Wednesday, May 30, 2007

Driveby downloads

The folks over at Google have posted a paper where they have searched their web cache for drive-by attacks that take advantage of vulnerabilities that transparently allow malware to be downloaded. It's significantly more data walked than others papers that I've seen. The paper also characterizes the mechanisms that hackers use to infect third-party sites dynamically.

Of course, with VPS installed you shouldn't be vulnerable to most of these kinds of attacks :)

Tuesday, May 22, 2007

Google Talk

Alex was over at Google yesterday to give a talk about exploiting vulnerabilities and some of the techniques that hackers use. It gives a number of examples of current techniques which show why products like Determina VPS are important for mitigating risk against vulnerabilities.

Here's a pointer to the video .