Malware scam targets RSA tokens

Scammers tell the truth?

A malware scam has been discovered that claims a security vulnerability has been found in RSA's SecurID which was hacked earlier this year.

The scammers purport to deliver messages from RSA that claim that an "unsafe vulnerability" was found in some of its SecurID token devices.

The message contains a link to what is claimed to be a security scanner that would detect this vulnerability.

If opened, the application installed a Zeus torjan variant

“Seemingly the creators of this attack consider the breach of RSA an opportunity to capitalise on perceived and real vulnerabilities that resulted from the hack," AppRiver security researcher Troy Gill said.

"Attackers are forever looking for the perfect angle of attack, one that will make you think that the message is legit."

Meanwhile, it was estimated last week that the RSA incident has cost the company $60 million, according to EMC's recent financial quarterly report.

This article originally appeared at scmagazineuk.com

Copyright © SC Magazine, US edition
Malware scam targets RSA tokens
Company/Organisation
RSA
Technology

What are your thoughts on this article? Add your comment below.

To begin commenting right away, you can log in below or register an account if you don't yet have one. Please read our guidelines on commenting. Offending posts will be removed and your access may be suspended. Abusive or obscene language will not be tolerated. The comments below do not necessarily reflect the views or opinions of SC Magazine, Haymarket Media or its employees.

NOTE: You must be a registered member of SC Magazine to post a comment.

Click here to login | Click here to register
comments powered by Disqus
Sign up to receive SC Magazine email newsletters
   FOLLOW US...
Most Read