<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>eSoft Network Security Blog</title>
    <link>http://www.esoft.com/network-security-threat-blog/</link>
    <atom:link href="http://www.esoft.com/network-security-threat-blog/feed.xml" rel="self" type="application/rss+xml" />
    <description>eSoft Network Security Blog</description>
    <item>
      <title>AT&amp;amp;T Wireless Bill Turned Malicious</title>
      <link>http://www.esoft.com/network-security-threat-blog/at-and-t-wireless-bill-turned-malicious/</link>
      <description><![CDATA[Everyone dreads paying their wireless bill, but imagine getting a wireless bill for over  $1600 dollars! This latest threat does just that, sending you a wireless bill for an exorbitant amount pushing you to click the link in the email and find out what happened with your bill. Any links in the email redirect the user to malicious distribution points dishing out exploits for Microsoft and Adobe vulnerabilities.

The cybercriminals pervading this threat do an excellent job of spoofing legitimate AT&amp;T wireless bill notifications. The image below (click to enlarge) shows both the real and fake notifications for comparison.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>exploits</category><category>malware</category><category>web security</category><category>email security</category>
      <pubDate>Fri, 20 Apr 2012 09:52:01 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/at-and-t-wireless-bill-turned-malicious/</guid>
    </item>
    <item>
      <title>March Madness Website Blocking</title>
      <link>http://www.esoft.com/network-security-threat-blog/march-madness-website-blocking/</link>
      <description><![CDATA[The NCAA Basketball Championship tournament is arguably the most exciting sports event of the year. Office pools and water cooler talk along with video streaming and real-time game updates are commonplace in businesses across the nation.  

What everyone is talking about is the impact on productivity to American business:]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>web filtering</category>
      <pubDate>Thu, 15 Mar 2012 12:58:45 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/march-madness-website-blocking/</guid>
    </item>
    <item>
      <title>Gateway Security vs. Desktop Security</title>
      <link>http://www.esoft.com/network-security-threat-blog/gateway-security-vs-desktop-security/</link>
      <description><![CDATA[People sometimes question whether Desktop or Endpoint Security (for example anti-virus software) should be installed if a company wide security solution (such as eSoft) is installed.  Or the other way around.  

All security conscious personnel know a layered approach provides the best protection.  Yet questions often arise about the necessity of one or the other.  Below is a discussion of why company wide security policy should include both.

People can easily imagine why desktop protection is important.  Hackers target elements of a desktop that a Gateway
device simply cannot inspect (such as memory, cookies and registries).  With the huge increase in laptop and other mobile computing devices, more computers leave the in-house network than ever before. They must have some form of protection from &#8220;off-line&#8221; usage at the hotel, coffee shop, home, etc.

If this is true, why do you need protection at the Gateway too?  To understand the requirement of Gateway Threat Protection, all you need to do is ask a simple question.  How many people have gotten infections on computers even though they have Desktop Security?  Virtually everyone.
]]></description>
      <author>swise@esoft.com (Scott Wise)</author>
      <category>virus</category><category>web security</category><category>email security</category>
      <pubDate>Mon, 20 Feb 2012 10:09:08 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/gateway-security-vs-desktop-security/</guid>
    </item>
    <item>
      <title>Dubious PayPal Phish Lures Users</title>
      <link>http://www.esoft.com/network-security-threat-blog/dubious-paypal-phish-fooling-users/</link>
      <description><![CDATA[In the latest phishing spree on PayPal users, cyber criminals use some crafty techniques to evade detection and trick users. As typical, the scam starts with an email asking the user to update their account, providing a realistic spoof of an authentic PayPal communication.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>compromised sites</category><category>phishing scams</category><category>web security</category>
      <pubDate>Mon, 13 Feb 2012 20:57:27 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/dubious-paypal-phish-fooling-users/</guid>
    </item>
    <item>
      <title>Fake Invoice Spam Delivers Malware and Exploits</title>
      <link>http://www.esoft.com/network-security-threat-blog/fake-invoice-spam-delivers-malware-and-exploits/</link>
      <description><![CDATA[eSoft is alerting users to some fake invoice spam hitting inboxes with an attachment delivering malware. The trick to this is that the attachment is a simple htm file that many users might open, then delivering the malware through an exploit.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>exploits</category><category>web security</category>
      <pubDate>Wed, 08 Feb 2012 09:44:01 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/fake-invoice-spam-delivers-malware-and-exploits/</guid>
    </item>
    <item>
      <title>Top 10 Security Mistakes SMBs Make</title>
      <link>http://www.esoft.com/network-security-threat-blog/top-10-security-mistakes-smbs-make/</link>
      <description><![CDATA[A recent survey revealed half of SMBs don&#039;t think they are a target for cyberattacks. The fact is attacks on SMBs are increasing, not only in volume but in complexity and sophistication. It&#8217;s important for SMBs to get away from the mindset that they can&#8217;t or won&#8217;t be attacked. 

Dark Reading&#8217;s Ericka Chickowski recently posted the Top 10 Security Mistakes SMBs Make. The article highlights the increasing attacks that SMBs are facing while pointing out the top 10 areas where SMB security can and should improve.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>network security</category><category>web security</category>
      <pubDate>Fri, 02 Dec 2011 09:06:53 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/top-10-security-mistakes-smbs-make/</guid>
    </item>
    <item>
      <title>Spammed YouTube Service Requests Link to Pharmafraud</title>
      <link>http://www.esoft.com/network-security-threat-blog/spammed-youtube-service-request-links-to-pharmafraud/</link>
      <description><![CDATA[One of the most popular sites on the Web, YouTube, has again become a target of Cyber Criminals. Similar to the myriad other service request emails that have been circulating over the past couple years, the hapless email recipient receives an email similar to the one shown below.]]></description>
      <author>enewvine@esoft.com (Eric Newvine)</author>
      <category>fraud</category><category>pharma fraud</category><category>spam</category><category>web security</category><category>email security</category><category>attacks</category>
      <pubDate>Thu, 17 Nov 2011 14:02:41 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/spammed-youtube-service-request-links-to-pharmafraud/</guid>
    </item>
    <item>
      <title>DHL Shipment Notice Malware</title>
      <link>http://www.esoft.com/network-security-threat-blog/dhl-shipment-notice-malware/</link>
      <description><![CDATA[Below is an example of a recent malware infected email attempting to spread the Bredolab (bredozip) trojan.  Similar versions of failed delivery notification spam  using other shipping companies are now standard threats that users should be aware of as a security threat. 

