ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Next-gen viruses need next-gen responses

Leader ZDNet.co.uk

Published: 21 Mar 2005 13:35 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Evolution is a powerful idea. It predicts that as an environment changes, the organism that best adapts will be the most successful. This should be warning enough to malware security software writers to stay alert — and already, the next generation of hostile software is proving more intelligent than the last.

There have been no major Slammer-type global outbreaks of rapidly spreading, destructive viruses since last May, but that's no cause for celebration. With big money behind them, the virus writers are turning to new and more subtle ideas and are learning to evade removal. This matches what parasitologists have long known: successful parasites do not kill their hosts. But they can do a great deal of harm.

Researchers say that small-scale deployments of extremely stealthy viruses are regularly observed, infecting a thousand or so computers — not enough to justify the time of the overworked signature writers at the major software companies, but enough to harvest plenty of passwords and other personal information.

That level of penetration is also enough to test the limits of other kinds of malware detectors, such as heuristic software that tries to stop malevolent code by analysing what it does rather than what it is. Each unstopped virus produces valuable information for use in the next, even better variant — and with each new one, the advantage slips more to the attackers.

There are many other problems in malware security. Why do we need to run two or three or four separate products — often inclined to fight one another — just to be confident of protection? Every major IT company with a security lab has interesting and potentially vital new ideas, but sees them primarily as profit opportunities. This is not wise.

We must be better evolved. Researchers must co-operate more, so that resources can be used to track down and eliminate even the craftiest slow burner of a virus. Microsoft may care to reflect on its role and responsibilities here. There is a good case for splitting up research and commercialisation too, with malware information made as widely available as possible. Where is the open XML standard for virus description?

Treating malware as a commercial opportunity is short sighted and dangerous. It is primarily a matter of public IT health. Our experiences in biology should inform our decisions in technology: there'll be plenty of chances to make money, even with openness and cooperation. We can evolve to do this, but we have to stay alive first.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Kyocera

Did you find this article useful?
29 out of 57 people found this useful


Full Talkback thread

1 comment

  1. If the virus writers win this round, they haven't... Andy Dale

Company/Topic Alerts

Create a new alert from the list below:





Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Facebook Bans Firefox 3

Ok this is the issue. Because I dared to try and access facebook with firefox 3, and all the cookies disabled, it won't let me back on there with firefox ever again, even though... More

1 comment

GoDaddy suspends travel-getaways.com d...

I'm very pleased to say that GoDaddy has suspended the travel-getaways.com domain. I blogged in June that to my surprise I had found I was the site administrator for travel-getaways.com,... More

1 comment

Hello, I知 a PC. I知 a Handheld.

Hello, I知 a PC. I知 a Handheld. Author: Eric Everson, Founder MyMobiSafe.com I have said it before and I am sure I値l say it again, mobile devices are simply replacing computers.... More

Post a comment