The goal of this project is to make virtual world a safer and better place without child pornography, major computer crime and RIAA.
Login As
You can log in if you are registered at one of these services:
Security Bulletins
Latest Malware Updates

Infostealer.Posteal

02/26/2015

Downloader.Busadom

02/26/2015

Trojan.Ladocosm

02/26/2015

SONAR.SuspDocRun

02/25/2015

SONAR.SuspHelpRun

02/25/2015

Grum completely shut down

Grum completely shut down

FireEye have confirmed that Grum botnet has been completely shut down. The security specialists managed to gain control over the C&Cs of the third largest spam botnet.

As we have already informed, on 16 July two of the Grum C&Cs, were ceased in the Netherlands. In that day the FireEye geeks informed that most of the Grum servers were stationed in Russia and Panama. They also said that each C&C is in control of a separate botnet segment.

On 17 July the Panama server was also defused and considerable part of Grum zombies stopped sending their spam but hackers introduced 8 new command and secondary servers in Ukraine.

According to FireEye advisory Carel Van Straten and Thomas Morrison from Sophos, CERT-GIB associate Alex Kuzmin, and an independent developer Nova7 conducted a massive operation and shut down all the Grum servers.

It should be pointed out that Grum was responsible for 18 % of all the spam so our inboxes should become a little bit clearer from now on.

FireEye advisory is accessible here.

(c) Naked Security


Security Advisories Database

Remote Code Execution Vulnerability in Microsoft OpenType Font Driver

A remote attacker can execute arbitrary code on the target system.

07/21/2015

SQL Injection Vulnerability in Piwigo

SQL inection vulnerability has been discovered in Piwigo.

02/05/2015

Cross-site Scripting Vulnerability in DotNetNuke

A cross-site scripting (XSS) vulnerability has been discovered in DotNetNuke.

02/05/2015

Cross-site Scripting Vulnerability in Hitachi Command Suite

A cross-site scripting vulnerability was found in Hitachi Command Suite.

02/02/2015

Denial of service vulnerability in FreeBSD SCTP RE_CONFIG Chunk Handling

An attacker can perform a denial of service attack.

01/30/2015

Denial of service vulnerability in Apache Traffic Server HTTP TRACE Max-Forwards

An attacker can perform a denial of service attack.

01/30/2015

Denial of service vulnerability in MalwareBytes Anti-Exploit "mbae.sys"

An attacker can perform a denial of service attack.

01/30/2015

Denial of service vulnerability in Linux Kernel splice

An attacker can perform a denial of service attack.

01/29/2015

Denial of service vulnerability in Python Pillow Module PNG Text Chunks Decompression

An attacker can perform a denial of service attack.

01/20/2015