An Internet worm unleashed on Saturday impaired key systems in the U.S. government and private sector, delaying operations at one major airline and several media organizations, and knocking banks' cash machines offline. . . .. An Internet worm unleashed on Saturday impaired key systems in the U.S. government and private sector, delaying operations at one major airline and several media organizations, and knocking banks' cash machines offline. At least 160,000 computers worldwide have been infected since the worm debuted early Saturday morning, said Peter Allor, operations director of the Information Technology Information Sharing and Analysis Center. "That's really a conservative estimate," Allor said. "We'll know about the extent of this attack in a few days." The effects of the worm -- known variously as "Sapphire," "Slammer" and "SQ-Hell" -- have diminished in many parts of the world since Saturday. Major Internet service providers were able to block traffic destined for servers running a vulnerable Microsoft Corp. database program called SQL Server 2000. The link for this article located at Security Focus is no longer available. . A web-based malware disrupted essential services, impacting financial institutions and a leading airline on Saturday. Discover additional details regarding the incident.. Internet Worm Outbreak, SQL Server Impact, Cyber Threats. . LinuxSecurity.com Team
Worms are a major threat to the Internet. Their automatic nature makes them powerful and destructive. Using existing and evolving methods of propagation, it is likely that they will become increasingly more powerful. Solutions based on diligent application of patches or . . . . Worms are a major threat to the Internet. Their automatic nature makes them powerful and destructive. Using existing and evolving methods of propagation, it is likely that they will become increasingly more powerful. Solutions based on diligent application of patches or signature-based products are not realistic, as recent experience shows. There is a clear need for active protection systems that prevent exploitation attempts and can deal with unknown attacks, as well as provide protection for all critical software layers, including the OS, APIs and applications. At the same time, malicious code developers have further improved their worm technology, making their engines more powerful and destructive, and demonstrating their effectiveness on multiple occasions, including Code Red and Nimda. The combination of new vulnerabilities and advanced worm technology makes the threat of Internet worms significant and requires an immediate solution. In the following article, we introduce Internet worms, talk about the threat, provide some predictions of future developments, and identify the key features an effective protection system should offer to deal with this threat. The link for this article located at SCMagazine is no longer available. . Viruses pose a significant danger to online environments. Their self-propagating ability gives them immense and harmful capacity.. Internet Worms,Cyber Threats,Malware Protection,Network Security,Active Defense. . Anthony Pell
If Attorney General Ashcroft hadn't talked about this Windows worm on national TV, and received at least ten in my mailbox already, this would probably otherwise belong on an NT security web site, but certainly many of use have heterogeneous networks. Nimbda is Admin backwards... "The worm, known as "W32.Nimda," had affected. . .. If Attorney General Ashcroft hadn't talked about this Windows worm on national TV, and received at least ten in my mailbox already, this would probably otherwise belong on an NT security web site, but certainly many of use have heterogeneous networks. Nimbda is Admin backwards... "The worm, known as "W32.Nimda," had affected "thousands, possibly tens of thousands" of targets by midday Tuesday, according to Vincent Gullotto, head virus fighter at McAfee.com, a software company. Even when the attack isn't successful, the worm's scanning process can slow down the Internet for many users and can have the effect of knocking Web sites or entire company networks offline. The FBI is investigating the worm, said spokeswoman Debbie Weierman. The agency has not indicated whether the worm is connected to last week's terrorism attacks. The link for this article located at CNN is no longer available. . The CIA examines the effects of the B32.Cybervirus on system integrity and user functionality.. Windows Malware, Network Protection, Cyber Threats. . LinuxSecurity.com Team
