Physical Address Strangeness in Spam

December 05, 2013 | Brian Bebeau

Ten years ago, Congress passed the "CAN-SPAM Act" (also known as ...

Hacking a Reporter: Sleepless Nights Outside a Brooklyn Brownstone (Part 3 of 3)

December 05, 2013

This post is the conclusion of a three-part series (read the first here and the ...

Look What I Found: Moar Pony!

December 04, 2013 | Daniel Chechik

In our last episode of "Look What I Found" we talked about a fairly large ...

[Honeypot Alert] More PHP-CGI Scanning (apache-magika.c)

November 26, 2013 | Ryan Barnett

In the past 24 hours, one of the WASC Distributed Web Honeypot participant's ...

SpiderLabs Responder Updates

November 26, 2013

Responder is a penetration-testing tool in active development. To continue ...

Spam Triple Threat: Voice Message, Important System Update, and DHL Delivery spam campaign.

November 22, 2013

This week we discovered a large malware spam campaign that used the Zbot Trojan ...

Vulnerability in RiskNet Acquirer (TWSL2013-031)

November 22, 2013

Last week we released an advisory for a vulnerability discovered in the RiskNet ...

Malicious shells; Established != Active

November 22, 2013 | Ryan Jones

During a recent investigation, SpiderLabs was presented with evidence that ...

Tutorial for NTDS goodness (VSSADMIN, WMIS, NTDS.dit, SYSTEM)

November 21, 2013

I recently performed an internal penetration test where the NTDS.dit file got ...

SpiderLabs Radio November 15, 2013 w/ Space Rogue

November 15, 2013

This week's episode of SpiderLabs Radio hosted by Space Rogue is brought to you ...

Trustwave SpiderLabs at OWASP’s AppSec USA 2013

November 15, 2013 | Trustwave SpiderLabs

Will you be at the OWASP Foundation's AppSec USA event next week in New York ...

Microsoft Patch Tuesday, November 2013

November 12, 2013

Most of us thought this would be an easymonth with only eight bulletins to deal ...

SpiderLabs Radio November 8, 2013 w/ Space Rogue

November 08, 2013

This week's episode of SpiderLabs Radio hosted by Space Rogue is brought to you ...

Hacking a Reporter: Writing Malware For Fun and Profit (Part 2 of 3)

November 08, 2013 | Josh Grunzweig

Matthew Jakubowski (@jaku) contributed to the writing of this blog post.

Microsoft Advance Notification for November 2013

November 07, 2013 | Space Rogue

Microsoft will release eight bulletins for Patch Tuesday inNovember. Four of ...

SpiderLabs Radio November 1, 2013 w/ Space Rogue

November 01, 2013

This week's episode of SpiderLabs Radio hosted by Space Rogue is brought to you ...

Hacking a Reporter: Writing Malware For Fun and Profit (Part 1 of 3)

October 31, 2013 | Josh Grunzweig

Matthew Jakubowski (@jaku) contributed to the writing of this blog post.

SpiderLabs Radio October 25, 2013 w/ Space Rogue

October 25, 2013

This week's episode of SpiderLabs Radio hosted by Space Rogue is brought to you ...

PHP.Net Site Infected with Malware

October 25, 2013 | Ryan Barnett

Earlier today, users attempting to access the www.php.net site were met with ...

Card Data Siphon with Google Analytics

October 18, 2013 | Richard Wells

The introduction of EMV (Chip &Pin) payment devices in 2003 resulted in a ...

SpiderLabs Radio October 18, 2013 w/ Space Rogue

October 18, 2013 | Space Rogue

This week's episode of SpiderLabs Radio hosted by Space Rogue is brought to you ...

Fingerprinting Ubuntu OS Versions using OpenSSH

October 14, 2013 | Jonathan Claudius

Over the past couples weeks, I've been working on enhancingthe operating system ...

SpiderLabs Radio October 11, 2013 w/ Space Rogue

October 11, 2013

This week's episode of SpiderLabs Radio hosted by Space Rogue is brought to you ...

Hiding Webshell Backdoor Code in Image Files

October 11, 2013 | Ryan Barnett

Looks Can Be Deceiving Do any of these pictures look suspicious?

The Technical Aspects of Exploiting IE Zero-Day CVE-2013-3897

October 10, 2013 | Trustwave SpiderLabs

Just two days ago we announced thediscovery of in-the-wild attacks that used ...

Having a Fiesta With Ploutus

October 10, 2013 | Josh Grunzweig

A short while ago, SafenSoft reported a new family ofmalware, named 'Ploutus', ...

Another Day, SpiderLabs Discovers Another IE Zero-Day

October 08, 2013

We at SpiderLabs investigate many suspicious webpages on adaily basis. ...

Microsoft Patch Tuesday, October 2013

October 08, 2013

Here in Philadelphia this month the localweather people are calling it ...