EditorsAbout the SiteComes vs. MicrosoftUsing This Web SiteSite ArchivesCredibility IndexOOXMLOpenDocumentPatentsNovellNews DigestSite NewsRSS

01.18.09

Microsoft Botnets: The Chaos Continues

Posted in Microsoft, Security, Windows at 6:50 pm by Dr. Roy Schestowitz

Zombie
Fear not the Windows zombies

There are many ways to “Suck at Information Security”, but one easy way is to choose a platform that leads to entire military bases getting cracked.

The British military is one of the very few which choose this tactless route even for nuclear submarines and it costs it dearly.

Virus ‘sends RAF e-mails to Russia’

THE Ministry of Defence is investigating a major breach in security amid claims that all e-mail traffic from a number of RAF stations has been sent to a Russian internet server.

The e-mails were allegedly diverted to the Russian sender by a worm virus that entered the MoD systems 12 days ago bringing down computers and blocking e-mail communications across the military.

The world is already filled with about 320 million Windows PCs that are zombies, so what’s another massive botnet anyway?

New Botnets Replace Vanquished Pests

Although the shutdown of a California Web hosting company eradicated several prominent botnets last year, others have stepped up to fill the gaps, a security researcher says.

Gone from the landscape, said Joe Stewart, director of research at Atlanta-based SecureWorks Inc., are “Srizbi” and “Storm,” the botnets Stewart ranked as No. 1 and No. 5, respectively, in an April 2008 botnet census.

How can anyone combat Windows worms that appear all the time in new forms?

A variant of a malicious worm that targeted Microsoft Windows now is spreading via USB sticks, researchers say.

Security company BitDefender Labs, based in Bucharest, Romania, detected the Windows worm variant in late December. The original worm known as Win32.Worm.Downadup, first made its appearance in late November, exploiting a Microsoft vulnerability in the Windows RPC Server Service. Since then, it has rapidly spread across numerous corporate networks with the aim of distributing malicious software on susceptible computers.

Even an Instant Messaging (IM) program is no longer safe because Microsoft turned simple communication protocols into something that can invoke unknown executables.

Internet MSN users are warned. Some programme writers are now using IM to spread malicious programs such as viruses and worms. These viruses can spread when a person opens an infected file, such as pictures of pornographic nature, that is sent through IM by someone who appears to be a contact.

Why is a program for exchange of text leading to the running of untrusted code? This is an architectural deficiency that would prove costly. Outlook and ActiveX are almost perfect examples and they requires no social engineering to lead to a raft of menaces.

“Our products just aren’t engineered for security.”

Brian Valentine, Microsoft executive

Share this post: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Reddit
  • co.mments
  • DZone
  • email
  • Google Bookmarks
  • LinkedIn
  • NewsVine
  • Print
  • Technorati
  • TwitThis
  • Facebook

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

3 Comments

  1. Needs Sunlight said,

    January 19, 2009 at 9:15 am

    Gravatar

    The recurrence of MSN worms ought to be a warning that it’s past time to switch IM protocols and networks, for those still in the stoneage.

    MSN, live.com, and any other worm site ought to be blocked at the firewall. Same for ports used by MS Messenger.

    XMPP and Jabber are the next-generation chat/messenging protocols. Use them or lose out.

  2. The Mad Hatter said,

    January 19, 2009 at 9:09 pm

    Gravatar

    And of course whenever a worm/virus/security hole is mentioned in the news, they never mention that it’s a Microsoft only problem, and if you point this out to the news media, they don’t take any action. The fact that Microsoft is often one of their major advertisers has nothing to do with this of course.

  3. Roy Schestowitz said,

    January 19, 2009 at 10:07 pm

    Gravatar

    Here’s an E-mail that I received this morning (for sharing):


    Hi, Roy,

    Here’s an example of pro-MSFT spin on headlines. All it takes is one
    bad member on the editorial team and an entire publication can be
    compromised, like here:

    http://www.cnn.com/2009/TECH/ptech/01/16/virus.downadup/index.html?eref=rss_tech” title=”Downadup virus exposes millions of PCs to hijack

    The title is “Downadup virus exposes millions of PCs to hijack”. If we
    stick with the standard usage of the verb “expose” then the correct
    title is “Windows exposes millions of PCs to hijack”


    Had it been a Linux worm, there would probably be a different headline, no? The mythology of Microsoft is that “all computers” are not secure and “Windows is the standard”.

