. Space Travel News .




.
CYBER WARS
Malware creeping into portable documents
by Staff Writers
Washington (UPI) Dec 13, 2011

disclaimer: image is for illustration purposes only

Malware designed to damage computer systems is being secreted into portable documents, commonly known as PDF, by cybercriminals whose efforts usually are thwarted by antivirus software.

Defense analysts cited in online commentaries said the PDF attacks were aimed at corporate and government institutions and were part of sophisticated schemes aimed at extracting information from systems otherwise thought to be firewalled and secure.

Several corporate sources confirmed defense organizations were targeted in the attacks which appeared to be well-funded and could come from an unknown country or corporate entity.

News of the latest cyberthreat coming through PDF files followed warnings from computer software company Symantec, comments from defense manufacturer Lockheed Martin and software provider Adobe that acknowledged the risk.

Cyber-criminals trying to take advantage of the alleged weakness in Adobe's PDF reading and editing software use a well-known family of malware called Sykipot, Symantec said.

The attackers aim the malicious code at so called zero-day vulnerabilities that as yet haven't been reported by security experts or software makers, CRN said on its Web site. The attackers also hit PDF as a common business application hoping that many users wouldn't have kept up with the latest security patches.

Before the risks to PDF files came to light, computer users worldwide were made aware of risks in opening attachments of texts or graphics written in Microsoft Word, Excel and other word and image applications.

On Dec. 1, Symantec reported a high volume of e-mail carrying Sykipot malware aimed at Acrobat Reader and Acrobat editing software. The attackers sent the messages mostly to high-ranking executives who could have sensitive or strategic information on their computer networks.

The attacks were able initially to send commands to targeted computers to gather system and network information and determine whether a computer system was worth hacking into. The attackers were also able to customize commands to exfiltrate the information.

Symantec said cyberattackers were behind a March 2010 attack on a zero-day vulnerability in Microsoft Internet Explorer. Persistence of the attacks indicated that the cybercriminals may be scoring successes along the way, the company said.

Adobe was apparently alerted to the risk by Lockheed Martin and the Defense Security Information Exchange, a group of major defense contractors that share information about computer attacks.

DSIE includes companies that are part of the so-called the "Defense Industrial Base," some of the largest U.S. defense contractors, including Boeing, General Dynamics, Lockheed Martin, Northrop Grumman, Pratt and Whitney and Raytheon, Computerworld said.

Symantec published an image of a redacted email of the attack's bait -- the promise of a 2012 guide to policies on new contract awards -- that it said was a sample of the pitches that tried to dupe recipients into opening the attached PDF document.

The Sykipot malware encrypts the pilfered data after it has been retrieved from the victimized firm but while it is still stored on the company's network, as well as when it's transmitted to a hacker-controlled server.

Symantec said the same group of hackers who launched the attacks against IE6 and IE7 in 2010 were also responsible for Reader-based attacks since November.

Related Links
Cyberwar - Internet Security News - Systems and Policy Issues




.
.
Get Our Free Newsletters Via Email
...
Buy Advertising Editorial Enquiries






.

. Comment on this article via your Facebook, Yahoo, AOL, Hotmail login.

Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle



CYBER WARS
Top China official urges more 'forceful' web controls
Beijing (AFP) Dec 11, 2011
A top Chinese government official has urged authorities to be "more forceful" in the way they manage the web, state media said, as Beijing tries to tighten online controls over fears of social unrest. Wang Chen, head of the State Internet Information Office - a government body set up this year to supervise online content - also urged officials to use the web to "guide public opinion and pr ... read more


CYBER WARS
Second Arianespace Soyuz rolled out for launch at Spaceport Kourou

O3b signs agreement with Arianespace for third Soyuz launch

NASA Announces Launch Date and Milestones for Spacex Flight

SpaceX mission to space station set for February

CYBER WARS
Life possible on 'large parts' of Mars: study

Opportunity to Stop and Study Rocks

Russia could join ExoMars as full partner

e2v imaging sensors launched into space on NASA mission to Mars

CYBER WARS
Hundreds of NASA's moon rocks missing: audit

Schafer Corp Signs Licensing Agreement with MoonDust Technologies

Russia wants to focus on Moon if Mars mission fails

Flying over the three-dimensional Moon

CYBER WARS
New Horizons Becomes Closest Spacecraft to Approach Pluto

Pluto's Hidden Ocean

Is the Pluto System Dangerous?

Starlight study shows Pluto's chilly twin

CYBER WARS
Giant Super-Earths Made Of Diamond Are Possible

New Planet Kepler-21b discovery a partnership of both space and ground-based observations

Astronomers Find Goldilocks Planet and Others

The Habitable Exoplanets Catalog, a new online database of habitable worlds

CYBER WARS
DLR tests Australian spacecraft

First J-2X Combustion Stability Test a Success

NASA Ready to Test Upgraded J-2X Powerpack

Lockheed Martin Selected USAF for Reusable Booster System Flight Demonstrator Program

CYBER WARS
Two and a Half Men for Shenzhou

China honors its 'father' of space efforts

Philatelic Cover Reveals the secret names of second Taikonaut team

First Crew for Tiangong

CYBER WARS
Dawn Spirals Down to Lowest Orbit Above Vesta

Is Vesta the Smallest Terrestrial Planet

Asteroid Vesta in a Rainbow-Colored Palette

Dawn Soars Over Asteroid Vesta in 3D


.

The content herein, unless otherwise known to be public domain, are Copyright 1995-2012 - Space Media Network. AFP and UPI Wire Stories are copyright Agence France-Presse and United Press International. ESA Portal Reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. Advertising does not imply endorsement,agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. Privacy Statement