <category domain="http://securityratty.com/tag/days">days</category>
      <source url="http://feeds.computerworld.com/click.phdo?i=05e2089097a863c74e110674976997a0">Patch releases push down Microsoft's stock, researcher says</source>
    </item>
  </channel>
</rss>
