Sober variant employs latest social engineering technique. A new variant of the Sober worm has surfaced this morning, antivirus specialist F-Secure has warned. Sober D pretends to be a Microsoft software update that protects against a new version of the MyDoom worm. Once activated the worm displays a patch loading screen, but harvests email addresses and mails itself out using its own SMTP engine. The email, written in either English or German, has the headline ‘Microsoft alert: please read!’ The body text adds: ‘New MyDoom virus variant detected – please download this digitally signed attachment.’ Paul Bushen, technical manager at F-Secure UK, told vnunet.com: “The social engineering is good enough to do the job of fooling people. “People are not learning quickly that Microsoft does not send out emails like this. Full Story
About OODA Analyst
OODA is comprised of a unique team of international experts capable of providing advanced intelligence and analysis, strategy and planning support, risk and threat management, training, decision support, crisis response, and security services to global corporations and governments.