Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 



Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Security Center > Computer Security News
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read


Computer Security News The Latest Computer Security News

Reply
 
LinkBack Thread Tools
Old 04-05-2007, 02:55 PM   #1 (permalink)
Registered User
 
SpySentinel's Avatar
 
Join Date: May 2006
Location: The United States
Posts: 378
OS: Windows XP SP2


Exclamation Hackers use Britney photo spam as ANI exploit bait

Hackers use Britney photo spam as ANI exploit bait
By Stephen Withers
Thursday, 05 April 2007

Security vendor Sophos says hackers are using photos of Britney Spears to lure people to compromised websites that deliver an ANI animated cursor exploit to visitors.

"The message is simple: you must patch your computers against this vulnerability now or risk infection. Hackers are exploiting people's tardiness in rolling out updates and looking to infect as many PCs as they can," said Graham Cluley, senior technology consultant for Sophos. "Microsoft issued a patch for the problem yesterday, but the hackers will continue to take advantage of the critical security loophole for as long as they can."

Promises of photos of glamourous female celebrities are frequently used as bait for unwary computer users. Images of Halle Berry, Avril Lavigne, Anna Kournikova, Julia Roberts and Angelina Jolie have all been used to spread malware, company officials said.

The problem with ANI exploits is that they install malicious code without any warning, and hundreds of web sites have been hacked to deliver these exploits to visitors, security companies say.

The exploit can also be delivered via email.

Earlier this week Microsoft released a "critical" patch protecting against this and other GDI-related exploits, but it inevitably takes time for users to install patches. Security vendors have updated their products and services to detect the spam emails and to block users from visiting web sites known to be compromised.

Microsoft has received some criticism for being slow to release the patch, which it had apparently been working on since December 2006. It was released ahead of the usual Patch Tuesday when it became apparent that exploits were becoming widespread.
__________________
Proud graduate of GeekU - Learn how to remove malware at GeekstoGo.com

UNITE
ASAP
SpySentinel is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here

Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




All times are GMT -7. The time now is 11:21 AM.



Copyright 2001 - 2009, Tech Support Forum
Home Tips Plus | Outdoor Basecamp | Automotive Support Forum

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85