<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Philosophically Secure &#187; malware</title>
	<atom:link href="http://eugk.net/wordpress/category/malware/feed/" rel="self" type="application/rss+xml" />
	<link>http://eugk.net/wordpress</link>
	<description>Eugene Kogan&#039;s blog on information security and software engineering</description>
	<lastBuildDate>Thu, 12 Aug 2010 20:58:19 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Clever malware</title>
		<link>http://eugk.net/wordpress/2009/10/05/clever-malware/</link>
		<comments>http://eugk.net/wordpress/2009/10/05/clever-malware/#comments</comments>
		<pubDate>Mon, 05 Oct 2009 15:58:58 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
				<category><![CDATA[hacking]]></category>
		<category><![CDATA[malware]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/?p=265</guid>
		<description><![CDATA[A clever piece of bank account-targeting malware was recently discovered. It does the usual task of transferring money out of the victim&#8217;s account. But it also has a clever trick to help delay the victim from noticing the missing money. When he checks his bank statement online, the malware-initiated fund transfers will be dynamically removed. [...]]]></description>
		<wfw:commentRss>http://eugk.net/wordpress/2009/10/05/clever-malware/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Sandia to boot behemoth botnet</title>
		<link>http://eugk.net/wordpress/2009/08/12/sandia-to-boot-behemoth-botnet/</link>
		<comments>http://eugk.net/wordpress/2009/08/12/sandia-to-boot-behemoth-botnet/#comments</comments>
		<pubDate>Thu, 13 Aug 2009 00:18:00 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
				<category><![CDATA[malware]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/?p=261</guid>
		<description><![CDATA[I&#8217;m looking forward to finding out the results of this research! [Sandia's] Thunderbird supercomputer will periodically run a million virtual machines all at once, all with botnet client software. By setting this large network of systems into operation, the researchers, Ron Minnich and Don Rudish, hope to better understand how botnets operate. It&#8217;s a cool [...]]]></description>
		<wfw:commentRss>http://eugk.net/wordpress/2009/08/12/sandia-to-boot-behemoth-botnet/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>First Mac OS X botnet activated</title>
		<link>http://eugk.net/wordpress/2009/04/20/first-mac-os-x-botnet-activated-business-macworld-uk/</link>
		<comments>http://eugk.net/wordpress/2009/04/20/first-mac-os-x-botnet-activated-business-macworld-uk/#comments</comments>
		<pubDate>Mon, 20 Apr 2009 21:04:39 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
				<category><![CDATA[apple]]></category>
		<category><![CDATA[malware]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/?p=245</guid>
		<description><![CDATA[Macworld reported in January that illegal copies of iWork &#8217;09 and Photoshop CS4 – distributed via peer-to-peer networks – were infected with a trojan called iServices. It now appears that the botnet created from this trojan has been activated, marking this the first time a Mac OS X botnet has appeared. A sign of things to come? [...]]]></description>
		<wfw:commentRss>http://eugk.net/wordpress/2009/04/20/first-mac-os-x-botnet-activated-business-macworld-uk/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The end of the world and Conficker.C</title>
		<link>http://eugk.net/wordpress/2009/03/28/the-end-of-the-world-and-confickerc/</link>
		<comments>http://eugk.net/wordpress/2009/03/28/the-end-of-the-world-and-confickerc/#comments</comments>
		<pubDate>Sat, 28 Mar 2009 11:23:29 +0000</pubDate>
		<dc:creator>eugenekogan</dc:creator>
				<category><![CDATA[malware]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://eugk.net/wordpress/?p=240</guid>
		<description><![CDATA[There is way too much hype about Conficker.C and what it may or may not do on April 1. I&#8217;m not sure who is feeding the media, which is fueling the hype, but it&#8217;s very counterproductive. There are worse threats out there than this one botnet, and focusing all of our attention on Conficker is [...]]]></description>
		<wfw:commentRss>http://eugk.net/wordpress/2009/03/28/the-end-of-the-world-and-confickerc/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