In these attacks, the recipient of the email gets a notice of a package shipment that looks very authentic. When they open the email attachment, or click an embedded web link, the virus infects the host pc...]]></description>
      <author>mdonnell@esoft.com (Mike Donnell)</author>
      <category>malware</category><category>virus</category><category>email security</category>
      <pubDate>Fri, 11 Nov 2011 10:41:06 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/dhl-shipment-notice-malware/</guid>
    </item>
    <item>
      <title>Cyber Security Awareness for Small Businesses</title>
      <link>http://www.esoft.com/network-security-threat-blog/cyber-security-awareness-for-small-businesses/</link>
      <description><![CDATA[SMBs are under attack. Last year, small and medium sized businesses (SMBs) were attacked and suffered more breaches than any other segment. In fact, 63% of breaches occurred at businesses with fewer than 100 employees. Add to the mix new web based threats, phishing threats and targeted attacks and SMBs are at a higher risk now than ever before.

Why are cyber criminals targeting SMBs? Simply put, SMBs are easier targets. Quite often, SMBs don&#8217;t have the budget, equipment, time, or expertise to combat threats. For example, 50% of SMBs do not have any web security technology to prevent web based attacks. With 85% of infections being spread via the web it&#8217;s clearly important to employ such technology. Businesses cite resource constraints as the primary reason for not implementing this important layer of security.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>network security</category><category>web security</category><category>cyber crime</category>
      <pubDate>Mon, 24 Oct 2011 11:32:01 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/cyber-security-awareness-for-small-businesses/</guid>
    </item>
    <item>
      <title>Cyber Security Awareness - Cyber Crime</title>
      <link>http://www.esoft.com/network-security-threat-blog/cyber-security-awareness-cyber-crime/</link>
      <description><![CDATA[Cyber Crime is this weeks&#8217; topic for National Cyber Security Awareness Month. A recent study by Norton calculated the annual cost of global cybercrime at $114 billion dollars. Add in the time expense in dealing with cyber crime experiences and this amount surges to $388 billion dollars, impacting over One Million users each day. Truly staggering amounts and figures slated for continued growth.

There are a number of factors contributing to problem. Organized crime in the US and overseas is becoming more and more involved in the lucrative cyber crime industry. With increased financial backing and profits, threats have become more sophisticated. Banking Trojans like Zeus and Spyeye continue to run rampant, with very low anti-virus detection. In fact, AV effectiveness against these Trojans is generally less than 50% and found by Trusteer to be only 23%. Targeted attacks using trojans and vulnerabilities are becoming more mainstream as cyber criminals go after one-hit big paydays.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>web security</category><category>cyber crime</category>
      <pubDate>Wed, 19 Oct 2011 07:25:20 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/cyber-security-awareness-cyber-crime/</guid>
    </item>
    <item>
      <title>Wire Transfer Phishing Threat</title>
      <link>http://www.esoft.com/network-security-threat-blog/wire-transfer-phishing-threat/</link>
      <description><![CDATA[This morning I almost fell victim to a new phishing &#8220;lure&#8221; that is based on a wire transfer notification email (see below).  The email was sent to a &#8220;generic&#8221; distribution list that forwards a copy to me.  What made me particularly susceptible to this was partially due to: 1. We rarely do wire transfers  2. Coincidentally (I think) we had a wire transfer recently that was close to the date mentioned in the email.]]></description>
      <author>mdonnell@esoft.com (Mike Donnell)</author>
      <category>fraud</category><category>phishing scams</category><category>web security</category><category>email security</category>
      <pubDate>Thu, 13 Oct 2011 09:41:13 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/wire-transfer-phishing-threat/</guid>
    </item>
    <item>
      <title>Cyber Security Awareness - Workforce Education</title>
      <link>http://www.esoft.com/network-security-threat-blog/cyber-security-awareness-workforce-education/</link>
      <description><![CDATA[This weeks&#8217; subject for National Cyber Security Awareness Month is workforce education. Awareness is one of the largest issues facing cyber security today. Many users simply don&#8217;t know what dangers they face online. Most security threats involve some sort of human element, making it very important to educate users about the risks and how to spot these attacks. ]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>network security</category><category>web security</category><category>internet security</category><category>email security</category>
      <pubDate>Tue, 11 Oct 2011 11:25:30 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/cyber-security-awareness-workforce-education/</guid>
    </item>
    <item>
      <title>Skype VoIP Calls Pushing Scareware	</title>
      <link>http://www.esoft.com/network-security-threat-blog/skype-voip-calls-pushing-scareware/</link>
      <description><![CDATA[Today, eSoft is alerting Skype users to a new scam pushing Fake Anti-Virus malware. The scam uses a VoIP call initiated to the Skype user. Users that answer the call hear a pre-recorded message indicating their &#8220;security service&#8221; is not active. To activate the user is urged to visit a website which leads to the fake anti-virus. Throughout the day, eSoft has received reports from several users receiving these messages. 

If a user does visit the website, they receive the typical security warnings and infection notices associated with Scareware and Fake Anti-Virus. 
