NOW READ THIS
("Security Advisory")



Submitted by: Bill Hickey
NCVA Listmaster

NRT-0610 East European Rock Phish cyber gang possibly planning new attacks:


The Eastern Europe‑based Rock Phish gang is improving its crimeware and attack methods, and is poised to launch new phishing attacks soon, according to an online IT journal. RSA, the security division of EMC, claims Rock Phish, which introduced the Zeus (also called WSNPOEM) Trojan in April 2008, has been making changes to its command‑and‑control server by linking it with the so‑called Asprox botnet, which is linked to a massive wave f structured query language‑injection attacks that compromised Web sites earlier this year. The Asprox botnet "is a more advanced fast‑flux network" for propagating phishing attacks, according to Sean Brady of RSA, who predicts a surge in phishing attacks in the near future.

According to RSA, the number of worldwide phishing attacks dropped substantially from 13,695 in June to just 9,294 in July and 7,099 in August. RSA theorizes this drop is the direct result of the Rock Phish gang migrating away from its "classic Rock Phish attacks" as their effort is put into linking into the more powerful Asprox botnet.

[www.computerworld.co.nz 08Sep08]


Last Modified: Thursday, 09-Oct-2008 07:37:53 EDT