In this blog i talk about the history of XSS worms, how they evolved to spread through multiple webmail providers and the client-server model involved in a XSS botnet.
More here:
http://www.avertlabs.com/research/blog/index.php/2007/07/19/the-nduja-job-into-the-world-of-xss-worms/

View full post on News from the Lab
Related Posts
- SQL Slammer Worm Regains Momentum
At McAfee Labs every day we monitor millions of intrusion prevention systems (IPS) alerts from our sensors around the world. From these alerts, we often see interesting global data and trends. Recentl... - World Record for Disaster Scam Site?
Approximately two hours after an 8.9 earthquake hit northeast Japan we spotted the first potential donation scam site. We’ve seen this before of course, but for a scam site to appear in just two... - BlackHole RAT Eats Into Mac OS X
BlackHole RAT is a backdoor Trojan targeting Mac OS X. It’s written in REALbasic, and it was discovered December 21, 2010. But it was only recent days that it has gained the attention of security expe... - Facebook Stalker Tracker Tool Turns Users into Spammers
Privacy has been one of the major concerns of Facebook users roday, especially as the social network continues to increasingly grow to become a massive directory of personal information. Users are bec... - Incorporating Mobile Devices into Enterprise Security
People use the term consumerization of IT when discussing the effects of user-owned and managed devices being increasingly used within an enterprise environment. Approaches to enterprise informatio... - WoW Factor or Back Into Matrix
Online gaming password stealers form a large malware category.Moreover, it is growing: there is strong demand in the virtual experience, there is supply, there are online auction sites where such expe... - Turning scareware devious distribution tactics into practical protection mechanisms
Fake anti-virus software (also known as scareware, rogueware or "FakeAV") is without doubt one of the most significant threats today. Bogus security warnings adorned with flashy images and incessant p... - Android Market’s Web Store: Convenient, With a Risk of Malware (PC World)
PC World - For Android phone users, the newfound convenience of installing apps remotely from the Android Market Website also opens up a security hole for malware. Full story: Yahoo! News: Securit... - NASDAQ reports hackers broke into its servers
The NASDAQ stock exchange has called in investigators from the FBI after discovering it had become the target of hackers, but insists that "at no point" were its trading systems compromised. Suspiciou... - Cybercrime: A Recession-Proof Growth Industry (PC World)
PC World - Even in a struggling economy there are some businesses that continue to thrive. In an era of cutbacks and layoffs, one industry has continued to skyrocket--with double digit growth year ove...