]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>malware</category><category>web security</category>
      <pubDate>Wed, 05 Oct 2011 14:53:19 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/skype-voip-calls-pushing-scareware/</guid>
    </item>
    <item>
      <title>Stop. Think. Connect.</title>
      <link>http://www.esoft.com/network-security-threat-blog/stop-think-connect/</link>
      <description><![CDATA[STOP. THINK. CONNECT. This simple process can be a lifesaver when it comes to online security. The message is all about taking the time to think and stay secure when engaging in online activities. By taking an extra moment to look for warning signs, spot potential problems and avoid risks users can be much more secure on the Web.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>network security</category><category>web security</category>
      <pubDate>Mon, 03 Oct 2011 10:17:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/stop-think-connect/</guid>
    </item>
    <item>
      <title>National Cyber Security Awareness Month</title>
      <link>http://www.esoft.com/network-security-threat-blog/national-cyber-security-awareness-month/</link>
      <description><![CDATA[National Cyber Security Awareness Month is a national public awareness campaign conducted every October encouraging everyone to protect their computers and our nation&#8217;s critical cyber infrastructure. Our reliance on digital systems continues to grow in all areas of infrastructure from communication to ecommerce to manufacturing.  At the same time, network security threats to this infrastructure continue to grow and become more sophisticated.

This year, National Cyber Security Awareness Month is broken out into four topics highlighted each week throughout the month. eSoft will provide weekly tips related to each theme and suggestions for business network security.

...]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>network security</category><category>internet security</category>
      <pubDate>Fri, 30 Sep 2011 11:57:05 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/national-cyber-security-awareness-month/</guid>
    </item>
    <item>
      <title>New Worm Spreading via RDP Connections</title>
      <link>http://www.esoft.com/network-security-threat-blog/new-worm-spreading-via-rdp-connections/</link>
      <description><![CDATA[Since its discovery last week the Morto worm has received quite a lot of attention, primarily for becoming the first worm to use Remote Desktop Protocol (RDP) as an attack vector. Remote Desktop Protocol (RDP) is commonly used on Windows Servers and Workstations to allow remote connections and control of a machine. Morto doesn&#8217;t exploit any specific vulnerability in RDP, it uses a brute force password attack to gain access to systems and then replicate itself. 
]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>worm</category><category>password security</category>
      <pubDate>Thu, 08 Sep 2011 14:56:59 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/new-worm-spreading-via-rdp-connections/</guid>
    </item>
    <item>
      <title>Is Web Security on Your Back-to-School List?</title>
      <link>http://www.esoft.com/network-security-threat-blog/is-web-security-on-your-back-to-school-list/</link>
      <description><![CDATA[As schools continue the move toward smart classrooms, students are provided with near constant access to the Internet and web usage is growing at an exponential rate. As an IT admin, this leaves a big responsibility for providing safe internet access to the network for students, teachers and faculty alike. ]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>web security</category>
      <pubDate>Tue, 30 Aug 2011 14:25:01 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/is-web-security-on-your-back-to-school-list/</guid>
    </item>
    <item>
      <title>Scrutinize Your Whitelist Entries</title>
      <link>http://www.esoft.com/network-security-threat-blog/scrutinize-your-whitelist-entries/</link>
      <description><![CDATA[Business network security and particularly web security can be tricky. On one side you&#8217;re trying to make sure users are happy, productive, and can get to all the websites and files they need to download &ndash; on the other, you&#8217;ve got to secure the network and prevent infection. One common mistake we see with web security is when administrators try to whitelist or allow a domain. Rather than being specific and allowing just what they need, they end up opening up the floodgates for infection or data loss.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>malware</category><category>network security</category><category>web security</category><category>web filtering</category>
      <pubDate>Tue, 16 Aug 2011 13:53:34 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/scrutinize-your-whitelist-entries/</guid>
    </item>
    <item>
      <title>Spoofed NACHA Emails Delivering Malware</title>
      <link>http://www.esoft.com/network-security-threat-blog/spoofed-nacha-emails-delivering-malware/</link>
      <description><![CDATA[NACHA manages the development, administration, and governance of the ACH Network, the backbone for the electronic movement of money and data. Overnight, eSoft received an influx of spoofed NACHA emails reporting a canceled transaction. Following the link leads to an infected download, and once opened you can be sure your money and data is no longer safe.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>exploits</category><category>malware</category><category>web security</category><category>email security</category><category>web filtering</category>
      <pubDate>Tue, 02 Aug 2011 13:04:23 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/spoofed-nacha-emails-delivering-malware/</guid>
    </item>
    <item>
      <title>New Phishing Attack Spreads on Twitter</title>
      <link>http://www.esoft.com/network-security-threat-blog/new-twitter-phishing-attack-spreads/</link>
      <description><![CDATA[A new phishing attack is making the rounds on Twitter. The attack is spread through direct messages with the familiar &#8216;is this you in the video?&#8217; hook line including a link to the supposed video. The message uses a shortened URL as is typical of Twitter links, and the user is unaware the link they&#8217;re about to click leads to a phishing page.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>phishing scams</category><category>web security</category>
      <pubDate>Sat, 09 Jul 2011 13:17:20 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/new-twitter-phishing-attack-spreads/</guid>
    </item>
    <item>
      <title>Protecting Against the Latest Federal Reserve Malware</title>
      <link>http://www.esoft.com/network-security-threat-blog/protecting-against-the-latest-federal-reserve-malware/</link>
      <description><![CDATA[In the last 24 hours, eSoft has received a few reports of business networks being infected by the latest round of Federal Reserve malware being passed through email. After some quick investigation it turns out most of these infections were completely preventable using secure web filtering and real-time reputation analysis, however, these infected systems were the result of misconfigured systems. Let&#8217;s take a quick look at the threat first, and we&#8217;ll come back to how to prevent this threat on your network.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>fraud</category><category>malware</category><category>virus</category><category>web security</category>
