Same Scam, Different Subject

The Federal Deposit Insurance Corporation (FDIC) has received numerous reports of a fraudulent e-mail that has the appearance of being sent from the FDIC. This time, however, the e-mail appears to be sent from a “Fdic.gov Alert Service [mailto:[email protected]]” e-mail address and has a subject line that reads: “SA-28-2011: Counterfeit Cashier’s Checks Alert.”

Building Your Incident Response Program

Every time we choose “accept” as a risk response decision, we rely more heavily on our ability to respond when a threat truly does exploit a vulnerability. Even when we select “mitigate” and implement new controls, we do so knowing that those controls will sometimes break. We know the notion of 100% security is a myth. There’s always that event nobody could predict. Our defenses will eventually be breached.

Online Vehicle Scam Using Kelley Blue Book’s Name

The IC3 has received complaints reporting fraudsters for misrepresenting themselves as Kelley Blue Book (KBB) agents to swindle victims out of thousands of dollars in online vehicle purchases. Upon finding a vehicle and making an inquiry to the seller, the complainant was told that the transaction must go through KBB’s escrow-based buyer-protection plan to protect both of them.

Newest ZeuS Has P2P Capabilities

The newest version of ZeuS malware uses peer-to-peer (P2P) networks to transmit updates to infected machines, making the associated botnet more difficult to take down.

OCC Supports National Protect Your Identity Week

The Office of Comptroller of the Currency has joined the public-private coalition that supports the fourth annual Protect Your Identity Week (PYIW), an initiative of the National Foundation for Credit Counseling (NFCC) and the Council of Better Business Bureaus (BBB). The week-long initiative, October 16 – 22, 2011, brings focus to the PYIW national campaign’s Web site and community events aimed at identity theft protection and education.

Google Updates Chrome to Restore Browser After Microsoft Blunder

Google has released updated versions of both the stable and beta versions of its Chrome browser to address an issue that caused Microsoft antivirus products to identify the browser as malware and in some cases, delete the chrome.exe file from users’ computers.

User Accountability

As users of your information resources, your employees should be reminded on a periodic basis that they are responsible for all activity that takes place while using their user name.

Trojan Horse Programs Target Macs

In one simple notification, I have read two different articles pertaining to Trojan horses targeting Macs. The first article involves a phony Flash Player installer, while the second discusses a Trojan using an old double extension trick.

Effectively Erasing Files

Before selling or discarding an old computer, or throwing away a CD or DVD, you naturally make sure that you’ve copied all of the files you need. You’ve probably also attempted to delete your personal files so that other people aren’t able to access them. However, unless you have taken the proper steps to make sure the hard drive, CD, or DVD is erased, people may still be able to resurrect those files.