邪恶八进制信息安全团队技术讨论组's Archiver

pub!1c 2006-8-10 15:12

[转载]Virus induced hardware replacement

<p>信息来源: Zone-H</p><p><img height="152" alt=" " hspace="5" src="http://www.zone-h.org/images/virspyhw.jpg" width="120" align="left" vspace="5" border="0" /><span class="984404807-09082006"><font face="Arial"><font size="2">Hardware vendors are benefitted from spywares and viruses, according to the "State of the net 2006" from </font><a href="http://www.consumerreports.org/cro/electronics-computers/online-protection-9-06/state-of-the-net/0609_online-prot_state.htm" target="_blank"><strong><font color="#cc0000" size="2">ConsumerReports.org</font></strong></a><font size="2">. </font></font></span>. In fact in the last report regarding common issues among surfers, an interesting trend arises. It looks like surfers suffer more damages than predicted, but not from where one could think. In fact it looks like surfers infected by a spyware prefer to change the computer or upgrade the hardware, rather than fix the issue. For the case of spyware, nearly 1 million users prefered this solution rather than disinfection, leading to an expense of 2.6 billion USD.....<span class="984404807-09082006"><font face="Arial" size="2"> </font></span><br />... while viruses lead to an astonishing 5.2 billion in losses. Or gains, depending on which side of the barrier you are in. We are not going to even think about any voluntary connection between the cause and the effect, but it is quite curious that phishing, which is considered the worst problem nowadays, <em>ONLY</em>led to a 630 million USD damage. Even more curious is that phishing, is considered to be a worse problem than the two first issues. Maybe because phishing is targeting B2C businesses (and in the financial field) rather than pure end users, as it happens for viruses and spyware. One thing the report misses to point out. All the three damages are unifying for even more damaging attacks. The trend of phishing spywares, which use very advanced viruses techniques to hide from antiwhatever, is raising faster and faster. We have first hand experience of at least three spywares customized to interfere with banking transactions of SPECIFIC banking institutions; those programs intercept the normal transactions and redirtect part of those to a foreign web site, or intercept usernames and passwords or ask for an unusual amount of one time passwords in order to complete a transaction. We believe this category , that we can call phishware, will be the more difficult to deal with in the near future.</p>

页: [1]
© 1999-2008 EvilOctal Security Team