      <pubDate>Thu, 23 Jun 2011 21:00:21 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/protecting-against-the-latest-federal-reserve-malware/</guid>
    </item>
    <item>
      <title>Is That HTTPS: Site Really Secure?</title>
      <link>http://www.esoft.com/network-security-threat-blog/is-that-https-site-really-secure/</link>
      <description><![CDATA[Most people assume that when they see the HTTPS: address they are on a secure site. Discover why this is actually antiquated &amp; far from secure. ]]></description>
      <author>mdonnell@esoft.com (Mike Donnell)</author>
      <category>compromised sites</category><category>exploits</category><category>web security</category><category>web filtering</category><category>attacks</category>
      <pubDate>Mon, 02 May 2011 15:53:05 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/is-that-https-site-really-secure/</guid>
    </item>
    <item>
      <title>SMBs are New Target for Hackers</title>
      <link>http://www.esoft.com/network-security-threat-blog/smbs-are-new-target-for-hackers/</link>
      <description><![CDATA[Verizon&#8217;s 2011 Data Breach Report indicates that attackers are moving their sights from Enterprises to smaller targets]]></description>
      <author> ()</author>
      <category>exploits</category><category>malware</category><category>phishing scams</category><category>network security</category><category>web security</category><category>attacks</category>
      <pubDate>Wed, 20 Apr 2011 08:06:21 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/smbs-are-new-target-for-hackers/</guid>
    </item>
    <item>
      <title>The Password Part 2 - How to Survive</title>
      <link>http://www.esoft.com/network-security-threat-blog/the-password-part-2-how-to-survive/</link>
      <description><![CDATA[This is Part 2 of a 2 part series on passwords and network security for businesses. Check out Part 1 - The Password - Your Passport to Information. Then on to Part 2 - here, to learn about how you can protect your business network.]]></description>
      <author>jcaswell@esoft.com (Joseph Caswell)</author>
      <category>exploits</category><category>network security</category><category>email security</category><category>attacks</category>
      <pubDate>Tue, 19 Apr 2011 14:55:03 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/the-password-part-2-how-to-survive/</guid>
    </item>
    <item>
      <title>Latest Outlook Web Access (OWA) Phishing Attempt</title>
      <link>http://www.esoft.com/network-security-threat-blog/latest-outlook-web-access-owa-phishing-attempt/</link>
      <description><![CDATA[eSoft has received an influx of Outlook Web Access (OWA) phishing emails attempting to steal login credentials for corporate email access. There are number of dangers...]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>exploits</category><category>network security</category><category>web security</category><category>internet security</category><category>email security</category><category>web filtering</category><category>attacks</category>
      <pubDate>Fri, 15 Apr 2011 11:33:23 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/latest-outlook-web-access-owa-phishing-attempt/</guid>
    </item>
    <item>
      <title>On First Base with Stolen Email Addresses</title>
      <link>http://www.esoft.com/network-security-threat-blog/on-first-base-with-stolen-email-addresses/</link>
      <description><![CDATA[The recent compromise of Epsilon emails is just the first step to identity theft &ndash; but this is something you should do to protect yourself.]]></description>
      <author> ()</author>
      <category>exploits</category><category>malware</category><category>phishing scams</category><category>web filtering</category>
      <pubDate>Mon, 11 Apr 2011 09:08:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/on-first-base-with-stolen-email-addresses/</guid>
    </item>
    <item>
      <title>The Password - Your Passport to Information</title>
      <link>http://www.esoft.com/network-security-threat-blog/the-password-your-passport-to-information/</link>
      <description><![CDATA[Account logins are nearly universal in today&#039;s networks. The combination of user name and password is equivalent to a passport when a computer needs to identify a user. This means that anyone who has your login information can effectively become you as far as the computer is concerned. If the password is poorly selected, it becomes identity theft made easy. Granted much of this &#039;identity theft&#039; is only used to foist spam on your unsuspecting friends and contacts, but the potential consequences can be far more dreadful, especially if you&#039;ve used the same password for, say, a bank account or company database.]]></description>
      <author>jcaswell@esoft.com (Joseph Caswell)</author>
      <category>phishing scams</category><category>password security</category><category>attacks</category>
      <pubDate>Mon, 14 Mar 2011 12:37:46 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/the-password-your-passport-to-information/</guid>
    </item>
    <item>
      <title>Is Internet Usage Reporting Important? Ask the SEC</title>
      <link>http://www.esoft.com/network-security-threat-blog/is-internet-usage-reporting-important-ask-the-sec/</link>
      <description><![CDATA[The Denver Post recently reported that two dozen U.S. Securities and Exchange Commission employees at seven offices were &quot;counseled or disciplined for accessing pornography sites&quot; on government computers, the agency said in newly released documents.]]></description>
      <author>mdonnell@esoft.com (Mike Donnell)</author>
      <category>web security</category><category>internet security</category><category>web filtering</category>
      <pubDate>Thu, 10 Mar 2011 08:36:47 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/is-internet-usage-reporting-important-ask-the-sec/</guid>
    </item>
    <item>
      <title>Securing Your Smartphone</title>
      <link>http://www.esoft.com/network-security-threat-blog/securing-your-smartphone/</link>
      <description><![CDATA[Smartphones and mobile devices continue to grow in popularity and securing these devices is now becoming a vital part of business network security. Fox News reports on smartphone security including comments from eSoft CEO Mike Donnell.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>malware</category><category>network security</category><category>mobile devices</category>
      <pubDate>Mon, 07 Mar 2011 20:10:09 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/securing-your-smartphone/</guid>
    </item>
    <item>
      <title>Spammers Infiltrate Unsecured Webmail Accounts</title>
      <link>http://www.esoft.com/network-security-threat-blog/spammers-infiltrate-unsecured-webmail-accounts/</link>
      <description><![CDATA[Over the last few months spammers have taken focus to webmail accounts, using compromised webmail accounts to camouflage their malicious intent. eSoft has received numerous reports of hacked webmail accounts used to blast spam throughout the web and user address books.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>phishing scams</category><category>web security</category><category>email security</category>