What Else is New


  1. Links 22/5/2013: Debian GNU/Hurd, New Go Language Release

    Links for the day



  2. The FRAND Apple-Microsoft Conspiracy Attempts to Destroy Android/Linux, Ban Imports

    How Microsoft and Apple are using patents in bulk (sometimes acquired in unison, e.g. from Novell and Nortel) to artificially lower market saturation of the Android operating system or drive costs up



  3. Gates Foundation: Buying Influence for Bill's Ego and Bill's Profit

    New examples of power being acquired and investments (i.e. for profit) being funnelled into the beneficiaries



  4. Bill Gates Enters Financial Centres With His Goons Becoming US Budget Chief, Top Bankers

    How Bill Gates' staff is entering positions of financial power, indirectly giving Gates power over US (national and international) finance



  5. IBM Ignores Small Companies' Interests, Denies Patent Scope is a Problem, Focusing on Its Own Problems (Trolls) Instead

    How David Kappos and IBM (his longtime employer) continue to ignore the obvious problem which kills small businesses and everyone is complaining about



  6. The New York Times Publishes Factually-Flawed Patent Propaganda Benefiting Microsoft and Apple

    Eamonn Fingleton is rewriting history in the US' top newspaper, insinuating that patents contributed to the rise of software duopolists



  7. Software Patents Eligibility Likely to be Decided by SCOTUS

    Analyses suggest that an escalation by appeal to SCOTUS is likely to be the next stage in 'Bilski 2.0'



  8. Does Bill Gates Try to Flush GNU/Linux Down the Toilet in Kerala?

    Renting Microsoft software rather than using Free (as in freedom, or libre) software?



  9. Links 21/5/2013: Handbrake Turns 0.9.9, NetBSD 6.1

    Links for the day



  10. Links 20/5/2013: First Salifish Smartphone, Mageia 3 Released

    Links for the day



  11. Microsoft Corruption (Illegal Tenders) Stopped by European Court

    Microsoft cannot bypass public tenders, based on a ruling from a court of law in Europe



  12. Not Satire: Microsoft Wants to Show the World How Security is Done

    Software security 'standard' to be led by the company which made insecurity an acceptable engineering practice?



  13. Microsoft is Struggling to Maintain Industry 'Standards'

    With Microsoft's common carrier and browser share down considerably Microsoft finds itself increasingly irrelevant and it tries subversive means of making another comeback



  14. Microsoft Entryism and Bribery Get the Microsoft Way Implemented

    A recollection of very dirty tactics from Microsoft, which uses money to oppress, overthrow, and even hijack its opposition



  15. Patent Policy Laundering in the European Union and New Zealand

    How the so-called 'free' trade agreements help spread patent policy which favours software patents



  16. Ongoing Focus on Patent Litigation and Patent Trolls Reduces Focus on Software Patents

    The problem with increased focus on the players that use software patents litigiously and the litigation itself



  17. Andrew Y. Schroeder Shows That Patent Lawyers Are Sociopaths

    Bully and law misuser is trying to get his way with foul language, intimidation, and sheer lack of professionalism



  18. IBM-backed Book on 'Open Innovation'

    OpenForum Europe (OFE), which helps IBM's turf wars in Europe, releases a new book filled with its talking point



  19. Joseph E. Stiglitz Criticises the Patent System

    More critical words about the patent system and the way it is harming lives



  20. Senator Schumer Should Focus on Software Patents, Leaving Patent Trolls (Side Effect) Aside

    Reform in the USPTO and the US courts should focus on patent scope and not patent holders



  21. Links 20/5/2013: Plenty of Linux News, Google/Android Announcements

    Links for the day



  22. IRC Proceedings: May 12th, 2013-May 18th, 2013

    IRC logs for May 12th, 2013 (and subsequent days until May 18th, 2013)



  23. Microsoft Spin Regarding Skype Spying Does Not Withstand Scrutiny

    Microsoft's response to allegations that Skype is spying on all users is full of holes



  24. MPEG-LA Ruined the Licence of WebM, Made it Less Freedom-Respecting

    The Microsoft-, Nokia-, and Apple-backed patent troll appears to have ruined the freedom assured by Google's multimedia format, which was previously made free only after public pressure



  25. Microsoft-controlled Nokia is Lobbying to Enable Bans on Android Imports (Linux Phones as a Whole in Danger)

    Nokia is shown lobbying for embargoes while it is also suing -- with limited success -- Android handsets makers



  26. Courtroom and New Book Recognise That Software Patents Correspond to Mathematics and Mathematics Abused in Court

    Important observations about the nature of computer-implemented 'inventions', or software patents



  27. The Reality Distortion Field of Patent Lawyers Helps Impede Abolition of Software Patents

    How widespread coverage and talking points from the tiny minority which is patent lawyers have contributed to biased and at times utterly distorted reporting on the subject of software patents around the world



  28. Eugene Kaspersky Says Patents Harm Innovation

    Some more criticism of the patent system and software patents in particular, courtesy of Eugene Kaspersky



  29. UEFI Restricted Boot Good for Microsoft Agenda, Not for Security

    News and analysis of UEFI 'secure boot' (lockdown), including the new role played by the Microsoft-funded SUSE



  30. Anniversaries

    Sites that deal with patents and with FUD as well as their respective ages


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts