Wilders Security Forums  

Go Back   Wilders Security Forums > Other Security Topics > malware problems & news
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old October 11th, 2011, 02:37 PM
ronjor's Avatar
ronjor ronjor is online now
Global Moderator
 
Join Date: Jul 2003
Location: Texas
Posts: 46,202
Default [Microsoft] October Update Tuesday: Security Intelligence Report volume 11 announced

Quote:
MSRCTeam

Hello,

On this October Update Tuesday, we are releasing the 11th volume of the Security Intelligence Report, SIRv11, which puts zero-day vulnerabilities into context against other global threats. We are also releasing eight security updates so please read on for details.

A new method of analyzing malware distribution indicates that in the first half of 2011 zero-day issues account for a very small percentage of actual infections. The results from our analysis concluded that none of the top malware families in the first half of 2011 were known to be distributed through the use of 0-days, and while some smaller families did take advantage of 0-day vulnerabilities, less than 1 percent of all exploit attempts were against zero-day issues.

The key takeaway from SIRv11 is how malware is actually being distributed – social engineering, Autorun feature abuse, file-infection, exploits (with updates available) and brute force password attacks. Many of these attacks can be avoided with fundamental security practices, such as downloading security updates once available or ensuring that you have Automatic Updates enabled on your system. Automatic Updates help to ensure that computers are protected against new and ongoing security threats and that Windows continues to function smoothly
https://blogs.technet.com/themes/blo...ced&GroupKeys=
  #2  
Old October 11th, 2011, 09:05 PM
MrBrian MrBrian is offline
Very Frequent Poster
 
Join Date: Feb 2008
Posts: 2,925
Default Re: [Microsoft] October Update Tuesday: Security Intelligence Report volume 11 announced

There is also a Regional Threat Assessment pdf available at http://www.microsoft.com/security/si...e/default.aspx that isn't included in the main Security Intelligence Report.
  #3  
Old October 14th, 2011, 01:26 PM
PJC PJC is offline
Very Frequent Poster
 
Join Date: Feb 2010
Location: Internet
Posts: 2,962
Default Microsoft October Update Tuesday: Security Intelligence Report volume 11 announced

Here, too.
  #4  
Old October 16th, 2011, 12:24 AM
MrBrian MrBrian is offline
Very Frequent Poster
 
Join Date: Feb 2008
Posts: 2,925
Default Re: [Microsoft] October Update Tuesday: Security Intelligence Report volume 11 announced

Percentage of USA websites hosting drive-by downloads: (data from Security Intelligence Report Volume 11 Regional Threat Assessment)
2010 3Q - 0.032%
2010 4Q - 0.007%
2011 1Q - 0.764%
2011 2Q - 0.817%

Notice the large relative increase from 2010 to 2011.
  #5  
Old October 16th, 2011, 03:38 PM
RJK3 RJK3 is offline
Frequent Poster
 
Join Date: Apr 2011
Posts: 469
Default Re: [Microsoft] October Update Tuesday: Security Intelligence Report volume 11 announced

Thanks all for the stats!

MrBrian - do those statistics refer to pages with a script pointing to a third party site with the actual exploit kit, or do they purely mean sites actually hosting the exploit kit themselves?

I'd be interested in stats for how many legitimate sites get hacked with the former scenario in mind.
  #6  
Old October 16th, 2011, 03:40 PM
Hungry Man's Avatar
Hungry Man Hungry Man is offline
Incredibly Massive Poster
 
Join Date: May 2011
Posts: 8,486
Default Re: [Microsoft] October Update Tuesday: Security Intelligence Report volume 11 announced

There was a recent article (recent as in two months or so) with stats about hacked sites distributing malware. Can't find it though =\
__________________
  #7  
Old October 16th, 2011, 04:47 PM
MrBrian MrBrian is offline
Very Frequent Poster
 
Join Date: Feb 2008
Posts: 2,925
Default Re: [Microsoft] October Update Tuesday: Security Intelligence Report volume 11 announced

Quote:
Originally Posted by RJK3
Thanks all for the stats!

MrBrian - do those statistics refer to pages with a script pointing to a third party site with the actual exploit kit, or do they purely mean sites actually hosting the exploit kit themselves?

You're welcome .

I'm not sure either on that matter.
 

Wilders Security Forums > Other Security Topics > malware problems & news « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 12:23 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums