<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	
	xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>The Inquisitr &#187; sophos</title>
	<atom:link href="http://www.inquisitr.com/tag/sophos/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.inquisitr.com</link>
	<description>The Better Mix</description>
	<lastBuildDate>Mon, 13 Feb 2012 09:15:43 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>&#8216;Rogue app&#8217; won&#8217;t show you your first Facebook status, will spam your friends</title>
		<link>http://www.inquisitr.com/94817/my-1st-sttus-app-malware-facebook/</link>
		<comments>http://www.inquisitr.com/94817/my-1st-sttus-app-malware-facebook/#comments</comments>
		<pubDate>Thu, 06 Jan 2011 22:57:45 +0000</pubDate>
		<dc:creator>Kim LaCapria</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[clickjacking]]></category>
		<category><![CDATA[facebook malware]]></category>
		<category><![CDATA[facebook security]]></category>
		<category><![CDATA[My 1st St@tus app facebook]]></category>
		<category><![CDATA[My 1st St@tus facebook]]></category>
		<category><![CDATA[My 1st St@tus scam]]></category>
		<category><![CDATA[My 1st St@tus virus]]></category>
		<category><![CDATA[sophos]]></category>

		<guid isPermaLink="false">http://www.inquisitr.com/?p=94817</guid>
		<description><![CDATA[<br />You&#8217;ve probably seen this status-jacking app in action, but if you&#8217;re tempted to use it, be aware that &#8220;My 1st St@tus&#8221; not only will not reveal your first ever Facebook post, but it will also expose you as a n00b to your friends through unauthorized posts to your Facebook wall. According to Sophos, the information [...]<p><a href="http://www.inquisitr.com/94817/my-1st-sttus-app-malware-facebook/">&#8216;Rogue app&#8217; won&#8217;t show you your first Facebook status, will spam your friends</a> is a post from: <a href="http://www.inquisitr.com">The Inquisitr</a></p>
<br /><br /><br />]]></description>
			<content:encoded><![CDATA[<p><a rel="attachment wp-att-94818" href="http://www.inquisitr.com/94817/my-1st-sttus-app-malware-facebook/my-1st-sttus-app/"><img class="aligncenter size-full wp-image-94818" title="my 1st st@tus app" src="http://images.inquisitr.com/wp-content/2011/01/my-1st-st@tus-app.jpg" alt="" width="468" height="362" /></a></p>
<p>You&#8217;ve probably seen this status-jacking app in action, but if you&#8217;re tempted to use it, be aware that &#8220;My 1st St@tus&#8221; not only will <em>not</em> reveal your first ever Facebook post, but it will also expose you as a n00b to your friends through unauthorized posts to your Facebook wall.</p>
<p><a href="http://nakedsecurity.sophos.com/2011/01/06/my-1st-sttus-scam-hits-facebook-users-hard-spreads-virally/">According to Sophos</a>, the information purported by the app to be your first status is incorrect, and the app goes on to lure you into scammy and possibly malware laden survey sites while also taking liberties with the wall posting thing. The security clearinghouse elaborates:</p>
<blockquote><p>&#8230;it&#8217;s a complete confidence trick. It doesn&#8217;t tell you your first status message on Facebook &#8211; and it&#8217;s only intention is to drive as many people as possible into sharing the link (which can vary &#8211; we have seen several examples) further and further across Facebook, earning the scammers money.</p></blockquote>
<p>These <a href="http://www.inquisitr.com/81114/omg-the-most-shocking-video-caught-on-camera-girl-being-attacked-by-a-shark-video/">types of scams have surfaced before</a> and will continue to pop up on Facebook as quickly as they&#8217;re removed. It&#8217;s best to approach apps like this with a grain of salt because as one user reports:</p>
<blockquote><p>I&#8217;ve just been pinged by a very similar looking scam application that claimed to be from facebook&#8230; Exactly the same MO&#8230;to prove I was human I had to complete a survey! I deleted it immediately but not before it bombarded my whole friends list with with a very tempting link to dupe them as well! GGrrr!!!!</p></blockquote>
<p>As with the &#8220;shocking video&#8221; facebook status update hijacker trend, you should also expect to see a number of similar apps pop up until the scammers move on to a new, hard to resist imaginary functionality to lure the unaware.</p>
<p><a href="http://www.inquisitr.com/94817/my-1st-sttus-app-malware-facebook/">&#8216;Rogue app&#8217; won&#8217;t show you your first Facebook status, will spam your friends</a> is a post from: <a href="http://www.inquisitr.com">The Inquisitr</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.inquisitr.com/94817/my-1st-sttus-app-malware-facebook/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:thumbnail url="http://www.inquisitr.com/wp-content/2011/01/my-1st-st@tus-app-100x100.jpg" />
