Feeds

MS teams with Facebook to eradicate Koobface worm

Redmond clean-up crew

Combat fraud and increase customer satisfaction

Microsoft has teamed up with Facebook to purge the persistent Koobface worm from the popular social-networking site.

Security researchers from Microsoft added detection for the Koobface worm to Microsoft's Software Removal Tool (MSRT) two weeks ago. In the intervening fortnight, more than 133,000 infected Windows PCs have been cleaned up as a result, Microsoft said in a posting on Facebook on Thursday.

Koobface is a worm that works by spamming the contacts of an infected user with messages, such as "Check out this video", directing them to a third-party site hosting malware. Prospective marks are invited to download an "audio code" to view the supposed video clip. This software update contains the malware payload, which activates if executed on a Windows machine, restarting the whole cycle of infection. The malware creates a backdoor on compromised machines, allowing the download of Trojans and other nasty under the control of hackers.

Variants of Koobface first surfaced last August. Multiple variants, some targeting MySpace and Bebo, have cropped up since and continue to be produced. Facebook outbreaks have occurred in August, December, and March, periodically though not particularly seriously - something like the electronic equivalent of herpes.

Microsoft's Software Removal Tool tackles over 100 strains of malware. It's partnership with Facebook shows its prepared to bring other firms on board in fighting the scourge of malware, which (for most intents and purposes) remains a Windows-only problem. ®

SANS - Survey on application security programs

Whitepapers

Mobile application security study
Download this report to see the alarming realities regarding the sheer number of applications vulnerable to attack, as well as the most common and easily addressable vulnerability errors.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Securing web applications made simple and scalable
In this whitepaper learn how automated security testing can provide a simple and scalable way to protect your web applications.
Combat fraud and increase customer satisfaction
Based on their experience using HP ArcSight Enterprise Security Manager for IT security operations, Finansbank moved to HP ArcSight ESM for fraud management.