4 ms·
In a large portion of these attacks, the attackers are using some form of modified SpyEye/ZeuS botnet source with a pre-loaded 0day (adobe products are the targ
by shayanjm 15y ago
In a large portion of these attacks, the attackers are using some form of modified SpyEye/ZeuS botnet source with a pre-loaded 0day (adobe products are the target of choice since they seem to have a vuln discovery a week). Honestly, regardless of how you slice this - with a solid Social-Engineering backend, this is a very difficult problem to deal with/defend against regardless of the securities in place.
However, I will say this: I really do think it's in a company's best interests to dabble in the blackhat security markets a bit as a bystander. You can watch the development of some VERY interesting 0days, botnets, and other such goodies from an in depth perspective. That way, you can protect your mission-critical assets from the latest and greatest vulnerability before it trickles through to vulnerability notifier services.