This is a English 70% - Italian 30% Computer Vision Forum (OPENCV). You can use Microsoft translator or any other software as BabelFish, Google to translate the message in your language. Gli italiani che non capiscono alcune cose possono tradurre in italiano con Google translator



From english to any other languages. Gli Italiani possono tradurre le pagine in inglese in italiano.

free website translation
free website translation


From Italian to english and francaise

Il sito è sponsorizzato da :

HOME FORUM

Computer Vision Encyclopaedic Forum
Bernardotti Flavio - Progettazione software ed elettronica. Computer Vision



15100 Alessandria Tel. 3924376614

Many pages are taken from the original sites and all links and copyright are left unchanged ! The download files are present on the original sites.

Flavio Bernardotti | Crea il tuo badge
This is a INTERNATIONAL forum (ENGLISH/ITALIAN). Use the GOOGLE translation utility or Microsoft Live Translation. Make your choice to select the best translator. (Google, Babylon, Microsoft or Babelfish)


ALL SEARCH ENGINES IN ONE PAGE - TUTTI I MOTORI DI RICERCA SPECIALIZZATI IN UNA PAGINA



Se volete fare un offerta per il sito e ricevere inoltre i miei ultimi due libri potete usare il pulsante di PAYPAL qui sotto. Il libro di computer VISION di 1400 pagine. Il secondo è HACKER'S PROGRAMMER BOOK di 2000 pagine. Maggiori info leggetele alla voce LIBRI nella pagina principale. L'offerta è libera.

Progetttazione di sistemi di videosorveglianza intellingenti in italiano di 1.400 pagine 2007 ( esempi )

Hacker's Programming Book di 1.920 pagine 2004 ( esempi )


IMPORTANT !!!!!SEARCH ENGINE FOR THIS FORUM - RICERCHE SUL FORUM
DON'T USE VBulletin SEARCH option !!!!NON USATE L'OPZIONE DI RICERCA DI VBULLETIN !!


Ricerca personalizzata

ATTENZIONE

Il forum non utilizza files collegati ai messaggi ma possiede 15 Gbytes di progetti e sorgenti su 6 servers ESTERNI.
Collegatevi ai seguenti SERVERS e scorrete le varie aree. Troverete praticamente qualsiasi progetto legato ai vari settori della computer vision.


Biometric Forum SHARE SERVERS (projects & documents)

[NEW !!! DOCSTOC] Biometric Forum PDF & DOC server 3
[DIVSHARE] Biometric Forum Download area 1
[ESNIPS] Biometric Forum Download area 2
[ISSUU] Biometric Forum PDF server 1

Biometric Forum SHARE SERVERS (projects & documents)

[TEMPEST] blog sicurezza tempest
[SITO] sito ufficiale con libri, info e altro
[SKYDRIVE] Biometric Forum download area 3
[SCRIBD] Biometric Forum PDF server 2


Torna indietro   OPENCV & COMPUTER VISION FORUM - IT/EN - OpenCV, Computer Vision and HighTech Security > Sicurezza - SEcurity > Firewall FORTINET
Registrazione Blogs FaqDonate Lista utenti Calendario Casino Cerca I messaggi di oggi Segna forums come letti vBExperience

Firewall FORTINET Tutto quello che riguarda i firewall della fortinet

************ ATTENZIONE : FIREFOX NON SCRIVE MESSAGGI ************ Usate Chrome, Netscape, Internet Explorer, Opera
 
 
Strumenti discussione Cerca in questa discussione Modalità visualizzazioe
Vecchio 02-05-2009, 11.58.36   #1
BiometricForumRSS
Sostituto amministratore
 
L'avatar di BiometricForumRSS
 
Data registrazione: 20-05-2007
Messaggi: 327,160
Thanks: 0
Thanked 0 Times in 0 Posts
Predefinito Facebook Worm drives by Google Reader and Picasa (updated)

Since end of July 2008, worms targeting Facebook users have been spotted here and there. The strategy has been simple, yet effective: A malicious message is sent to friends of the infected user, prompting them to visit a page carrying an online video - something utterly common in today's Web 2.0 era. However, should the targeted users follow the link, they would soon find out the video does not start.... unless they install a special codec, as prompted for by the page! As a matter of course, the said codec is nothing else than a Trojan, loading various malware pieces, possibly including a copy of the worm.

Very recently, an interesting bit was added to the attack's social engineering strategy: As can be seen on Figure 1 below, the link in the malicious, rogue message points to Google.


Figure 1: Notice the intentionally apocalyptic spelling of the message's title, which could aim at fooling Facebook filters

Upon clicking it, the targeted user is indeed brought to a Google Reader share, seen on Figure 2 below:


Figure 2: This seems to be more than just a tongue-in-cheek video

Google Reader is a news reader allowing its users to share the news they find interesting with their social network (in buzz words, this is a Web 2.0-enabled news reader), and with the public via their "shares" page. It appears that cyber criminals behind the Facebook worms registered Google Reader accounts (either manually, or automatically via phishing operations or automated CAPTCHA solvers) for the sole purpose of loading them with links to malicious sites. Indeed, upon clicking on the tempting video frame seen in the News Reader on Figure 2, the victim is redirected to a classic fake-codec (W32/Zlob.NKX!tr.dldr), Trojan enabled site:


Figure 3: The lack of definitive articles indicates this is the work of Slavic hackers

This "hop" via a Google Reader share serves an essential purpose: it gives the targeted user the feeling that the video is hosted on Google. Thus it must be safe. Combo that with the "it's a message from a friend" factor, which naturally lowers down users' wariness shields, and you get quite a good chance of seeing your victim perform the dreaded click.

Update (October 29, 2008):

The cyber criminals behind this scheme are now using Google Picasa to lure targeted users, with the URL in the suspect Facebook messages now being:

http://picasaweb.google.com/[removed]/Youtube#52610132498569990

There, the same video screen grab is displayed and users are enticed to follow the link of the caption:


Figure 4: Pro-Tip: You can't open it because it's a Trojan, not because you miss the codecs

After checking, it appears that allowing links in picture captions is really Picasa feature, which could potentially introduce more security threats. Which leads to the question: Is this functionality worth the potential risks if rogue Picasa users post malicious URLs?

Fortinet customers who subscribe to Fortinet’s antivirus and Web content filtering services should be protected against these threats. Fortinet’s antivirus and Web content filtering services are two components of FortiGuard Subscription Services, which also offer comprehensive solutions such as IPS and antispam capabilities. These services enable protection against threats on both application and network layers. FortiGuard Services are continuously updated by the FortiGuard Global Security Research Team, which enables Fortinet to deliver a combination of multi-layered security intelligence and true zero-day protection from new and emerging threats. These updates are delivered to all FortiGate, FortiMail and FortiClient products. Fortinet strictly follows responsible disclosure guidelines to ensure optimum protection during a threat's lifecycle.

Acknowledgement:

Guillaume Lovet of Fortinet's FortiGuard Global Security Research Team



More...


------------------------------------------
It Maint srl - Sicurezza di rete
15100 Alessandria
BiometricForumRSS is offline   Rispondi citando
 


Utenti attualmente attivi che stanno leggendo questa discussione: 1 (0 utenti e 1 ospiti)
 
Strumenti discussione Cerca in questa discussione
Cerca in questa discussione:

Ricerca avanzata
Modalità visualizzazioe
Modalità elencata Modalità elencata

Regole di scrittura
Tu non puoi inserire messaggi
Tu non puoi rispondere ai messaggi
Tu non puoi inviare allegati
Tu non puoi modificare i tuoi messaggi

Il codice vB è Attivato
Le smilies sono Attivato
[IMG] è Attivato
Il codice HTML è Disattivato


Tutti gli orari sono GMT +2. Asesso sono le: 05.52.01.


Basato su: vBulletin Versione 3.6.8
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
(C)opyright 2010 Flavio Bernardotti and the articles writers.
Ad Management by RedTyger


+ + = Locations of visitors to this page = 1.000.000 di visite


SEARCH ENGINE OF THIS FORUM



TO SEARCH ARGUMENTS ON THIS FORUM USE THIS OPTION. DON'T USE THE ORIGINAL SEARCH OPTION OF VBULLETIN.

LINKS UTILI A PORTATA DI MANO
Pagine gialle, treni, programmi TV, videotext, tempo, stradario, antivirus.

PAGINA UTILE - TEMPEST INTERCEPTION - SPACES LIVE MSN
ALL SEARCH ENGINES IN ONE PAGE - I motori di ricerca in una sola pagina

Ricerca programmi con crack
TAGS: opencv, opencv2, opencv2.1, visione artificiale, haarcascade, classificatori, Alessandria, consulenza, consulente, biometric security,forum, comunity forum, developer forum, developer fusion,web developer,risorse web, web, cyberpunk, biometric, hacker, exploit, biometria, face recognition, riconoscimento facciale, object recognition, sicurezza biometrica, portale biometrico, eigenfaces, pca, hacking, sicurezza, impronta, fingerprint, flavio bernardotti, iris recognition, forum biometrico, programmazione, c++, intelligenza artificiale, iris recognition, opencv, computer vision, visione artificiale, programming, advanced programming, programmazione avanzata, matlab, ethical hacking,plate recognition, LPR, ANPR, riconoscimento targhe, analisi traffico, riconoscimento persone, identificazione vetture,opencv
Inactive Reminders By Mished.co.uk