Thursday, August 27, 2009 8:14 AM cmosby

Malicious CD ROMs mailed to banks – SANS Internet Storm Center

Malicious CD ROMs mailed to banks

Published: 2009-08-26,
Last Updated: 2009-08-26 22:16:01 UTC
by Johannes Ullrich (Version: 1)

1 comment(s) Facebookacebook witter

The National Credit Union Administration (NCUA) published an interesting advisory here:

http://www.ncua.gov/news/press_releases/2009/MR09-0825a.htm

Member credit unions evidently are reporting receiving letters which include two CDs. The letters claim to originate form the NCUA and advertises the CDs as training materials. However, it appears that the letter is a fake and the CDs include malware.

We have not heard about this scheme affecting any other targets, but please let us know if you see something like this. Malware delivery via USPS has certainly been suggested before.

------
Johannes B. Ullrich, Ph.D.
SANS Technology Institute
Twitter

Filed under: , , ,

Comments

No Comments