u토렌트와 비트토렌트 사이트가 해킹당했다. 기사를 보면 어제(화요일) 태평양 표준(11:20)시 1시간 정도(4:20 a.m. ~ 6:10 a.m.) 해킹당하였으며 "Security Shield"란 프로그램을 다운 받으면 바이러스에 감염되었을 수 있다.

uTorrent & BitTorrent Sites Hacked, Spread Security Shield Malware


Attackers hijacked two popular Torrent websites "bittorrent.com and utorrent.com" and tampered with their download mechanisms, causing visitors trying to obtain file-sharing software to instead receive malware. The site reported on its blog that the attack had occurred at around 04:20 Pacific Daylight Time (11:20 GMT) on Tuesday. Initially, the incursion was also thought to have affected the servers of the main BitTorrent site, but further investigation revealed this site had been unaffected by the attack.

Once installed, Security Shield delivers false reports that a computer is infected with multiple pieces of malware and prompts the user for payment before claiming to disinfect the machine. The attack affected only users who downloaded and installed software from bittorrent.com and utorrent.com during the hour-and-fifty-minute window that the sites were compromised. Those who installed software previously are unaffected.

"We have completed preliminary testing of the malware. Upon installation, a program called ‘Security Shield" launches and pops up warnings that a virus has been detected. It then prompts a user for payment to remove the virus. " experts write on the blog.

It is very important to once more note that infected are only users who have downloaded the software between 4:20 a.m. and 6:10 a.m. Pacific time. If you have previously downloaded it - you can rest assured your software is clean.

[출처] http://thehackernews.com/2011/09/utorrent-bittorrent-sites-hacked-spread.html
Posted by bitfox
l
Backtrack 5를 이용한 무선랜 취약점 테스트 가이드 책이 출판되었다.
샘플 PDF를 받아 봤는데 이것만으로 충분히 삽질을 피해갈 수 있다.


아마존에서 판매 중이며 이북만 구매해 볼까 고민 중이다. 나의 아이패드가..놀고 있다. ;(
샘플 북에는 아래와 같은 공격방식을 설명하고 있다.

 Honeypot and Mis-Associati on attacks
 Caff e Latt e attack
 De-Authenti caton and Dis-Associati on attacks
 Hirte attack
 AP-less WPA-Personal cracking

WPA는 역시..사전공격이다. 흠..-ㅅ-;


[출처] 아마존

'위험한_친구들 > 그림자_WIFI' 카테고리의 다른 글

Another hack: Wiretap picture frame  (0) 2011.09.22
WLAN Security  (0) 2011.09.15
How to crack a WEP key and decrypt live traffic  (0) 2011.08.20
[spanish] Asaltando redes wifi  (0) 2011.08.16
Tutorial: How to Crack WPA/WPA2  (0) 2011.08.10
Posted by bitfox
l
IE 모든 버젼에서 나왔던 0-Day를 이용한 쿠키잭킹 방식이다.

[주의] 본 자료는 연구용 및 학습 자료로 사용하길 바라며, 악의적인 사용시 사용자 본인에게 책임이 있음을 명시합니다.

 


관련 동영상

'위험한_친구들 > 십자군_XSS' 카테고리의 다른 글

Clickjacking for Shells  (0) 2011.09.22
XSS in Skype for iOS  (0) 2011.09.21
홍커쪽 XSS 체크리스트  (0) 2011.09.14
Fake Facebook friend request email leads to malware  (0) 2011.09.05
XSSed project  (0) 2011.08.31
Posted by bitfox
l