So says F-Secure in this piece. It's well worth reading.
I have little interest in the pro-Tibet movement, so I'm likely neither to receive one of the targeted emails, nor to click on the contents - but it's educational to find out how these things are done.
The tip comes from my favourite security expert, Bruce Schneier. There's also a lively debate about the possible source of the malware in the comments to the blog post there.
Comments