News Register Control Panel Private Messages Members List Team Search News Posts About Us

Linux Advisory » Community » News » Hackers push new software for attacks » Hello Guest [login|register]
Last Post | First Unread Post Print Page | Recommend to Friend | Add Thread to Favorites
Post New Thread Post Reply
Author
Post « Previous Thread | Next Thread »
kaplish kaplish is a Male
Double As




Registration Date: 07-25-2003
Posts: 117
Location: India
Linux Distro: Linux Red hat

Rating:
6 Votes - Average Rating: 7.00

Level: 16 [?]
Experience Points: 9.211
Next Level: 10.000
789 point(s) of experience needed for next level

OFFLINE

Hackers push new software for attacks Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

The threat from this new vulnerability -- which already has drawn stern warnings from the Homeland Security Department -- is remarkably similar to one that allowed the Blaster virus to infect hundreds of thousands of computers last month.

The discovery gives fresh impetus for tens of millions of Windows users - inside corporations and in their homes - to immediately apply a free repairing patch from Microsoft. Homeland Security officials have warned that attacks could result in a "significant impact" on the operation of the Internet.

Distributed by Chinese site
Researchers from iDefense Inc. of Reston, Virginia, who found the new attack software being distributed from a Chinese Web site, said it was already being used to break into vulnerable computers and implant eavesdropping programs. They said they expect widespread attacks similar to the Blaster infection within days.

"It's fairly likely," said Ken Dunham, a senior iDefense analyst. "Certainly we'll see new variants in the next few hours or days."

Microsoft confirmed it was studying the new attack tool.

Last month's Blaster infection spread just days after hackers began distributing tools for breaking into Windows computers using a related software flaw. That infection disrupted computers at the Federal Reserve in Atlanta , Maryland's motor vehicle agency and the Minnesota transportation department.

Downloading the patch
The latest Windows flaws, announced September 10, were nearly identical to those exploited by the Blaster worm. Computer users who applied an earlier patch in July to protect themselves still must install the new patch from Microsoft, available from its Web site.

Amy Carroll, a director in Microsoft's security business unit, said 63 percent more people have already downloaded the latest patch than downloaded the patch for last month's similar vulnerability during the same five-day period.

Modifications possible
The latest hacker tool was relatively polished. It gives hackers access to victims' computers by creating a new account with the name "e" with a preset password. iDefense said the tool includes options to attack two Windows 2000 versions that are commonly used inside corporations.

The tool being distributed Tuesday didn't include an option to break into computers running Microsoft's latest operating systems, such as Windows XP or Windows Server 2003, but iDefense said it expected such modifications to make it more dangerous.

Source:http://click/



09-18-2003 11:49 Homepage of kaplish Search for Posts by kaplish Add kaplish to your Buddy List Add kaplish to your Contact List AIM Screenname: usnipun YIM Screenname: usnipun
Heather Heather is a Female
Lord




Registration Date: 05-21-2003
Posts: 487
Location: Lost City of Zen.
Linux Distro: I'm OS neutral.

Rating:
9 Votes - Average Rating: 3.67

Level: 24 [?]
Experience Points: 69.927
Next Level: 79.247
9.320 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

Nothing new...just Microsoft recieving more bad press...



Utinam logica falsa tuam philosophiam totam suffodiant

09-18-2003 18:56 Send an Email to Heather Search for Posts by Heather Add Heather to your Buddy List
Nitin Nitin is a Male
Contributor


Registration Date: 07-24-2003
Posts: 351
Location: india
Linux Distro: red hat 8.0

Rating:
13 Votes - Average Rating: 6.69

Level: 20 [?]
Experience Points: 28.020
Next Level: 29.658
1.638 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

yup..



Well for me life is very small and one time oppurtunity given to us by allmighty up above there so i want to make most of that so that after my death i keep living in peoples heart Wub

09-19-2003 17:40 Send an Email to Nitin Homepage of Nitin Search for Posts by Nitin Add Nitin to your Buddy List YIM Screenname: smart_ass_8_3
onzeponze onzeponze is a Male
Lord


Registration Date: 06-17-2003
Posts: 319
Location: India
Linux Distro: Knoppix

Rating:
5 Votes - Average Rating: 2.60

Level: 21 [?]
Experience Points: 37.294
Next Level: 38.246
952 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

blaster is really damaging MS's already tarnished reputation

09-20-2003 17:20 Send an Email to onzeponze Search for Posts by onzeponze Add onzeponze to your Buddy List
Heather Heather is a Female
Lord




Registration Date: 05-21-2003
Posts: 487
Location: Lost City of Zen.
Linux Distro: I'm OS neutral.

Rating:
9 Votes - Average Rating: 3.67

Level: 24 [?]
Experience Points: 69.927
Next Level: 79.247
9.320 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

quote:
Originally posted by onzeponze
blaster is really damaging MS's already tarnished reputation

I think if morons would upgrade when Microsoft releases the patches, they would be totally secure from this damn worm attack. I think the blame belongs with morons who wait too long to upgrade, not with Microsoft. Microsoft released the patch 3 weeks before worm was made.



Utinam logica falsa tuam philosophiam totam suffodiant

This post has been edited 2 time(s), it was last edited by Heather on 09-20-2003 at 21:29.

09-20-2003 21:29 Send an Email to Heather Search for Posts by Heather Add Heather to your Buddy List
onzeponze onzeponze is a Male
Lord


Registration Date: 06-17-2003
Posts: 319
Location: India
Linux Distro: Knoppix

Rating:
5 Votes - Average Rating: 2.60

Level: 21 [?]
Experience Points: 37.294
Next Level: 38.246
952 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

well, we can blame the media then, for not making enough noise when they should have

09-21-2003 10:43 Send an Email to onzeponze Search for Posts by onzeponze Add onzeponze to your Buddy List
Heather Heather is a Female
Lord




Registration Date: 05-21-2003
Posts: 487
Location: Lost City of Zen.
Linux Distro: I'm OS neutral.

Rating:
9 Votes - Average Rating: 3.67

Level: 24 [?]
Experience Points: 69.927
Next Level: 79.247
9.320 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

quote:
Originally posted by onzeponze
well, we can blame the media then, for not making enough noise when they should have

No, you need to blame the morons who didn't upgrade.



Utinam logica falsa tuam philosophiam totam suffodiant

09-24-2003 21:06 Send an Email to Heather Search for Posts by Heather Add Heather to your Buddy List
onzeponze onzeponze is a Male
Lord


Registration Date: 06-17-2003
Posts: 319
Location: India
Linux Distro: Knoppix

Rating:
5 Votes - Average Rating: 2.60

Level: 21 [?]
Experience Points: 37.294
Next Level: 38.246
952 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

no, the media!

09-25-2003 14:05 Send an Email to onzeponze Search for Posts by onzeponze Add onzeponze to your Buddy List
noODle
Administrator




Registration Date: 06-11-2003
Posts: 137

Rating:
4 Votes - Average Rating: 9.00

Level: 18 [?]
Experience Points: 16.785
Next Level: 17.484
699 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

quote:
I think if morons would upgrade when Microsoft releases the patches, they would be totally secure from this damn worm attack. I think the blame belongs with morons who wait too long to upgrade, not with Microsoft. Microsoft released the patch 3 weeks before worm was made.


I partly agree. With highspeed internet access becoming more widespread there should be more responsibility.

However, when you run a large to very large network or use specialised software within your environment, a patch sometimes renders a production environment useless. Therefore sys admins test the microsoft-released patches before applying them to their network.
You cannot blame them, there have been several patches that broke MS's own code, let alone specialised software.

But as far aas the avarage browse chat email mp3 homeuser I think you are correct, they should have there machines patched in time.
I think I read somewhere the microsoft is gonna use an update-pushing system in the future.

Then again there is also the story of 'false update warnings' that we have seen.
Perhaps internet users should get some sort of 'drivers liscence' before they can get access to the net (rofl)



Overhead the albatros hangs motionless upon the air.

09-25-2003 17:02 Send an Email to noODle Homepage of noODle Search for Posts by noODle Add noODle to your Buddy List
Heather Heather is a Female
Lord




Registration Date: 05-21-2003
Posts: 487
Location: Lost City of Zen.
Linux Distro: I'm OS neutral.

Rating:
9 Votes - Average Rating: 3.67

Level: 24 [?]
Experience Points: 69.927
Next Level: 79.247
9.320 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

Bah, noODle, they just need to update.



Utinam logica falsa tuam philosophiam totam suffodiant

09-26-2003 00:17 Send an Email to Heather Search for Posts by Heather Add Heather to your Buddy List
noODle
Administrator




Registration Date: 06-11-2003
Posts: 137

Rating:
4 Votes - Average Rating: 9.00

Level: 18 [?]
Experience Points: 16.785
Next Level: 17.484
699 point(s) of experience needed for next level

OFFLINE

Post Reply with Quote Edit/Delete Post Report Post to a Moderator       IP Information

Well one advantage when you are running a large to very large network, you have things like perimeters and dmz's. The recent bugs in the RPC implemantation of Microsoft don't affect users behind it, nor do a lot of other vulnarabilities.
There is always the inside threat offcourse.

I agree that home users should keep their systems patched but there are too many ignorant 'I don have nothing to hide' users out there that don't understand the concept of zombies and DoSsing worms and the likes.
Try to explain it to someone who has problems opening his email program.
So I feel with our lives being more and more dependant on these new technologies that the software vendor certain has to take his responsibility.

A couple of days ago a paper was released about this subject (over which an employee of @stake got fired).
It can be found at:
http://www.ccianet.org/papers/cyberinsecurity.pdf



Overhead the albatros hangs motionless upon the air.

09-26-2003 20:54 Send an Email to noODle Homepage of noODle Search for Posts by noODle Add noODle to your Buddy List
Post Reply:
Title (Optional):
Message:


Convert URLs: Automatically converts internet addresses into links by adding [url] and [/url] around them.
Email Notification: Notifies you by email every time there is a new post in this thread.
Deactivate smilies in this post.
Add Signature: Displays your signature in this post.


Tree Structure | Board Structure
Post New Thread Post Reply
Go to:


Powered by Burning Board 2.0.2 © 2001-2002 WoltLab GbR
English Translation by Satelk