RotoGuru Computer Forum

View the Forum Registry

XML Get RSS Feed for this thread


Self-edit this thread


0 Subject: New Worm Targets AOL Instant Messenger

Posted by: Ref
- Donor [539581218] Tue, Nov 01, 2005, 11:57

A dangerous new worm is spreading through the AOL (NYSE: AOL - news) Instant Messenger (AIM) network. Identified by security experts, it provides hackers with an opening for installing all kinds of malware on compromised PCs.

The W32/Sdbot-ADD worm is particularly nasty because it includes what is called a "rootkit," which is software designed to go to the root of an operating system, circumventing virus protection and firewall software.

When a machine is compromised with such software, it gives hackers the ability to execute remote commands and install anything they want on the vulnerable PC.

Complete Story
1Tosh
      Leader
      ID: 057721710
      Wed, Dec 14, 2005, 20:45
Attack of the Chatty Worm

Dec. 14, 2005 — There's a new worm making its way around America Online that has opened a new front in the war to keep hackers from invading, disturbing and destroying personal computers.

It's an Internet worm attacking users of AOL's instant messaging software, sending unsuspecting users a message encouraging them to click on a link.

"What we continually say to users is 'don't ever click on a link you receive in an IM without asking the sender what it is and why they're sending it to you,'" said Krista Thomas, a spokeswoman for AOL.

But in this case, even if users followed protocol and asked the right questions, the worm would actually answer back, marking a new strategy and evidence that so-called black hat or malicious hackers are creative and innovative as well as possibly dangerous.

Attack of the Chatty Worm

According to Art Gilliland, vice president of IMLogic, who discovered the threat, the scary thing about this worm isn't just that it launches its attack via instant messenger software, but that it acts in a surreptitious way to fool the user into doing something they know they're not supposed to do.

"One of the things people were doing to protect themselves while using IM [instant messenger] was, if they were sent a link, to ask questions," he said. "The virus writers are getting more and more sophisticated, they're learning how we're stopping them so they're coming up with new ways to get in."

Knowing that instant messenger users would likely question the validity of a link sent to them from someone they don't know, the hacker who wrote the virus, included a way to trick them into believing they had been diligent.

Though the worm — dubbed IM.myspace04.AIM — has been dealt with at this point, the infection would simply send out messages to anyone in a victim's buddy list, attempting to infect them and then be sent on to others.

Gilliland said IMLogic and other experts in the Internet security field saw virus writers "testing the waters" last year — sending out messages containing links simply to see how people would react to them.

"It was like a testing phase," he said, "but when they find something that works they put all of their energy into it."
2Mike D
      Leader
      ID: 041831612
      Wed, Dec 14, 2005, 23:29
Great having kids that use IM.
RotoGuru Computer Forum

View the Forum Registry

XML Get RSS Feed for this thread


Self-edit this thread




Post a reply to this message: (But first, how about checking out this sponsor?)

Name:
Email:
Message:
Click here to create and insert a link
Ignore line feeds? no (typical)   yes (for HTML table input)


Viewing statistics for this thread
Period# Views# Users
Last hour11
Last 24 hours22
Last 7 days33
Last 30 days66
Since Mar 1, 20071030442