		<media:content url="http://www.inquisitr.com/wp-content/2011/01/my-1st-st@tus-app.jpg" medium="image">
			<media:title type="html">my 1st st@tus app</media:title>
			<media:thumbnail url="http://www.inquisitr.com/wp-content/2011/01/my-1st-st@tus-app-100x100.jpg" />
		</media:content>
	</item>
		<item>
		<title>Twitter says porn mouseover exploit is &#8216;fully patched&#8217;</title>
		<link>http://www.inquisitr.com/85472/twitter-says-porn-mouseover-exploit-is-fully-patched/</link>
		<comments>http://www.inquisitr.com/85472/twitter-says-porn-mouseover-exploit-is-fully-patched/#comments</comments>
		<pubDate>Tue, 21 Sep 2010 15:35:19 +0000</pubDate>
		<dc:creator>Kim LaCapria</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[onmouseover]]></category>
		<category><![CDATA[sarah brown]]></category>
		<category><![CDATA[sophos]]></category>
		<category><![CDATA[Twitter]]></category>
		<category><![CDATA[twitter exploit]]></category>
		<category><![CDATA[twitter hack]]></category>
		<category><![CDATA[twitter hacked]]></category>
		<category><![CDATA[twitter hacked javascript]]></category>
		<category><![CDATA[twitter hacked september 2010]]></category>
		<category><![CDATA[twitter security]]></category>

		<guid isPermaLink="false">http://www.inquisitr.com/?p=85472</guid>
		<description><![CDATA[<br />Twitter was plagued for a bit this morning by a mouseover security flaw that compromised user accounts even if those affected didn&#8217;t click the offending link. Sophos explains how the security flaw compromised &#8220;thousands&#8221; of accounts, including some high profile ones, redirecting unsuspecting users to &#8220;hardcore Japanese porn sites&#8221; before it was patched: The Twitter [...]<p><a href="http://www.inquisitr.com/85472/twitter-says-porn-mouseover-exploit-is-fully-patched/">Twitter says porn mouseover exploit is &#8216;fully patched&#8217;</a> is a post from: <a href="http://www.inquisitr.com">The Inquisitr</a></p>
<br /><br /><br />]]></description>
			<content:encoded><![CDATA[<p><a rel="attachment wp-att-85474" href="http://www.inquisitr.com/85472/twitter-says-porn-mouseover-exploit-is-fully-patched/twitter-hacked/"><img class="aligncenter size-full wp-image-85474" title="twitter hacked" src="http://images.inquisitr.com/wp-content/2010/09/twitter-hacked.jpg" alt="" width="300" height="248" /></a></p>
<p>Twitter was plagued for a bit this morning by a mouseover security flaw that compromised user accounts even if those affected didn&#8217;t click the offending link.</p>
<p><a href="http://www.sophos.com/blogs/gc/g/2010/09/21/twitter-onmouseover-security-flaw-widely-exploited/">Sophos explains</a> how the security flaw compromised &#8220;thousands&#8221; of accounts, including some high profile ones, redirecting unsuspecting users to &#8220;hardcore Japanese porn sites&#8221; before it was patched:</p>
<blockquote><p>The Twitter website is being widely exploited by users who have stumbled  across a flaw which allows messages to pop-up and third-party websites  to open in your browser just by moving your mouse over a link.  In a  worrying development, messages are also spreading virally exploiting the  vulnerability without the consent of users.</p></blockquote>
<p><a href="http://www.theregister.co.uk/2010/09/21/twitter_plugs_website_vuln/">The Register says</a> that Twitter&#8217;s team tackled the exploit in within two hours of its appearance. The head of Twitter&#8217;s &#8220;Trust and Safety&#8221; team posted an update confirming the security flaw <a href="http://twitter.com/delbius/status/25120366027">had been resolved</a>:</p>
<blockquote><p>The XSS  attack should now be fully patched and no longer exploitable. Thanks,  those reporting it.</p></blockquote>
<p>Users employing third-party clients for Twitter such as Tweet Deck were not affected by the exploit.</p>
<p>[<a href="http://thenextweb.com/">Image</a>]</p>
<p><a href="http://www.inquisitr.com/85472/twitter-says-porn-mouseover-exploit-is-fully-patched/">Twitter says porn mouseover exploit is &#8216;fully patched&#8217;</a> is a post from: <a href="http://www.inquisitr.com">The Inquisitr</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.inquisitr.com/85472/twitter-says-porn-mouseover-exploit-is-fully-patched/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:thumbnail url="http://www.inquisitr.com/wp-content/2010/09/twitter-hacked-100x100.jpg" />
		<media:content url="http://www.inquisitr.com/wp-content/2010/09/twitter-hacked.jpg" medium="image">
			<media:title type="html">twitter hacked</media:title>
			<media:thumbnail url="http://www.inquisitr.com/wp-content/2010/09/twitter-hacked-100x100.jpg" />
		</media:content>
	</item>
		<item>
		<title>If a Facebook link says &#8220;shocking video,&#8221; just please don&#8217;t click it</title>
		<link>http://www.inquisitr.com/81114/omg-the-most-shocking-video-caught-on-camera-girl-being-attacked-by-a-shark-video/</link>
		<comments>http://www.inquisitr.com/81114/omg-the-most-shocking-video-caught-on-camera-girl-being-attacked-by-a-shark-video/#comments</comments>
		<pubDate>Wed, 04 Aug 2010 18:24:35 +0000</pubDate>
		<dc:creator>Kim LaCapria</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[clickjacking]]></category>
		<category><![CDATA[facebook malware]]></category>
		<category><![CDATA[facebook OMG The Most Shocking Video Caught On Camera Girl Being Attacked By A Shark]]></category>
		<category><![CDATA[OMG The Most Shocking Video Caught On Camera Girl Being Attacked By A Shark]]></category>
		<category><![CDATA[OMG The Most Shocking Video Caught On Camera Girl Being Attacked By A Shark video]]></category>
		<category><![CDATA[sophos]]></category>

		<guid isPermaLink="false">http://www.inquisitr.com/?p=81114</guid>
		<description><![CDATA[<br />If there&#8217;s one thing we can learn from Facebook and social networking in general, it&#8217;s that if people are enticed with illicit material and anything labeled &#8220;shocking,&#8221; their anti-malware sensors malfunction. I&#8217;ve been seeing a disappointing number of folks in my Facebook feed &#8220;adding&#8221; these &#8220;sexiest ever&#8221; or &#8220;most shocking naughty students/shark attack/angry pensioner caught [...]<p><a href="http://www.inquisitr.com/81114/omg-the-most-shocking-video-caught-on-camera-girl-being-attacked-by-a-shark-video/">If a Facebook link says &#8220;shocking video,&#8221; just please don&#8217;t click it</a> is a post from: <a href="http://www.inquisitr.com">The Inquisitr</a></p>
<br /><br /><br />]]></description>
			<content:encoded><![CDATA[<p><a rel="attachment wp-att-81115" href="http://www.inquisitr.com/81114/omg-the-most-shocking-video-caught-on-camera-girl-being-attacked-by-a-shark-video/shocking-shark-attack-video-facebook/"><img class="aligncenter size-full wp-image-81115" title="OMG The Most Shocking Video Caught On Camera Girl Being Attacked By A Shark" src="http://images.inquisitr.com/wp-content/2010/08/shocking-shark-attack-video-facebook.jpg" alt="" width="548" height="293" /></a></p>
<p>If there&#8217;s one thing we can learn from Facebook and social networking in general, it&#8217;s that if people are <a href="http://www.inquisitr.com/68328/disneys-most-shocking-secret/">enticed with illicit material and anything labeled &#8220;shocking,&#8221;</a> their anti-malware sensors malfunction.</p>
<p>I&#8217;ve been seeing a disappointing number of folks in my Facebook feed &#8220;adding&#8221; these &#8220;sexiest ever&#8221; or &#8220;most shocking naughty students/shark attack/angry pensioner caught on tape&#8221; groups after being lured by the promise of viewing clips that show the promised sex, violence or wipeouts. This particular round is titled in a not very legitimate sounding way to begin with- &#8220;OMG The Most Shocking Video Caught On Camera Girl Being Attacked By A Shark.&#8221;</p>
<p><a href="http://www.sophos.com/blogs/gc/g/2010/08/04/shocking-video-girl-attacked-shark-omg-colourful-clickjack-attack/">Sophos examines the latest Facebook clickjacking</a> attempt that has, by its duplicitous nature, gone viral:</p>
<blockquote><p>(After opening the page, when) you agree to click on the coloured buttons (and I have to wonder why you would) then you are actually being clickjacked &#8211; secretly liking and sharing the link with all of your Facebook friends. You&#8217;re in good company at least &#8211; thousands of other Facebook users have done the same&#8230;</p></blockquote>
<p><a href="http://www.inquisitr.com/73104/sexiest-video-ever-on-facebook-will-install-malware-spam-your-friends/">As with previous, similar attacks</a>, the group then mercilessly spams your friends, possibly drawing them in and making you look like a complete noob in the process. On their blog, Sophos chides:</p>
<blockquote><p>And now you&#8217;re a fan of that page they&#8217;re free to send your updates and messages, and potentially spam you or send you malicious links. What&#8217;s worse &#8211; you&#8217;ve endorsed the page and shared it with your online mates&#8230; All because you wanted to watch a shocking video of a girl being attacked by a shark.</p></blockquote>
<p>When presented with the dangling &#8220;shocking&#8221; footage, please bear in mind that this is the internet. If a clip was that horribly awesome, it would be freely available- not behind a series of walls on Facebook. Besides, if you&#8217;re really feeling that bloodthirsty, it&#8217;s still Shark Week for a couple more days.</p>
