Archive for the 'Security' Category


How effective is the MediaMax copy protection?

Wednesday, November 23rd, 2005

One of the sub-stories in all the Sony DRM mess of the last month with the XCP copy protection was that it was really an ineffective way of preventing copying of music anyway. In other words, you could press shift while inserting the cd to avoid the installer, then other programs could access the cd/allow […]

New Beagle/Bagle variant?

Wednesday, November 23rd, 2005

So, I submitted the suspicious attachment I received to virustotal (scan@virustotal.com with SCAN in the subject and suspicious file as attachment.) What follows below is the report I received. It looks like some of the big names (Symantec, McAfee are not finding anything wrong with it at this point, with the hodge-podge of names it […]

Today’s Sony DRM rootkit stories….

Wednesday, November 23rd, 2005

Amazingly I haven’t seen any big Sony news today, but there are a couple stories out that are worth noting… First up is freedom-to-tinker with their take on the lawsuits announced yesterday and the one thing that isn’t getting much press coverage, the MediaMax DRM software. XCP is the name of the rootkit that Sony […]

New Sober variants..

Tuesday, November 22nd, 2005

Ok – there are some new variants on the Sober worm circulating. I received one on an address that’s unfiltered (no virus/spam filtering) and must say, I can see people being duped into looking at the attachment. Sans has a post on it.. Sarc is calling it W32sober.x@mm and rates it at a threat level […]

More on Explorer vulnerability

Tuesday, November 22nd, 2005

Among other things… Sans has lowered the infocon to green, NOT that the threat is diminished, but there have been no new developments with regards to the announcement yesterday of a major Internet Explorer security vulnerability. Sans recommends browsing the web with firefox (with the noscript extension, so you can enable/disable javascript where you wish). […]

Cleaning up after the Sony Rootkit

Monday, November 21st, 2005

Sunbeltblog has a suggestion (from Ben Edelman) for SONY on how to get the word out to customers that they have the problem laden XCP/ rootkit/ trojan/ drm software that’s been burning up tech news… Distribute an ad through their own rootkit. It does, after all, “phone home” from time to time and…. it looks […]

More Sony lawsuit news… Texas files suit

Monday, November 21st, 2005

The security fix is reporting on the latest lawsuit filed against Sony/BMG for the DRM rootkit known as XCP. “Sony has engaged in a technological version of cloak and dagger deceit against consumers by hiding secret files on their computers,” Abbott is quoted as saying in a press release on his official Web site. “Consumers […]

More on Sony’s copyright infringement with their DRM Rootkit

Monday, November 21st, 2005

“What a tangled web…” there is more today at freedom-to-tinker on the evidence that Sony (and or first4internet), have infringed on copyrighted code in their DRM software XCP which has been at the middle of quite a bit of controversy the last few weeks. Most of the coverage has been on some of the cloaking […]

Malicious .biz site and browser vulnerabilities

Sunday, November 20th, 2005

This from incidents.org as well… A user visited a webpage and got redirected to hxxp://iframebiz.biz/dl/adv443.php (tt changed to xx to protect anyone from getting there…)    Send article as PDF   

Mambo exploit

Sunday, November 20th, 2005

The sans institute (incidents.org) is warning of a Mambo exploit making the rounds. Full disclosure and security focus have more details. No word on this point of workarounds… Mambo, of course, is an open-source CMS (content management system.)    Send article as PDF   

Google
 
Web www.averyjparker.com