Articles for the ‘Threat Advisory/Analysis’ Category

DNSChanger Rogue DNS Servers Taken Down

February 6th, 2012

Great info from the Palo Alto Networks Product Management Team on the latest events surrounding DNSChanger. DNSChanger is a malware family that has been around for several years now, and at its height controlled the web browsing of some 4 million PCs.  DNSChanger typically masqueraded as a video codec download, and once downloaded would surreptitiously [...]

Protecting Against the New DLL Attack

August 26th, 2010

Summary Microsoft released a security advisory on Aug 23 that discusses a remote attack vector that allows an attacker to remotely take control of user’s machine. The security advisory was in response to a report released by a security researcher the previous week that described how more than 40 Windows applications could be compromised due [...]

How Palo Alto Network’s Next-Generation Firewalls Protect Against Torpig Attack

August 19th, 2010

In this blog, I talk about how our next-generation firewalls protect against botnets such as Torpig. There are 3 parts to a botnet attack: 1. User visits a website which starts a chain reaction for torpig-infection There are 2 ways in which this can happen: