ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

IM security: The worst is yet to come

Munir Kotadia ZDNet Australia

Published: 19 Apr 2005 15:55 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

The number of instant-messaging (IM) worms is on the rise — but users should expect only a short-lived surge before tech administrators act against IM in their companies, a security expert has claimed.

There have been around 40 different worms or variants spreading via IM applications so far this year, the majority of which have targeted Microsoft's MSN Messenger service. Alexander Gostev, senior virus analyst at Kaspersky Labs, said most of these worms were written in Visual Basic and contain similar source code — a sure sign that script kiddies were most likely responsible.

"VB is one of the easiest programming languages to master, but it's unsuitable for serious projects… The source code for some early IM worms was published on a number of virus writers' sites, and most of the new worms are clearly based on this code," said Gostev. "The evidence currently points to IM worms being the domain of script kiddies."

According to Gostev, IM worms are at a similar state of evolution to worms that spread using peer-to-peer (P2P) applications three years ago, which means in the short term a significant increase in the amount of malware targeting IM applications should be expected.

"Between 2002 and 2004, when P2P worms first appeared, they were also mostly written in VB and targeted one P2P client, Kazaa, the most popular client at the time… As P2P-worms were simple to create, and spread rapidly, several hundred families appeared, with numerous versions in each. The increase in this type of malware reached its peak in 2003, with more than 10 new versions being detected every week," said Gostev.

Gostev said that the rate at which P2P worms were evolving slowed rapidly in 2004, which is how he also expects the IM worm 'lifecycle' to unfold.

"The rapid evolution of P2P worms slowed dramatically in 2004 and they currently comprise an insignificant percentage of contemporary malware. It seems likely that IM worms will have the same life cycle," said Gostev.

As administrators realised the dangers of P2P applications and restricted or denied access to those services, they became less of a problem, which is what will have to happen if IM attacks are to be contained.

"System administrators and security managers should be focusing their attention on the potential threat which IM applications represent. One option would be to forbid the use of IM applications in enterprise settings until security improves," said Gostev.

Munir Kotadia reported from Sydney for ZDNet Australia. For more ZDNet Australia stories, click here.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
85 out of 184 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:







Related Jobs

Script Developer. London. 35,000 - 45,000. Java / C Programming

Script Developer Needed. ASAP. London. My client is a market leading developer of trading and risk management systems for some of the worlds premier ...

Java Developer (Senior) Ecommerce, Java, J2EE, EJB, JSP, SQL

Hertfordshire and has offices in US, China and Australia. Java Developer (Senior) eCommerce, Java, J2EE, EJB, JSP, SQL Reports to Project Manager ...

System Administrators/ Unix/ Linux/ TCP/IP/ Scripting/ 24/7/ London

System Administrators/ Unix/ Linux/ TCP/IP/ Scripting/ DNS/ DHCP/ TCP/IP/ 24/7 Are you technology focused? Are you an experienced Linux system ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment