• Home
  • Unternehmen
    • Unsere Philosophie
    • Unternehmenshistorie
    • Das eyeT Secure Team
    • Standorte und Büros
    • Geschäftspartnerprogramm
    • Karriere
    • Referenzen und Fallstudien
    • Geschäftsbedingungen
      • Allgemeine Geschäftsbedingungen
      • Ergänzenden Geschäftsbedingungen für Dienstleistungen
      • Geschäftsbedingungen Managed Security Services
      • Teilnahmebedingungen Workshop-Trainings
  • SecureXpert Services
    • IT-Security Management
      • Security Assessment, Strategie
      • Integration, Projektmanagement
      • Betrieb/Upgrades, Support, Schulungen
      • Review, Change Management
    • eyeT Audit
    • eyeT Pentest
    • eyeT Policy
    • eyeT SecureSupport
      • eyeT SecureSupport Remote
      • eyeT SecureSupport OnSite
      • eyeT SecureSupport eXpert
    • AGB’s Dienstleistungen
  • Solutions
    • E-Mail Messaging und Web Security
      • Solutions E-Mail Security
      • Solutions Web Security
    • E-Mail Archivierung
    • Endpoint and Mobile Security
      • Anti-Virus-/Malware Protection
      • Anti Spyware
    • Encryption for DATA, E-Mail and File
      • Endpoint Encryption
      • USB Encryption
      • E-Mail Encryption
    • Device and Port Control
      • eyeT DeviceControl
      • eyeT PortControl
    • Data Loss Prevention
    • Firewall
    • SSL VPN
    • SAP Security
    • Intrusion Prevention Host- u. Network
    • Security Virtueller Umgebung
    • NAC Network Access Control
    • IAM Identity & Access Management
  • HostedSecurity
    • Managed E-Mail Security
      • Anti Spam
      • Anti Virus
      • Inhaltsfilterung
      • E-Mail Encryption
    • Managed Web Security
      • Web MalWare Scanning
      • Web/URL-Filtering
      • Mobile u. Roaming Users
    • Instant Messaging Security
    • Leistungsbeschreibung MSS
    • Service Level Standards MSS
    • Geschäftsbedingungen MSS
  • Partner
  • Support
  • Seminare
    • eyeT Technical Trainings
      • McAfee Total Protection for Endpoint Live
      • McAfee ePolicy Orchestrator V4.5
      • Kaspersky Technical Training
      • F-Secure Technical Training
    • IT Security Management Workshops
      • Rechtliche Themenkreis
      • Organisatorischer Themenkreis
      • Technischer Themenkreis
    • Teilnahmebedingungen Workshops-Trainings

What the Zeus!? Kneber botnet unmasked

Media reports from yesterday about a "broad new hacking attack" against corporations and government agencies gained a lot of attention.

Here are just a handful of the heart-stopping headlines we saw:

* More than 75,000 computer systems hacked in one of largest cyber attacks, security firm says
* 'Kneber' Attack Shows Extensive Vulnerability of Corporate Computer Networks
* Kneber botnet steals log-ins to 75,000 companies
* Trove of 68,000 stolen logons in hands of 'amateur' hackers

Inevitably many people have contacted Sophos asking about the mysterious "Kneber botnet", and whether we can protect computers
against it.

Obviously botnets are a big problem, but what many of the reports have missed is that "Kneber" is just another name for a family of malware which has been in existence for over two years called Zeus or ZBot.

Here, for instance, is a blog post from late 2007 where Fraser Howard of SophosLabs discussed one of the earliest versions of Zeus:
"Zbot (aka Prg) banking Trojan distribution".

We have discussed many many more aspects and examples of Zbot/Zeus since, including last year I revealed on the Clu-blog that a man and woman were arrested in Manchester, UK, in relation to a strain of the Zbot/Zeus Trojan that they were allegedly spreading.

So, in reality, Kneber is nothing new at all. It's just that the media latched onto a new name for a known threat.


Source: Sophos

Hotline
  • eyeT Events

  • eyeT Secure lädt ein zum McAfee ePolicy Orchestrator V4.5 Update Workshop
  • Hamburg: Dienstag, 07. September 2010
  • Berlin: Donnerstag, 09. September 2010
  • eyeTSecure News abonnieren
  • Intel Corporation kauft McAfee
  • NEU! - McAfee Produktsuiten
  • McAfee Updates 08/2010
  • Security Alert: Internet Explorer VBScript ...
  • Websense TRITON bietet komplette Web-, Date...

  • eyeT Product Releases

  • McAfee ePolicy Orchestrator 4.6 Beta
  • ePO-MER 2.2 for ePO 4.x Available
  • ePolicy Orchestrator V4.0 Patch 7
  • ePolicy Orchestrator V4.5 Patch 3
  • McAfee Agent für Windows Patch 1
  • Host Intrusion Prevention V7.0 Patch 8
  • McAfee: Patch 2 vom ePO 4.5 verfügbar
  • Websense® Web Security Gateway
  • v5.3 of Websense Hosted Security
  • McAfee VirusScan Mobile Enterprise 2.1 released
  • MIMEsweeper for SMTP 5.4
  • Websense® TRITON™ Gateway Security

  • © 2009 eyeT SecureTechnologie GmbH
  • Client-Login
  • Servicelevel Standards
  • Geschäftsbedingungen
  • Datenschutz
  • Impressum
  • Newsletter