      <pubDate>Tue, 08 Feb 2011 18:51:14 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/spammers-infiltrate-unsecured-webmail-accounts/</guid>
    </item>
    <item>
      <title>Buying the Security Farm</title>
      <link>http://www.esoft.com/network-security-threat-blog/buying-the-security-farm/</link>
      <description><![CDATA[The landscape of network security is a world of transition. However, one thing we know for certain is that the threats are becoming more organized, more advanced, and more focused. Find out what your business needs to do to be prepared.]]></description>
      <author> ()</author>
      <category>malware</category><category>network security</category><category>vulnerabilities</category><category>web security</category><category>internet security</category><category>email security</category>
      <pubDate>Thu, 27 Jan 2011 08:28:06 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/buying-the-security-farm/</guid>
    </item>
    <item>
      <title>Adobe CS7 Searches Saturated With Dangerous Results</title>
      <link>http://www.esoft.com/network-security-threat-blog/adobe-cs7-searches-saturated-with-dangerous-results/</link>
      <description><![CDATA[Looking to save a few bucks on software will almost always lead users down a dangerous path.  Users either end up at &quot;OEM Software&quot; sites offering unlicensed and illegal software, or to downloading cracks or keygens laced with malware.  ]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category><category>fraud</category><category>malware</category><category>web security</category>
      <pubDate>Thu, 29 Jul 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/adobe-cs7-searches-saturated-with-dangerous-results/</guid>
    </item>
    <item>
      <title>Widespread Compromise Impacts Thousands of Legitimate Websites</title>
      <link>http://www.esoft.com/network-security-threat-blog/widespread-compromise-impacts-thousands-of-legitimate-websites/</link>
      <description><![CDATA[The eSoft Threat Prevention Team has detected a new widespread compromise, with tens of thousands of domains infected.  Cybercriminals have used stolen credentials, placing specially crafted pages into legitimate websites that lead visitors to malicious payloads.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category><category>compromised sites</category><category>malware</category><category>web security</category>
      <pubDate>Mon, 19 Jul 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/widespread-compromise-impacts-thousands-of-legitimate-websites/</guid>
    </item>
    <item>
      <title>Red Button SEO Poisoning and Malware Campaign</title>
      <link>http://www.esoft.com/network-security-threat-blog/red-button-seo-poisoning-and-malware-campaign/</link>
      <description><![CDATA[eSoft researchers have been tracking a new campaign by cybercrooks, compromising and creating websites for use in SEO poisoning and malware distribution. Thousands of these sites have been detected which use elaborate techniques to trick search engines and are ready to serve malware in an instant. ]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category><category>malware</category><category>web security</category>
      <pubDate>Tue, 29 Jun 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/red-button-seo-poisoning-and-malware-campaign/</guid>
    </item>
    <item>
      <title>What Drives Organizational Web Filtering?</title>
      <link>http://www.esoft.com/network-security-threat-blog/what-drives-organizational-web-filtering/</link>
      <description><![CDATA[Network administrators and businesses install web filtering on networks for a variety of reasons ranging from compliance and legal requirements to worker productivity issues.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>web security</category>
      <pubDate>Thu, 24 Jun 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/what-drives-organizational-web-filtering/</guid>
    </item>
    <item>
      <title>Introduction to Rogue Anti-Virus</title>
      <link>http://www.esoft.com/network-security-threat-blog/introduction-to-rogue-anti-virus/</link>
      <description><![CDATA[If you follow the Threat Center Blog, you&#8217;ve heard us talk about &#8220;Rogue AV,&#8221; but may not fully understand what we&#8217;re referencing.  This post is for those users who are not already familiar with this widespread and common threat.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>malware</category><category>web security</category>
      <pubDate>Wed, 23 Jun 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/introduction-to-rogue-anti-virus/</guid>
    </item>
    <item>
      <title>Alert to Web Security Researchers: Malicious scripts masquerade as Google Analytics</title>
      <link>http://www.esoft.com/network-security-threat-blog/alert-to-web-security-researchers-malicious-scripts-masquerade-as-google-analytics/</link>
      <description><![CDATA[eSoft&#039;s Threat prevention team has detected attacks that are masked to look like standard Google Analytics code. Google Analytics issues snippets of javascript code that dynamically adds a script tag for a page.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>compromised sites</category><category>web security</category>
      <pubDate>Mon, 14 Jun 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/alert-to-web-security-researchers-malicious-scripts-masquerade-as-google-analytics/</guid>
    </item>
    <item>
      <title>135,000 Fake YouTube Pages Delivering Malware</title>
      <link>http://www.esoft.com/network-security-threat-blog/135-000-fake-youtube-pages-delivering-malware/</link>
      <description><![CDATA[The eSoft Threat Prevention Team has uncovered thousands compromised web servers hosting fake YouTube pages.  Attempting to play the video on these fake pages prompts the user to install a &#8216;media codec&#8217; which then infects the machine with malware. 
]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category><category>compromised sites</category><category>web security</category>
      <pubDate>Mon, 07 Jun 2010 12:00:01 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/135-000-fake-youtube-pages-delivering-malware/</guid>
    </item>
    <item>
      <title>New Email Phish Targets Twitter Users, Abuses Google Groups</title>
      <link>http://www.esoft.com/network-security-threat-blog/new-email-phish-targets-twitter-users-abuses-google-groups/</link>
      <description><![CDATA[A new twitter spam campaign is making rounds, infecting users with rogue anti-virus malware. The spam mail attempts to convince the user that someone was trying to steal their Twitter account information, and to download a &#8220;secure module&#8221; to protect their account. ]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>compromised sites</category><category>phishing scams</category><category>spam</category>
      <pubDate>Mon, 07 Jun 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/new-email-phish-targets-twitter-users-abuses-google-groups/</guid>
    </item>
    <item>
      <title>Phishing Scams Lure Twitter Users</title>
      <link>http://www.esoft.com/network-security-threat-blog/phishing-scams-lure-twitter-users/</link>
      <description><![CDATA[The newest phishing scam on Twitter has snared thousands of users hoping to increase their number of followers.  Instead, users are sent off to a phishing page where cybercriminals steal their Twitter logins using them to generate more spam.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>phishing scams</category><category>spam</category><category>web security</category>
