News Register Control Panel Private Messages Members List Team Search News Posts About Us

Linux Advisory » Community » News » Hackers push new software for attacks » Hello Guest [login|register]
Last Post | First Unread Post Print Page | Recommend to Friend | Add Thread to Favorites
Post New Thread Post Reply
Author
Post « Previous Thread | Next Thread »
kaplish kaplish is a Male
Triple As




Registration Date: 07-25-2003
Posts: 189
Location: India
Linux Distro: Linux Red hat

Rating:
6 Votes - Average Rating: 7.00

Level: 19 [?]
Experience Points: 18.697
Next Level: 22.851
4.154 point(s) of experience needed for next level

ONLINE

Hackers push new software for attacks Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

The threat from this new vulnerability -- which already has drawn stern warnings from the Homeland Security Department -- is remarkably similar to one that allowed the Blaster virus to infect hundreds of thousands of computers last month.

The discovery gives fresh impetus for tens of millions of Windows users - inside corporations and in their homes - to immediately apply a free repairing patch from Microsoft. Homeland Security officials have warned that attacks could result in a "significant impact" on the operation of the Internet.

Distributed by Chinese site
Researchers from iDefense Inc. of Reston, Virginia, who found the new attack software being distributed from a Chinese Web site, said it was already being used to break into vulnerable computers and implant eavesdropping programs. They said they expect widespread attacks similar to the Blaster infection within days.

"It's fairly likely," said Ken Dunham, a senior iDefense analyst. "Certainly we'll see new variants in the next few hours or days."

Microsoft confirmed it was studying the new attack tool.

Last month's Blaster infection spread just days after hackers began distributing tools for breaking into Windows computers using a related software flaw. That infection disrupted computers at the Federal Reserve in Atlanta , Maryland's motor vehicle agency and the Minnesota transportation department.

Downloading the patch
The latest Windows flaws, announced September 10, were nearly identical to those exploited by the Blaster worm. Computer users who applied an earlier patch in July to protect themselves still must install the new patch from Microsoft, available from its Web site.

Amy Carroll, a director in Microsoft's security business unit, said 63 percent more people have already downloaded the latest patch than downloaded the patch for last month's similar vulnerability during the same five-day period.

Modifications possible
The latest hacker tool was relatively polished. It gives hackers access to victims' computers by creating a new account with the name "e" with a preset password. iDefense said the tool includes options to attack two Windows 2000 versions that are commonly used inside corporations.

The tool being distributed Tuesday didn't include an option to break into computers running Microsoft's latest operating systems, such as Windows XP or Windows Server 2003, but iDefense said it expected such modifications to make it more dangerous.

Source:http://click/



09-18-2003 12:49 Homepage of kaplish Search for Posts by kaplish Add kaplish to your Buddy List Add kaplish to your Contact List AIM Screenname: usnipun YIM Screenname: usnipun
Heather Heather is a Female
Respected Member




Registration Date: 05-21-2003
Posts: 536
Location: Lost City of Zen.
Linux Distro: I'm OS neutral.

Rating:
9 Votes - Average Rating: 3.67

Level: 25 [?]
Experience Points: 87.793
Next Level: 100.000
12.207 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

Nothing new...just Microsoft recieving more bad press...



Utinam logica falsa tuam philosophiam totam suffodiant

09-18-2003 19:56 Send an Email to Heather Search for Posts by Heather Add Heather to your Buddy List
Nitin Nitin is a Male
Contributor


Registration Date: 07-24-2003
Posts: 390
Location: india
Linux Distro: red hat 8.0

Rating:
13 Votes - Average Rating: 6.69

Level: 22 [?]
Experience Points: 39.014
Next Level: 49.025
10.011 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

yup..



Well for me life is very small and one time oppurtunity given to us by allmighty up above there so i want to make most of that so that after my death i keep living in peoples heart Wub

09-19-2003 18:40 Send an Email to Nitin Homepage of Nitin Search for Posts by Nitin Add Nitin to your Buddy List YIM Screenname: smart_ass_8_3
onzeponze onzeponze is a Male
Contributor


Registration Date: 06-17-2003
Posts: 500
Location: India
Linux Distro: Knoppix

Rating:
6 Votes - Average Rating: 3.83

Level: 24 [?]
Experience Points: 68.558
Next Level: 79.247
10.689 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

blaster is really damaging MS's already tarnished reputation

09-20-2003 18:20 Send an Email to onzeponze Search for Posts by onzeponze Add onzeponze to your Buddy List
Heather Heather is a Female
Respected Member




Registration Date: 05-21-2003
Posts: 536
Location: Lost City of Zen.
Linux Distro: I'm OS neutral.

Rating:
9 Votes - Average Rating: 3.67

Level: 25 [?]
Experience Points: 87.793
Next Level: 100.000
12.207 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

quote:
Originally posted by onzeponze
blaster is really damaging MS's already tarnished reputation

I think if morons would upgrade when Microsoft releases the patches, they would be totally secure from this damn worm attack. I think the blame belongs with morons who wait too long to upgrade, not with Microsoft. Microsoft released the patch 3 weeks before worm was made.