A new Internet worm designed to attack a common flaw in Unix systems has been confirmed dead, but security experts are warning that the self-propagating worm could be the next Code Red. The X.C worm exploits a newly discovered hole in the telnet service that is run on most Unix systems.. . .. A new Internet worm designed to attack a common flaw in Unix systems has been confirmed dead, but security experts are warning that the self-propagating worm could be the next Code Red. The X.C worm exploits a newly discovered hole in the telnet service that is run on most Unix systems. Antivirus companies are concerned that crackers will have learned from the success of the Code Red worm and its variants, and will be encouraged by the length of time that it takes system administrators to patch machines against publicized vulnerabilities. "This is going to go along the same lines as Code Red, as virus writers will know that a lot of machines will be vulnerable," said Mark Read, systems security analyst for computer security company MIS Corporate Defence Solutions. "This is definitely the way forward with viruses, as it removes the need for humans to double click on attachments in order for the worm to spread, and instead looks for servers that have not been patched." The link for this article located at ZDNet is no longer available. . A fresh web virus aimed at Unix systems has been declared neutralized. Analysts caution about its likelihood of resurfacing akin to the infamous Code Red.. Unix Worm, Telnet Exploit, Internet Security. . LinuxSecurity.com Team
Security firms are warning about a proof-of-concept Internet worm which tries to spread malicious files via the Gnutella peer-to-peer file sharing system. The virus, called Gnutella Mandragore, will connect to the Gnutella network once it affects a users PC and will . . . . Security firms are warning about a proof-of-concept Internet worm which tries to spread malicious files via the Gnutella peer-to-peer file sharing system. The virus, called Gnutella Mandragore, will connect to the Gnutella network once it affects a users PC and will then attempt to offer itself for download when users search for songs or other files to download. For example, if a Gnutella user makes a search for "Britney Spears swearing", the infected node will announce it has available a file called "Britney Spears swearing.exe", 8kB in size. The link for this article located at TheRegister is no longer available. . A warning alerts users of a proof-of-concept worm disseminating harmful files on the Gnutella network. Stay cautious and avoid suspicious downloads to remain safe. Gnutella Network, Internet Worms, Malware Threats, P2P File Sharing. . Anthony Pell
Ramen is an Internet worm, which propagates from a Linux based server to another. It works in a similar way as the Morris Worm that was widespread in 1989. Ramen affects systems running a default installations of Red Hat Linux . . . . Ramen is an Internet worm, which propagates from a Linux based server to another. It works in a similar way as the Morris Worm that was widespread in 1989. Ramen affects systems running a default installations of Red Hat Linux 6.2 and 7.0. It attempts to infect the system by exploiting two know security vulnerabilities. If the worm gets access to the vulnerable host, it will replace the default page of the web server to one that contains the following text: RameN Crew - Hackers looooooooooooove noodles. Here's a pretty good technical description of the worm and it's contents. The link for this article located at F-Secure is no longer available. . Ramen is an Internet worm, which propagates from a Linux based server to another. It works in a simi. ramen, internet, which, propagates, linux, based, server, another, works. . Anthony Pell
An Internet worm cobbled together from generally available hacking tools has compromised hundreds, perhaps thousands, of Linux servers by using two well-known security flaws in applications set up during the default installation of Red Hat Linux software.. . .. An Internet worm cobbled together from generally available hacking tools has compromised hundreds, perhaps thousands, of Linux servers by using two well-known security flaws in applications set up during the default installation of Red Hat Linux software. Known as the Ramen worm, the self-spreading program appears to have been created by common Internet vandals--called script kiddies. As of Wednesday morning, the worm was continuing to spread. The link for this article located at ZDNet is no longer available. . An Internet worm cobbled together from generally available hacking tools has compromised hundreds, p. internet, cobbled, together, generally, hacking, tools, compromised, hundreds. . Anthony Pell
Over year ago, with couple of friends, we started writing a project, called 'Samhain' (days ago, on packetstorm, I noticed cute program with same name - in fact it's not the same app, just a coincidence ;). We wanted to see . . . . Over year ago, with couple of friends, we started writing a project, called 'Samhain' (days ago, on packetstorm, I noticed cute program with same name - in fact it's not the same app, just a coincidence ;). We wanted to see if it's difficult to write deadly harmful Internet worm, probably much more dangerous than Morris's worm. The link for this article located at LinuxNews.pl is no longer available. . Crafting 'Samhain' ignited in cyberspace, driven by ambition and desire for power, as hackers aimed to redefine the digital battlefield without detection. Internet Worm Development, Open Source Malware, Software Engineering. . Anthony Pell
Get the latest Linux and open source security news straight to your inbox.