Saturday, August 20, 2005

Plug-and-play bots worming and warring among Windows systems

More than a dozen different worms have been created from the latest Microsoft Windows vulnerability and readily available bot software and have started attacking each other's compromised systems, security experts warned on Wednesday. “ These guys have been pretty desperate for a new exploit for a while. They had been using LSASS for too long, and been scraping the bottom of the barrel for exploits, so now everyone and his mother is now going to use this instead. ”


Joe Stewart, senior threat researcher, Lurhq The worms--which appear to come from three families of code dubbed Zotob, Botzori and IRCBot--started spreading on Sundaywithout much fanfare. However, on Tuesday, computers at CNN and the New York Times became infected by one or more variants of the worm, and the public profile of the programs increased a notch. more »