ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Jobs
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


Security threats Toolkit

Hidden 'backdoors' worry security firms

Munir Kotadia ZDNet.co.uk

Published: 29 Apr 2004 16:30 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Software "back doors" that can give hackers full control over an infected PC are becoming more difficult to detect because of the sheer number of viruses and worms that can now distribute this type of malware, say security experts.

The Bagle worm, which was first discovered in the middle of January, has so far spawned 26 variants. The worm's archrival Netsky, which was first released in mid-February, is already up to its 28th variant. Both worms' authors have so far evaded capture by authorities, and security researchers have never been under so much pressure to produce and distribute signature files. But the sheer number of variants means that some are inevitably missed

Alex Shipp, a senior antivirus technologist at email-security company MessageLabs, said that one of the dangers of having so many different variants is that many will go undetected and leave users' systems vulnerable.

"If they have a lot of different back doors, virus companies may find the one that is the most popular, but if nobody sends in a sample of a more obscure one, they won't know it's there," he said.

Raimund Genes, president of European operations at antivirus firm Trend Micro, said that because the virus authors seem to have a "commercial interest" in growing their army of zombie computers, secret back doors are inevitable.

"Sooner or later they will start planting back doors that are difficult to detect. They have already hijacked lot of computers -- that is the only way the new variants could pop up so fast," he said.

MessageLab's Shipp said the authors are probably making money by selling malicious services from their army of zombie systems: "They have a whole cache of PCs that they can sell to the highest bidder -- tp spammers or people that want to launch DDoS attacks," he said.

"If you don't have a proper firewall and other security, you could be compromised for quite a long time," Shipp added.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with Konica

Did you find this article useful?
97 out of 209 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:







Sentry Posts Blog

Virtual Teams: Small Business Innovati...

Virtual Teams: Small Business Innovation Author: Eric Everson, Founder – MyMobiSafe.com As the founder of MyMobiSafe.com, I’ve found that because of our presence in the industry... More

Post a comment

Mobile Security and Innovation: An Ope...

Mobile Security and Innovation: An Open Case Author: Eric Everson, Founder MyMobiSafe.com The times are changing in the mobile industry as “big wireless” in the US Markets are calling... More

Post a comment

Government launches new e-crime unit

Ok, so this is outside of my main area of focus of sustainable and green tech but I do track some security issues too. I was at a meeting last week with Microsoft's security advisor... More

Post a comment