NEWS /

Fortinet July Threat Landscape Report Shows Sasfis Botnet Variants Multiplying

02 Aug, 2010, 2:39 pm IST | by Press Release |

Fortineta announced its July 2010 Threat Landscape report, which showed that eight Sasfis botnet variants have landed in the company’s top 10 malware listing this period. This is an increasingly common occurrence, as developers continue to roll out updated copies of their creations. Earlier this year, the Sasfis botnet was dedicated to downloading and executing software (primarily fake antivirus) on infected systems. This period, Sasfis was observed downloading updated spamming modules. Typical Sasfis spam examples include fake UPS invoices and Facebook photo links. 

Stuxnet Attack
This month’s Stuxnet attack (read our FAQ here), reiterates the importance of quickly patching security holes as fixes become available and having a broad intrusion prevention system (IPS) in place. Even with proper patch management, all it takes is one zero-day vulnerability to be exploited (even in low volume) to potentially cause a significant impact. While the Stuxnet attack is still under investigation, the fact that a trojan associated with the exploit was seemingly developed to target industrial control systems underscores this point. This is also a good example of how little interaction is required by the end user to become infected. The Stuxnet exploit attacked a Windows Shell vulnerability (CVE-2010-2568). To launch its attack, a user simply opened a folder. 

Windows Help Center Vulnerability Exploited
On June 5, vulnerability within the Windows Help and Support Center that could allow remote code execution was publicly disclosed. Like Stuxnet, this is yet another example of a zero-day vulnerability successfully attacked before a patch is made available. We witnessed attacks on the vulnerability as early as June 11th before Microsoft issued a patch for CVE-2010-1855 on July 13th. The attacks that occurred through Websites were made more potent because they were launched through the HCP protocol handler, which is used by all browsers. In many cases Websites that serve exploits will try to fingerprint browsers and launch attack code tailored to those browsers. 

To read the full July Threat Landscape report which includes the top threat rankings in each category, please visit: http://www.fortiguard.com/report/roundup_july_2010.html.

Don’t forget to stay connected to Tech2 via our Tech2.com Facebook page.   

Tags: Fortinet , July threat , spam , botnet

RELATED STORIES

Fortinet gets new software release for FortiDB product family

Fortinet gets new software release for FortiDB product family

Fortinet has announced a major software release for its FortiDB product line that helps enable mid-to-large ...

Fortinet Report Shows Return of Ransomware and Rise of 'Do-it-Yourself' Botnets

Banks, Internet companies team up to fight spam

AVG launches antivirus solutions for home and business users

Google+ links not showing up on Facebook

Hotmail Gets an Update with ‘My Friend’s Been Hacked!’

Google Strikes at .co.cc Subdomains, Blocks Them

Fortinet Corporate Video

29 Nov, 2011, 05:49 am IST

Fortinet Corporate Video

Fortinet Firewalls - New Features

07 Oct, 2010, 10:57 am IST

Fortinet Firewalls - New Features

Fortinet Firewall Demo

16 Apr, 2011, 09:23 pm IST

Fortinet Firewall Demo

Fortinet - A History of Innovation

08 Dec, 2010, 12:36 am IST

Fortinet - A History of Innovation

 

Leaked Images, Availability, Pricing,
Specs, Pre-order

Photos

High Court Order - Madras

High Court Order - Madras

17 May, 2012, 04:22 PM

2.3

Trials Evolution

Trials Evolution

12 May, 2012, 10:33 AM

Sniper Elite V2

Sniper Elite V2

09 May, 2012, 10:04 PM

3.6

MORE PHOTOS

OPINIONS

Padmini Harchandrai

The latest "should they-shouldn't they" event with Facebook is the lift of the minimu...

MORE OPINIONS

features

Portable Wi-Fi Drives for your smartphone

Portable Wi-Fi Drives for your smartphone

Fed up of the limited storage on your mobile device? Here are some devices

By Aaron Almeida

Top 5 potential Gmail alternatives

Top 5 potential Gmail alternatives

Google’s Gmail service is arguably the most advanced and feature-packed...

By Naina Khedekar

Five ways to beat the petrol hike

Five ways to beat the petrol hike

Petrol prices went up by a considerable amount post Wednesday, and this...

By Karan Shah

MORE FEATURES

On video: HTC One V

On video: HTC One V

18 May, 2012, 04:44 AM

4.5

On video: Cowon Z2 (16GB)

On video: Cowon Z2 (16GB)

15 May, 2012, 04:58 PM

2.3

On video: Samsung WB150F

On video: Samsung WB150F

08 May, 2012, 04:23 AM

5.0

MORE VIDEOS

776 views

1129 views

630 views

MORE WALLPAPERS