From The Blog

Displaying items by tag: Shellshock

Tuesday, 28 October 2014 13:56

Shellshock used to spread botnet through SMTP

There appear to be developments in the way that Shellshock is used to push malware around. According to new information the Bash Bug is now being used to send malware out through the use of compromised SMTP gateways. The clever attackers are trying to use altered headers (from, to, subject) to force the SMTP gateway to pull down additional code that contains the Shellshock attack.

Published in News

Yesterday morning we told you about a rumored bug in an older encryption protocol, SSL 3.0. Today the details of this bug were released and although it looks bad, it might not be as big as first hinted. The bug has been called Poodle (Padding Oracle On Downloaded Legacy Encryption) and has sparked many articles with clever lines about dogs and biting people… For all of that nonsense this is not something that is going to go away and highlights a major issue in how we communicate over the internet.

Published in News