I published the following diary on isc.sans.org: “How your pictures may affect your website reputation“.
In a previous diary, I explained why the automatic processing of IOC’s (“Indicator of Compromise”) could lead to false positives. Here is a practical example found yesterday. I captured the following malicious HTML page (MD5: b55a034d8e4eb4504dfce27c3dfc4ac3). It is part of a phishing campaign and tries to lure the victim to provide his/her credentials to get access to an Excel sheet… (Read more)