Waledac spammers fake ‘bomb blast’ news story
Malware authors use geolocation technology to make the attack more convincing and persuade users to click on malicious links.

Security vendors have warned about a new social engineering attack that delivers fake news stories linking to malware.
The new attack tries to persuade users to watch a maliciously crafted fake Reuters video of a bomb attack' by downloading a version of Flash player, which is in reality malware.
The Waledac trojan had previously targeted users through Valentine's spam in February.
However, this attack appears to be particularly clever, as the malicious websites have been engineered using geolocation technology to report the location of the incident to correspond with the user's IP address. "Don't be fooled by the location. The site is running a couple of clever scripts," said Rik Ferguson of Trend Micro on the company's security blog.
"One of them will detect the location of your IP address and vary the location of the disaster accordingly. The other will vary the name of the downloaded file (news.exe, save.exe, run.exe etc.)"
He said it was further evidence that botnet authors were actively filling the void left behind by the fall of the Storm botnet and the McColo server takedown.
Security vendors Sophos and Websense also reported the attacks.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
-
Bigger salaries, more burnout: Is the CISO role in crisis?
In-depth CISOs are more stressed than ever before – but why is this and what can be done?
By Kate O'Flaherty Published
-
Cheap cyber crime kits can be bought on the dark web for less than $25
News Research from NordVPN shows phishing kits are now widely available on the dark web and via messaging apps like Telegram, and are often selling for less than $25.
By Emma Woollacott Published
-
96% of SMBs are missing critical cybersecurity skills – here's why
News The skills shortage hits SMBs worse as they often suffer from a lack of budget and resources
By George Fitzmaurice Published
-
Sophos Firewall Virtual review: Affordable network protection for those that like it virtualized
Reviews Extreme network security that's cheaper than a hardware appliance and just as easy to deploy
By Dave Mitchell Published
-
MSPs are struggling with cyber security skills shortages
News A shortage of tools and difficulties keeping pace with solutions were also ranked as key issues for MSPs
By George Fitzmaurice Published
-
Nearly 70 software vendors sign up to CISA’s cyber resilience program
News Major software manufacturers pledge to a voluntary framework aimed at boosting cyber resilience of customers across the US
By Solomon Klappholz Published
-
Sophos and Tenable team up to launch new managed risk service
News The new fully managed service aims to help organizations manage and protect external attack surfaces
By Daniel Todd Published
-
Ransomware groups are using media coverage to coerce victims into paying
News Threat actors are starting to see the benefits of a more sophisticated media strategy for extracting ransoms
By Solomon Klappholz Published
-
Shrinking cyber attack “dwell times” highlight growing war of attrition with threat actors
News While teams are becoming more proficient at detecting threats, attackers are augmenting their strategies
By Ross Kelly Published
-
Cyber security in the retail sector
Whitepapers Retailers need to ensure their business operations and internal data aren't breached
By ITPro Published