copyright | disclaimer | privacy | contact  
Australia's Leading Computer Emergency Response Team
 
Search this site

 
On this site

 > HOME
 > About AusCERT
 > Membership
 > Contact Us
 > PKI Services
 > Training
 > Publications
 > Sec. Bulletins
 > Conferences
 > News & Media
 > Services
 > Web Log
 > Site Map
 > Site Help
 > Member login





 

Aggressive Patching and an Aggressive Trojan

Date: 17 April 2009

Click here for printable version

Greetings,

Well it has been another busy week of patching. I'm sure any Windows or Oracle administrators are looking forward to the weekend (or staying back) after the release of April's Microsoft and Oracle patch cycle. This month Microsoft released eight bulletins, five of which were given critical ratings.

Another vulnerability worthy of a mention was in the virtual machine display function of VMware products. This vulnerability could allow code from the guest system to be executed on the host.

In virus news it seems Waldec has started a new campaign in order to lure users into infection. The hook this time around was that the program actually allowed you to view the SMS messages of someone else, using the unfaithful partner idea to assist in infection. The good people at Shadowserver have a great write-up on the latest activity including a list of subject lines from the emails, a list of the binaries and a list of the domains being used in the campaign.

Have a good weekend.

Paul