PermaLink Billy Wonka Redux
Revisiting my earlier post, from the MS advisory quoted in Tom Liston's ISC diary piece:

Customers who follow safe browsing best practices are not likely to be compromised by any exploitation of the WMF vulnerability. Users should take care not to visit unfamiliar or un-trusted Web sites that could potentially host the malicious code.

Some questions arising from that, if I may...

  • Define safe browsing best practices please.
  • Do those practices include using MSIE (rhetorical)? Not here, they don't.
  • So this is a web only problem, is it? Or is email somehow in the loop too?

F-Secure can answer that last one. I have in front of me a sample of the trojan spam cited by F-Secure, trapped by a server mail rule, so this must be fairly widespread and it does indeed implement the metasploit exploit against the WMF vulnerability.

MS can lecture us all they like about safe browsing, but you just know that a fair few recipients of this little gem will be a little too curious about those cars filled with water...

WMF spam

Category: Viruses and Worms
Technorati:

Comments :
None yet...
Unable to post a comment? Please read this for a possible explanation...
Add Manual Trackback
Please enter the details of the trackback post. Your trackback will not appear on the site until it has been verified. This won't be immediate, as trackbacks are validated on a scheduled basis. Be patient.











Search
Popular Categories
Monthly Archive
Other stuff
ClustrMaps
Contact Me
Meta
Proudly powered by IBM Lotus Domino 8 Proudly powered by IBM Lotus Domino 8

Subscribe to articles Subscribe to articles feed

Subscribe to comments Subscribe to comments feed

ROR info ROR info


My Amazon wish list Wishlist


Wikio - Top Blogs - Technology
Like what I do?
Then please consider a donation to support the work of Research Autism.

Idea Jam
Planet Lotus
Dilbert