NOW READ THIS
("Security Advisory")
Submitted by: Bill Hickey
NCVA Listmaster
NRT-0610 East European Rock Phish cyber gang possibly planning new
attacks:
The Eastern Europe‑based Rock Phish gang is improving
its crimeware and attack methods, and is poised to launch new phishing attacks
soon, according to an online IT journal. RSA, the security division of EMC,
claims Rock Phish, which introduced the Zeus (also called WSNPOEM) Trojan in
April 2008, has been making changes to its command‑and‑control
server by linking it with the so‑called Asprox botnet, which is linked to
a massive wave f structured query language‑injection attacks that
compromised Web sites earlier this year. The Asprox botnet "is a more
advanced fast‑flux network" for propagating phishing attacks,
according to Sean Brady of RSA, who predicts a surge in phishing attacks in the
near future.
According to RSA, the number of worldwide phishing attacks
dropped substantially from 13,695 in June to just 9,294 in July and 7,099 in
August. RSA theorizes this drop is the direct result of the Rock Phish gang
migrating away from its "classic Rock Phish attacks" as their effort
is put into linking into the more powerful Asprox botnet.
[www.computerworld.co.nz 08Sep08]