      <pubDate>Fri, 14 May 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/phishing-scams-lure-twitter-users/</guid>
    </item>
    <item>
      <title>Google Groups Latest Hot Spot for Rogue AV and Malware</title>
      <link>http://www.esoft.com/network-security-threat-blog/google-groups-latest-hot-spot-for-rogue-av-and-malware/</link>
      <description><![CDATA[eSoft researchers have been tracking a recent campaign abusing Google Groups to spread malicious links in Spam emails.  Users following the link are infected with a Downloader Trojan, silently infecting the machine with various types of malware including Rogue Anti-Virus.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>compromised sites</category><category>malware</category><category>spam</category><category>virus</category>
      <pubDate>Wed, 12 May 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/google-groups-latest-hot-spot-for-rogue-av-and-malware/</guid>
    </item>
    <item>
      <title>Pharma-Fraud Continues to Dominate Spam</title>
      <link>http://www.esoft.com/network-security-threat-blog/pharma-fraud-continues-to-dominate-spam/</link>
      <description><![CDATA[Have you taken a look inside your Spam folder recently?  Without a doubt you&#8217;ll find the folder full of pharmacy Spam, pitching everything from Cialis and Viagra to Vicodin and Hydrocodone.  The problem is almost none of the linked web sites are legitimate certified pharmacies.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>fraud</category><category>pharma fraud</category><category>spam</category>
      <pubDate>Thu, 22 Apr 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/pharma-fraud-continues-to-dominate-spam/</guid>
    </item>
    <item>
      <title>Tiger Woods (Searches) Not to Be Trusted</title>
      <link>http://www.esoft.com/network-security-threat-blog/tiger-woods-searches-not-to-be-trusted/</link>
      <description><![CDATA[Tiger Woods&#8217; personal life and marital affairs have attracted constant attention from the press and has certainly damaged his public reputation.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category><category>web security</category>
      <pubDate>Thu, 08 Apr 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/tiger-woods-searches-not-to-be-trusted/</guid>
    </item>
    <item>
      <title>Affiliate Programs Rising Cause of Fraud and Abuse</title>
      <link>http://www.esoft.com/network-security-threat-blog/affiliate-programs-rising-cause-of-fraud-and-abuse/</link>
      <description><![CDATA[What happens when you offer up money to anyone who can drive traffic to your website?  Hackers, scammers, spammers and fraudsters come to your aid.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>fraud</category><category>spam</category><category>web security</category>
      <pubDate>Mon, 05 Apr 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/affiliate-programs-rising-cause-of-fraud-and-abuse/</guid>
    </item>
    <item>
      <title>Obfuscated URLs no match for eSoft SiteFilter</title>
      <link>http://www.esoft.com/network-security-threat-blog/obfuscated-urls-no-match-for-esoft-sitefilter/</link>
      <description><![CDATA[Researchers at Kaspersky labs have discovered a new banking malware campaign that uses an old trick to obfuscate malicious URLs. Rather than using a domain name or IP address for their malicious link the URL is converted to numerical bases such as octal or hexadecimal formats.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>web security</category>
      <pubDate>Mon, 22 Mar 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/obfuscated-urls-no-match-for-esoft-sitefilter/</guid>
    </item>
    <item>
      <title>Cinderella Story Leads to March Madness Malware</title>
      <link>http://www.esoft.com/network-security-threat-blog/cinderella-story-leads-to-march-madness-malware/</link>
      <description><![CDATA[The first week of March Madness has brought about many compelling stories, with a good deal of upsets and bracket busters. The most newsworthy of these has been the University of Northern Iowa&#8217;s ousting of #1 overall seed Kansas]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category><category>web security</category>
      <pubDate>Sun, 21 Mar 2010 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/cinderella-story-leads-to-march-madness-malware/</guid>
    </item>
    <item>
      <title>Virus Alert! Twitter, Google, Hallmark and Others Subject To Attack</title>
      <link>http://www.esoft.com/network-security-threat-blog/virus-alert-twitter-google-hallmark-and-others-subject-to-attack/</link>
      <description><![CDATA[The eSoft Threat Prevention Team is warning customers today of a new email scam circulating very quickly.  These fraudulent emails claim to be from Google Staffing, Hallmark, Twitter as well as other social networks and legitimate businesses.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>malware</category><category>spam</category><category>virus</category><category>email security</category>
      <pubDate>Thu, 04 Mar 2010 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/virus-alert-twitter-google-hallmark-and-others-subject-to-attack/</guid>
    </item>
    <item>
      <title>Hotmail Users Look for Answers in Dangerous Places</title>
      <link>http://www.esoft.com/network-security-threat-blog/hotmail-users-look-for-answers-in-dangerous-places/</link>
      <description><![CDATA[An outage of the Windows Live ID service affected a large number of MSN users today including users of the popular Hotmail email service.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category><category>web security</category>
      <pubDate>Tue, 16 Feb 2010 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/hotmail-users-look-for-answers-in-dangerous-places/</guid>
    </item>
    <item>
      <title>IRS Tax Avoidance Scam</title>
      <link>http://www.esoft.com/network-security-threat-blog/irs-tax-avoidance-scam/</link>
      <description><![CDATA[Today, eSoft is alerting customers to a new targeted email scam.  This newest twist to the common IRS email scam seems to be targeted to organizations, notifying the recipient of a tax evasion complaint being filed against the company.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>fraud</category><category>malware</category>
      <pubDate>Sat, 06 Feb 2010 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/irs-tax-avoidance-scam/</guid>
    </item>
    <item>
      <title>Fake Firefox Update Pages Push Adware</title>
      <link>http://www.esoft.com/network-security-threat-blog/fake-firefox-update-pages-push-adware/</link>
      <description><![CDATA[Since its&#8217; release on January 21st, the newest version of the Firefox web browser has received a great deal of attention. In just a short time it has achieved over 30 million downloads.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>adware</category><category>fraud</category>
      <pubDate>Tue, 02 Feb 2010 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/fake-firefox-update-pages-push-adware/</guid>
    </item>
    <item>
      <title>Super Bowl Associations: football, nachos, big screens and &amp;hellip; malware?</title>
      <link>http://www.esoft.com/network-security-threat-blog/super-bowl-associations-football-nachos-big-screens-and-malware/</link>