Utinam logica falsa tuam philosophiam totam suffodiant

This post has been edited 2 time(s), it was last edited by Heather on 09-20-2003 at 22:29.

09-20-2003 22:29 Send an Email to Heather Search for Posts by Heather Add Heather to your Buddy List
onzeponze onzeponze is a Male
Contributor


Registration Date: 06-17-2003
Posts: 500
Location: India
Linux Distro: Knoppix

Rating:
6 Votes - Average Rating: 3.83

Level: 24 [?]
Experience Points: 68.558
Next Level: 79.247
10.689 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

well, we can blame the media then, for not making enough noise when they should have

09-21-2003 11:43 Send an Email to onzeponze Search for Posts by onzeponze Add onzeponze to your Buddy List
Heather Heather is a Female
Respected Member




Registration Date: 05-21-2003
Posts: 536
Location: Lost City of Zen.
Linux Distro: I'm OS neutral.

Rating:
9 Votes - Average Rating: 3.67

Level: 25 [?]
Experience Points: 87.793
Next Level: 100.000
12.207 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

quote:
Originally posted by onzeponze
well, we can blame the media then, for not making enough noise when they should have

No, you need to blame the morons who didn't upgrade.



Utinam logica falsa tuam philosophiam totam suffodiant

09-24-2003 22:06 Send an Email to Heather Search for Posts by Heather Add Heather to your Buddy List
onzeponze onzeponze is a Male
Contributor


Registration Date: 06-17-2003
Posts: 500
Location: India
Linux Distro: Knoppix

Rating:
6 Votes - Average Rating: 3.83

Level: 24 [?]
Experience Points: 68.558
Next Level: 79.247
10.689 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

no, the media!

09-25-2003 15:05 Send an Email to onzeponze Search for Posts by onzeponze Add onzeponze to your Buddy List
noODle
Administrator




Registration Date: 06-11-2003
Posts: 159

Rating:
4 Votes - Average Rating: 9.00

Level: 19 [?]
Experience Points: 22.692
Next Level: 22.851
159 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

quote:
I think if morons would upgrade when Microsoft releases the patches, they would be totally secure from this damn worm attack. I think the blame belongs with morons who wait too long to upgrade, not with Microsoft. Microsoft released the patch 3 weeks before worm was made.


I partly agree. With highspeed internet access becoming more widespread there should be more responsibility.

However, when you run a large to very large network or use specialised software within your environment, a patch sometimes renders a production environment useless. Therefore sys admins test the microsoft-released patches before applying them to their network.
You cannot blame them, there have been several patches that broke MS's own code, let alone specialised software.

But as far aas the avarage browse chat email mp3 homeuser I think you are correct, they should have there machines patched in time.
I think I read somewhere the microsoft is gonna use an update-pushing system in the future.

Then again there is also the story of 'false update warnings' that we have seen.
Perhaps internet users should get some sort of 'drivers liscence' before they can get access to the net (rofl)



Overhead the albatros hangs motionless upon the air.
All Rights Reversed

09-25-2003 18:02 Send an Email to noODle Homepage of noODle Search for Posts by noODle Add noODle to your Buddy List
Heather Heather is a Female
Respected Member




Registration Date: 05-21-2003
Posts: 536
Location: Lost City of Zen.
Linux Distro: I'm OS neutral.

Rating:
9 Votes - Average Rating: 3.67

Level: 25 [?]
Experience Points: 87.793
Next Level: 100.000
12.207 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

Bah, noODle, they just need to update.



Utinam logica falsa tuam philosophiam totam suffodiant

09-26-2003 01:17 Send an Email to Heather Search for Posts by Heather Add Heather to your Buddy List
noODle
Administrator




Registration Date: 06-11-2003
Posts: 159

Rating:
4 Votes - Average Rating: 9.00

Level: 19 [?]
Experience Points: 22.692
Next Level: 22.851
159 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

Well one advantage when you are running a large to very large network, you have things like perimeters and dmz's. The recent bugs in the RPC implemantation of Microsoft don't affect users behind it, nor do a lot of other vulnarabilities.
There is always the inside threat offcourse.

I agree that home users should keep their systems patched but there are too many ignorant 'I don have nothing to hide' users out there that don't understand the concept of zombies and DoSsing worms and the likes.
Try to explain it to someone who has problems opening his email program.
So I feel with our lives being more and more dependant on these new technologies that the software vendor certain has to take his responsibility.

A couple of days ago a paper was released about this subject (over which an employee of @stake got fired).
It can be found at:
http://www.ccianet.org/papers/cyberinsecurity.pdf



Overhead the albatros hangs motionless upon the air.
All Rights Reversed

09-26-2003 21:54 Send an Email to noODle Homepage of noODle Search for Posts by noODle Add noODle to your Buddy List
Post Reply:
Title (Optional):
Message:


Convert URLs: Automatically converts internet addresses into links by adding [url] and [/url] around them.
Email Notification: Notifies you by email every time there is a new post in this thread.
Deactivate smilies in this post.
Add Signature: Displays your signature in this post.


Tree Structure | Board Structure
Post New Thread Post Reply
Go to:


Powered by Burning Board 2.0.2 © 2001-2002 WoltLab GbR
English Translation by Satelk