BYTE.com
RSS feed

Newsletter
Free E-mail Newsletter from BYTE.com
Email Address
First Name
Last Name




 
    
             
BYTE.com > Chaos Manor > 2003

Good Security

By Jerry Pournelle

September 22, 2003

(Good Security :  Page 1 of 1 )



Column 278 (Continued from the Previous Week)

Worm Work

Worms generally work this way: Once a computer has been infected by one of these evil programs, the worm uses the infected computer to search for ways to reproduce itself. It does this by causing the infected computer to send out signals looking for other computers to infect. It will send these out by the thousands and tens of thousands, and eventually it will find a machine vulnerable to its attentions. It then infects that machine, and that machine begins to send out probes.

The infection process exploits various defects in the computer's operating system. Microsoft and other OS publishers look for these vulnerabilities and hope to find them before someone else does. Often they succeed and send out the fix before the worm—or virus—can be released into the wild. In the case of the Blaster and Nachi worms that made the rounds in August, the remedy for the Windows defect had been known and circulated for several weeks (see http://www.microsoft.com/security/antivirus/nachi.asp for more details; Cisco has instructions for blocking some of the side-effects using their routers at http://www.cisco.com/warp/public/707/advisory.html), but many computers—including all the Navy computers in the Pentagon—hadn't had the fix applied, and were not only infected but began to infect other machines.

SoBig.F would send out virus replicates whether or not your system was running Outlook. You had to pull the network cord to stop it. As Brian Bilbrey puts it, friends don't let friends click on attachments…

As a result, many of the government's computers and many, many others owned by both individuals and businesses large and small were infected: The worm was known, the remedy was known, but the government's computer experts—consultants in many cases—either couldn't be bothered or just hadn't got around to applying the fix.

 Page 1 of 1 


BYTE.com > Chaos Manor > 2003
Dr. Dobb's Media Center
BYTE.com Store

BYTE CD-ROM
NOW, on one CD-ROM, you can instantly access more than 8 years of BYTE.
 
The Best of BYTE: Volume 2 - Heuristic Algorithms
The Best of BYTE: Volume 2 - Heuristic Algorithms
In this volume of Best of BYTE, we explore the emergence of some heuristic algorithms. Although we have only scratched the surface of this intriguing subject, we hope we've suggested the potential of the synthesis of heuristics and algorithms.

© 2008 Think Services, Privacy Policy, Terms of Service, United Business Media Limited
Site comments: webmaster@byte.com
Web Sites: BYTE.com, dotnetjunkies.com, Dr. Dobb's Journal, SD Expo, Sys Admin, sqljunkies.com, Unixreview



MarketPlace
Try Numara FootPrints 9, The ITSM software that Delivers Real Value, Flexibility and Results.
Sign Up & Get Full Access To The Definitive Online Book Collection With SkillSoft's Books24x7�.
Fast online exception analysis. Capture customer crash data online.
One Stop to Buy All Your Business IT Solutions. Browse Through Dell's Best Deals Online Now!
Understand C/C++ code in less time. A new team member ? Inherited legacy code ? Get up to speed faster with Crystal Flow for C/C++. Code-formatting improves readability. Flowcharts are integrated with code browser. Export flowcharts to Visio.
Wanna see your ad here?
 

web2