      <description><![CDATA[The Super Bowl is the one of the biggest and most watched television events of the year in the United States. People everywhere scour the internet looking for predictions, gambling spreads and news before the event and scores, stories and clips after the event.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category><category>web security</category>
      <pubDate>Tue, 19 Jan 2010 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/super-bowl-associations-football-nachos-big-screens-and-malware/</guid>
    </item>
    <item>
      <title>Lack of Egress Filtering Spurs Success of Injected IFrame Attack</title>
      <link>http://www.esoft.com/network-security-threat-blog/lack-of-egress-filtering-spurs-success-of-injected-iframe-attack/</link>
      <description><![CDATA[The security community at large and the eSoft Threat Prevention Team have recently noticed an uptick in sites compromised by a new injection attack that results in an injected iframe.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>firewall</category><category>web security</category>
      <pubDate>Mon, 18 Jan 2010 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/lack-of-egress-filtering-spurs-success-of-injected-iframe-attack/</guid>
    </item>
    <item>
      <title>Live.com Exploited as Pharma-Fraud Cover</title>
      <link>http://www.esoft.com/network-security-threat-blog/livecom-exploited-as-pharma-fraud-cover/</link>
      <description><![CDATA[The FDA crackdown on online pharmacy sites has driven a lot of attention to illegal and fraudulent online pharmacies and in particular to their methods for tricking people to visit their sites. These practices include prolific spam and search engine poisoning. ]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category><category>pharma fraud</category>
      <pubDate>Tue, 22 Dec 2009 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/livecom-exploited-as-pharma-fraud-cover/</guid>
    </item>
    <item>
      <title>Boeing 787 Searches Hijacked by Rogue AV</title>
      <link>http://www.esoft.com/network-security-threat-blog/boeing-787-searches-hijacked-by-rogue-av/</link>
      <description><![CDATA[Today, the Boeing 787 Dreamliner jet completed its much awaited first flight. As users searched to find videos and news articles related to the story, blackhats quickly moved in for yet another attack against Google search results.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category>
      <pubDate>Tue, 15 Dec 2009 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/boeing-787-searches-hijacked-by-rogue-av/</guid>
    </item>
    <item>
      <title>eSoft Uncovers 1.5 Million Sites in SQL Injection Attacks</title>
      <link>http://www.esoft.com/network-security-threat-blog/esoft-uncovers-15-million-sites-in-sql-injection-attacks/</link>
      <description><![CDATA[The eSoft Threat Prevention Team has uncovered an additional 1.5 million sites associated with the newest series of SQL injection attacks.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>compromised sites</category><category>vulnerabilities</category>
      <pubDate>Sat, 12 Dec 2009 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/esoft-uncovers-15-million-sites-in-sql-injection-attacks/</guid>
    </item>
    <item>
      <title>Fraudsters Deliver Another Round of Federal Reserve Emails</title>
      <link>http://www.esoft.com/network-security-threat-blog/fraudsters-deliver-another-round-of-federal-reserve-emails/</link>
      <description><![CDATA[During the last week, the eSoft Threat Prevention Team has detected a number of malicious emails, allegedly from the Federal Reserve Bank.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>fraud</category><category>spam</category>
      <pubDate>Wed, 09 Dec 2009 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/fraudsters-deliver-another-round-of-federal-reserve-emails/</guid>
    </item>
    <item>
      <title>Scareware Taints Chromium OS Searches</title>
      <link>http://www.esoft.com/network-security-threat-blog/scareware-taints-chromium-os-searches/</link>
      <description><![CDATA[Yesterday, Google announced the open source project called Chromium OS, a development phase release of the Google Chrome OS. Blackhats have quickly taken advantage of this announcement, poisoning search results to spread scareware. ]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category>
      <pubDate>Fri, 20 Nov 2009 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/scareware-taints-chromium-os-searches/</guid>
    </item>
    <item>
      <title>Blackhats Unleash Another Fake Blog Campaign</title>
      <link>http://www.esoft.com/network-security-threat-blog/blackhats-unleash-another-fake-blog-campaign/</link>
      <description><![CDATA[In September, eSoft reported as many as 720,000 compromised sites hosting fake blog pages and being used to distribute rogue anti-virus programs. Many of these sites are still active and continue to plague searches with malicious results.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>compromised sites</category><category>web security</category>
      <pubDate>Tue, 17 Nov 2009 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/blackhats-unleash-another-fake-blog-campaign/</guid>
    </item>
    <item>
      <title>CoolerEmail Hit by Phishing Scam</title>
      <link>http://www.esoft.com/network-security-threat-blog/cooleremail-hit-by-phishing-scam/</link>
      <description><![CDATA[CoolerEmail is notifying customers of a new phishing scam used to steal login credentials. The web based email marketing program carries an impressive client list including Walmart, Toyota, Pepsi and dozens of other big name brands. Any phished credentials can be used to impersonate these companies in additional phishing or malicious emails.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>fraud</category><category>phishing scams</category>
      <pubDate>Thu, 12 Nov 2009 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/cooleremail-hit-by-phishing-scam/</guid>
    </item>
    <item>
      <title>Japanese Hosting Site Compromised</title>
      <link>http://www.esoft.com/network-security-threat-blog/japanese-hosting-site-compromised/</link>
      <description><![CDATA[The eSoft Threat Prevention Team is today warning users to be wary of sites hosted on g0oo.info, a Japanese hosting site.  At this time, all blogs and other web sites hosted by g0oo.info are compromised and currently being used to boost the Google PageRank of various sites including Japanese pornography sites in a technique sometimes called &quot;PageRank Bombing&quot; and also referred to as &quot;BlackHat SEO.&quot;
]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category><category>compromised sites</category>
      <pubDate>Thu, 05 Nov 2009 12:00:00 -0700</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/japanese-hosting-site-compromised/</guid>
    </item>
    <item>
      <title>Phishing Criminals Take Aim at Yahoo Ad Services</title>
      <link>http://www.esoft.com/network-security-threat-blog/phishing-criminals-take-aim-at-yahoo-ad-services/</link>
      <description><![CDATA[Yahoo! Marketing users are the target of a new phishing scam being detected today by the eSoft Threat Prevention Team. Webmasters receive a very believable notification that their Yahoo Marketing account has expired with a link to login and presumably reactivate the account. ]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>fraud</category>