<p>[via <a href="http://1000bookjourney.livejournal.com/">1000 Books, 1000 Miles</a>]</p>
<p><a href="http://www.inquisitr.com/81114/omg-the-most-shocking-video-caught-on-camera-girl-being-attacked-by-a-shark-video/">If a Facebook link says &#8220;shocking video,&#8221; just please don&#8217;t click it</a> is a post from: <a href="http://www.inquisitr.com">The Inquisitr</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.inquisitr.com/81114/omg-the-most-shocking-video-caught-on-camera-girl-being-attacked-by-a-shark-video/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:thumbnail url="http://www.inquisitr.com/wp-content/2010/08/shocking-shark-attack-video-facebook-100x100.jpg" />
		<media:content url="http://www.inquisitr.com/wp-content/2010/08/shocking-shark-attack-video-facebook.jpg" medium="image">
			<media:title type="html">OMG The Most Shocking Video Caught On Camera Girl Being Attacked By A Shark</media:title>
			<media:thumbnail url="http://www.inquisitr.com/wp-content/2010/08/shocking-shark-attack-video-facebook-100x100.jpg" />
		</media:content>
	</item>
		<item>
		<title>Study: Blogspot, Naked Female Celebs Pose Worst Malware Risks</title>
		<link>http://www.inquisitr.com/1894/study-blogspot-naked-female-celebs-pose-worst-malware-risks/</link>
		<comments>http://www.inquisitr.com/1894/study-blogspot-naked-female-celebs-pose-worst-malware-risks/#comments</comments>
		<pubDate>Wed, 23 Jul 2008 22:31:50 +0000</pubDate>
		<dc:creator>JR</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[angelina jolie]]></category>
		<category><![CDATA[blogger]]></category>
		<category><![CDATA[blogspot]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[malicious code]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[Nicole Kidman]]></category>
		<category><![CDATA[sophos]]></category>

		<guid isPermaLink="false">http://www.inquisitr.com/?p=1894</guid>
		<description><![CDATA[<br />Blogspot.com is the worst when it comes to malicious content, according to a new report released by antivirus company Sophos. Sophos says Google&#8217;s free blog hosting service has more malware than any other single site on the Web, with 2 percent of all the world&#8217;s dangerous code &#8212; both in hacker-created blogs and in innocent [...]<p><a href="http://www.inquisitr.com/1894/study-blogspot-naked-female-celebs-pose-worst-malware-risks/">Study: Blogspot, Naked Female Celebs Pose Worst Malware Risks</a> is a post from: <a href="http://www.inquisitr.com">The Inquisitr</a></p>
<br /><br /><br />]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.inquisitr.com/wp-content/sophos.jpg" alt="" title="sophos" width="200" height="34" class="alignright size-medium wp-image-1895" />Blogspot.com is the worst when it comes to malicious content, according to a <a href="http://www.sophos.com/pressoffice/news/articles/2008/07/security-report.html">new report</a> released by antivirus company <a href="http://sophos.com">Sophos</a>.</p>
<p>Sophos says Google&#8217;s free blog hosting service has more malware than any other single site on the Web, with 2 percent of all the world&#8217;s dangerous code &#8212; both in hacker-created blogs and in innocent blogs infested with malicious comments.  <a href="http://news.cnet.com/8301-1009_3-9997978-83.html?part=rss&#038;subj=news&#038;tag=2547-1_3-0-5">Google says</a> hosting any malicious code is, of course, a violation and something its staff actively works to avoid.</p>
<p>Another curious discovery: Messages claiming to contain naked photos of Angelina Jolie or Nicole Kidman are the most common forms of e-mail-based malware, Sophos found.  </p>
<p>Overall, Sophos says there are now 11 million different pieces of malware floating around, with 20,000 new samples coming in daily.  Engineers say they&#8217;re finding three times the amount of problematic content as they did last year.</p>
<p><a href="http://www.inquisitr.com/1894/study-blogspot-naked-female-celebs-pose-worst-malware-risks/">Study: Blogspot, Naked Female Celebs Pose Worst Malware Risks</a> is a post from: <a href="http://www.inquisitr.com">The Inquisitr</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.inquisitr.com/1894/study-blogspot-naked-female-celebs-pose-worst-malware-risks/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
	
		<media:thumbnail url="http://www.inquisitr.com/wp-content/sophos.jpg" />
		<media:content url="http://www.inquisitr.com/wp-content/sophos.jpg" medium="image">
			<media:title type="html">sophos</media:title>
		</media:content>
	</item>
	</channel>
</rss>

