Posts Tagged ‘Malware’

Malware developers continuing to innovate

August 16th, 2010

IT outsourcing providers in London have been warned that newer and more sophisticated viruses are continuing to emerge.

Greg Day, director of security at McAfee, noted that many unscrupulous individuals are attempting to profit from malicious software, meaning the risk level remains high around the world.

He claimed that malware and other internet code is now being used to support cyber war and terrorism campaigns.

“There is unfortunately a very strong interest to keep developing new sophisticated techniques to be successful,” Mr Day said.

He explained that businesses and consumers are increasingly reliant upon technology, and this is creating new problems.

“Four or five years ago, Facebook didn’t exist, the iPhone didn’t exist. As technology becomes more advanced, that inherently creates new opportunities,” Mr Day added.

In related news, research firm Gartner has forecast an 11.3 per cent rise in the size of the global IT security market during 2010.

Source:http://www.ihotdesk.com/article/800026616/Malware-developers-continuing-to-innovate

Share and Enjoy:
  • Twitter
  • FriendFeed
  • LinkedIn
  • Google Bookmarks
  • Facebook
  • MySpace
  • Digg
  • del.icio.us
  • Sphinn
  • Mixx
  • Blogplay
  • Yahoo! Buzz
  • Live
  • Posterous
  • Technorati
  • Add to favorites
  • RSS
  • email
  • Print
  • Tumblr
  • Identi.ca
  • Hyves
  • IndianPad
  • Yahoo! Bookmarks

Dell revamps hardware testing in wake of malware issue

July 23rd, 2010

A sequence of errors led to Dell’s delivery of motherboards with malware and the company is in the process of overhauling its testing process to resolve issues before dispatching hardware to customers, it said on Thursday.

Dell on Wednesday said that some replacement motherboards for PowerEdge servers may have contained the W32.Spybot worm in flash storage. The malware issue affected a limited number of replacement motherboards in four servers, the PowerEdge R310, PowerEdge R410, PowerEdge R510 and PowerEdge T410 models, the company said.

“There was a sequence of human errors that led to the issue, That being said, we have identified and implemented 16 additional process steps to make sure this doesn’t happen again,” said Dell spokesman Jim Hahn.

Hahn did not provide additional details on the steps being added to track and resolve such issues. But he said that all affected motherboards had been removed from the service supply chain. Current antivirus software with updated signatures would flag the malware’s presence and users would have to be running an unpatched version of Windows 2008 or an earlier version of the OS.

A Dell quality management specialist wrote in an e-mail that the code was accidentally introduced during the manufacturing process of the server motherboards. The code was detected on the embedded server management firmware during internal testing by Dell.

Motherboards come with flash storage — typically NOR flash — that stores the BIOS, which provides the instructions to boot the system, said Gregory Wong, president of Forward Insights. Flash is a nonvolatile form of memory that can retain data even after a computer is shut down.

Flash on motherboards are susceptible to the same kind of malware infections that USB flash devices are prone to, said Simha Sethumadhavan, assistant professor of computer science at Columbia University. This incident shows how hardware, either flash or a processor, if hacked, can be used as a way to transmit malware.

“All software runs on hardware. If the processor is hacked then it can subvert all software countermeasures. Since hardware is the root of trust, attacks on hardware are potentially more dangerous,” Sethumadhavan said.

Motherboards also could have solid-state drive units for data storage, said Jim Handy, director at Objective Analysis, a semiconductor research company. But instructions to start a system originate from a NOR flash chip, which would also imply that the malware is “pretty small,” Handy said.

“This flash is the one that holds your BIOS and it can be updated online. If proper security precautions are not in place, the flash chip is every bit as capable of containing a piece of malware as is the hard-disk drive,” Handy said.

Columbia’s Computer Science Department uses Dell PowerEdge R410, but was not affected by the issue, said Daisy Nguyen, IT director for the computer science department at Columbia University. Nguyen said Dell offers competent products and the malware issue won’t affect the department’s decision to purchase products from the company.

“Dell immediately admitted to the problem,” Nguyen said. The company also moved quickly to resolve the issue, she said.

Nguyen said that Dell has agreed to try and send some samples of the motherboards with malware so the university can research the issue as part of an investigation into securing hardware systems.

Source:-http://www.pcworld.com/article/201692/dell_revamps_hardware_testing_in_wake_of_malware_issue.html

Share and Enjoy:
  • Twitter
  • FriendFeed
  • LinkedIn
  • Google Bookmarks
  • Facebook
  • MySpace
  • Digg
  • del.icio.us
  • Sphinn
  • Mixx
  • Blogplay
  • Yahoo! Buzz
  • Live
  • Posterous
  • Technorati
  • Add to favorites
  • RSS
  • email
  • Print
  • Tumblr
  • Identi.ca
  • Hyves
  • IndianPad
  • Yahoo! Bookmarks

Trojans remain most common e-threat, report shows

February 6th, 2010

The new Sunbelt Software monthly malware report shows that trojans remain the most common e-threat facing IT outsourcing customers.

According to the study, many of December’s malware threats are featured in January’s rankings, with Trojan.Win32.Generic!BT, the generic detection for trojans, retaining the top spot for the third successive month.

Trojan-Spy.Win32.Zbot.gen, Exploit.PDF-JS.Gen, Trojan.Win32.Malware and INF.Autorun were other pieces of malware which have threatened IT outsourcing users over December.

Michael St Neitzel, vice president of threat research at Sunbelt Software, predicted trojans will remain the most common type of malware of the foreseeable future.

“Trojans used to download and install a wide variety of other malware and those are the real moneymakers for the bad guys,” he explained.

Recently, Javier Merchan, a spokesman for Panda Security, said the number of malware threats is likely to grow “exponentially” in the next 12 months.

Source:http://www.ihotdesk.com/article/19600507/Trojans-remain-most-common-e-threat,-report-shows

Share and Enjoy:
  • Twitter
  • FriendFeed
  • LinkedIn
  • Google Bookmarks
  • Facebook
  • MySpace
  • Digg
  • del.icio.us
  • Sphinn
  • Mixx
  • Blogplay
  • Yahoo! Buzz
  • Live
  • Posterous
  • Technorati
  • Add to favorites
  • RSS
  • email
  • Print
  • Tumblr
  • Identi.ca
  • Hyves
  • IndianPad
  • Yahoo! Bookmarks
Get Adobe Flash playerPlugin by wpburn.com wordpress themes