      <pubDate>Fri, 23 Oct 2009 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/phishing-criminals-take-aim-at-yahoo-ad-services/</guid>
    </item>
    <item>
      <title>Compromised Web Servers Host Koobface Malware Cocktail</title>
      <link>http://www.esoft.com/network-security-threat-blog/compromised-web-servers-host-koobface-malware-cocktail/</link>
      <description><![CDATA[The Koobface gang has struck again using compromised web servers to deliver a potent mix of malware. eSoft threat researchers have found hundreds of newly exploited sites hosting malware which includes downloaders, keyloggers and multiple variants of the Koobface worm.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>compromised sites</category><category>malware</category>
      <pubDate>Wed, 21 Oct 2009 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/compromised-web-servers-host-koobface-malware-cocktail/</guid>
    </item>
    <item>
      <title>Unresolved Compromised Fox Sports Host Heading Into Third Week</title>
      <link>http://www.esoft.com/network-security-threat-blog/unresolved-compromised-fox-sports-host-heading-into-third-week/</link>
      <description><![CDATA[eSoft first detected a compromise on the Fox Sports website two weeks ago and as of today, at least one Fox Sports host continues to contain automatic links to a multitude of dangerous exploits. Even with media coverage and direct emails, this compromised host has not been taken offline or cleaned. The threats being hosted have rotated with the most recent threats being remote script links to ackworld.com and nt002.cn.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>compromised sites</category>
      <pubDate>Fri, 16 Oct 2009 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/unresolved-compromised-fox-sports-host-heading-into-third-week/</guid>
    </item>
    <item>
      <title>Fresh Twitter Phishing Campaign via Direct Messages and Tweets</title>
      <link>http://www.esoft.com/network-security-threat-blog/fresh-twitter-phishing-campaign-via-direct-messages-and-tweets/</link>
      <description><![CDATA[A fresh twitter phishing campaign is underway and using both tweets and direct messages to spread. The messages contain text such as &#8220;hah, I think I seen u on here&#8221; and &#8220;wow you look different on here&#8221; together with a link to a video. The URL hxxp://videos.dskjkiuw.com is one of the ones being used. At this time, eSoft is not detecting malware or exploits on this domain, but the target page presents a good imitation of the twitter login page in an attempt to steal credentials. As such, eSoft has flagged it as &#8220;Phishing &amp; Fraud.&#8221;]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>phishing scams</category>
      <pubDate>Wed, 14 Oct 2009 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/fresh-twitter-phishing-campaign-via-direct-messages-and-tweets/</guid>
    </item>
    <item>
      <title>Foxsports.com Used to Serve Malware</title>
      <link>http://www.esoft.com/network-security-threat-blog/foxsports.com-used-to-serve-malware/</link>
      <description><![CDATA[eSoft&#039;s Threat Prevention Lab detected malicious code on the foxsports.com website late yesterday. Hackers have once again increased their tally of well known websites recently exploited to serve dangerous content.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>compromised sites</category><category>malware</category>
      <pubDate>Fri, 02 Oct 2009 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/foxsports.com-used-to-serve-malware/</guid>
    </item>
    <item>
      <title>Blackhats Quickly Saturate Google With Tropical Storm Ondoy</title>
      <link>http://www.esoft.com/network-security-threat-blog/blackhats-quickly-saturate-google-with-tropical-storm-ondoy/</link>
      <description><![CDATA[Since tropical storm Ondoy hit the Philippine Capital on Saturday, attackers have wasted no time planting malicious pages claiming to host videos of the historic disaster. The city of Manila saw flooding on a level that hasn&#039;t been seen in decades and the pictures are jaw dropping. But for surfers looking to see those videos, searching on Google and following search results can be dangerous.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>blackhat seo</category>
      <pubDate>Mon, 28 Sep 2009 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/blackhats-quickly-saturate-google-with-tropical-storm-ondoy/</guid>
    </item>
    <item>
      <title>Google Users Targeted By New Malicious Websites</title>
      <link>http://www.esoft.com/network-security-threat-blog/google-users-targeted-by-new-malicious-websites/</link>
      <description><![CDATA[eSoft&#8217;s Threat Prevention Team has been tracking compromised sites that host PageRank Bombs since 2008.  The attacker hacks a site, but instead of putting exploits on the hacked site, they put links to other websites in order to boost the search result ranking on various search engines.  Initially this was being used for ad sites, porn sites, and pharmafraud sites.  Now, however, it is being used to boost the results of malicious sites, but with a new twist that targets Google users.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>malware</category><category>pharma fraud</category><category>web security</category>
      <pubDate>Mon, 21 Sep 2009 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/google-users-targeted-by-new-malicious-websites/</guid>
    </item>
    <item>
      <title>Fake Blogs Serve Rogue Malware</title>
      <link>http://www.esoft.com/network-security-threat-blog/fake-blogs-serve-rogue-malware/</link>
      <description><![CDATA[eSoft&#8217;s Threat Prevention Team has uncovered a massive amount of recently exploited websites, all redirecting to Rogue AV malware.

At the time of writing, Google shows over 720,000 compromised URLs.  According to VirusTotal, only two of forty-one anti-virus companies are currently detecting the malware.  ]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>vulnerabilities</category><category>web security</category>
      <pubDate>Wed, 09 Sep 2009 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/fake-blogs-serve-rogue-malware/</guid>
    </item>
    <item>
      <title>Chinese Scams Resurface with New Branding</title>
      <link>http://www.esoft.com/network-security-threat-blog/chinese-scams-resurface-with-new-branding/</link>
      <description><![CDATA[The Threat Prevention Team has found thousands of URLs and over 200 new domains registered to a group of Chinese scammers. The new sites are the same as the old, but with new branding and promotional products, such as &quot;Acai Power Slim&quot; &quot;Pure Magnum Pro&quot; and &quot;Colo Cleanse Plus&quot;. This scam is perpetrated by sending spam messages advertising a &quot;free trial&quot; of the products. In the end, the criminals have made off with personal information, a credit card number and a recurring monthly charge.]]></description>
      <author>lgraves@esoft.com (Lee Graves)</author>
      <category>phishing scams</category>
      <pubDate>Fri, 28 Aug 2009 12:00:00 -0600</pubDate>
      <guid>http://www.esoft.com/network-security-threat-blog/chinese-scams-resurface-with-new-branding/</guid>
    </item>
  </channel>
</rss>

