x
ravager
"Abandon all hope, ye who enter..." -Welcome sign above the City of Dis. "Kaos is my son."- Ravager
 
Conficker Worm Family: 1 million infections per day
A new virus is spreading like wildfire, using weaknesses in Windows to dig deep into the system architecture and set up defenses against detection and extraction.

    A nasty worm has wriggled into millions of computers and continues to spread, leaving security experts wondering whether the attack is a harbinger of evil deeds to come.

US software protection firm F-Secure says a computer worm known as "Conficker" or "Downadup" had infected more than nine million computers by Tuesday and was spreading at a rate of one million machines daily.

    The malicious software had yet to do any noticeable damage, prompting debate as to whether it is impotent, waiting to detonate, or a test run by cybercriminals intent on profiting from the weakness in the future. ...

    The worm, a self-replicating program, takes advantage of networks or computers that haven't kept up to date with security patches for Windows RPC Server Service.

It can infect machines from the Internet or by hiding on USB memory sticks carrying data from one computer to another. Once in a computer it digs deep, setting up defenses that make it hard to extract.

    Malware could be triggered to steal data or turn control of infected computers over to hackers amassing "zombie" machines into "botnet" armies.

"Here we are with a big, big outbreak and they keep revamping their methodology to increase the size of it," Perry said. "They could be growing this huge botnet to slice it up and sell it on the criminal market."

Microsoft says it is aware of the Conficker "worm family" and has modified its free to detect and get rid of infections. ...

    A troubling aspect of Conficker is that it harnesses computing power of a botnet to crack passwords.

    Repeated "guesses" at passwords by a botnet have caused some computer users to be locked out of files or machines that automatically disable access after certain numbers of failed tries.

    "Downadup uses brute force from the infected network of botnets to break the password of the machine being attacked," Perry said. "That is something never seen before and I find it disturbing."

    Perry urges people to harden passwords by mixing in numbers, punctuation marks, and upper-case letters. Doing so makes it millions of times harder for passwords to be deduced, according to Perry.

    "This is necessary in a world where malware hacks passwords," Perry said.

"Go get a notebook, keep it next to your computer and record your password in it. No hacker in the world can hack the written page locked away in your office."




Ah, the power of the machine, reduced to "the best defense is a notebook by your computer."
 
Calendar

January 2012
1234567
891011121314
15161718192021
22232425262728
293031

October 2011
1
2345678
9101112131415
16171819202122
23242526272829
3031

May 2011
1234567
891011121314
15161718192021
22232425262728
293031


Older

Friends

This Post is Probably T.M.I. but. . .
- Goodbye ample levels of estrogen. One of the tell-tale signs I'm...
...
The Thrill is Gone (long ranting)
- The Director of Children's Ministries (my supervisor) felt like she...
...
Ideas for Hum200 exam
- Question ideas for exam Breaking down words – intertextuality, monomyth,...
...