Advertisement
Promo

Security threats Toolkit

Microsoft Windows Vista

Vista vulnerable to malware from 2004

Tom Espiner ZDNet.co.uk

Published: 30 Nov 2006 13:44 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Microsoft's Vista may be vulnerable to at least three pieces of widespread malware, two of which date back to 2004 , according to security vendor Sophos.

At least three well-known internet worms — labelled Stratio-Zip, Netsky-D and MyDoom-O by Sophos — are able to execute on the OS, according Sophos.

These worms comprise 39.7 percent of all malware currently in circulation, according to the security vendor. The MyDoom and Netsky variants were first detected back in 2004.

Systems running Vista are vulnerable to the malware when running third-party email clients, according to Sophos. Windows Mail Client — the Vista replacement to Outlook — will block the worms, but businesses running third-party email clients such as Lotus Notes, or that permit web-based mail such as Yahoo or Gmail, could be vulnerable.

Sophos decided to test Vista for resistance to common strains of malware after Microsoft co-president Jim Allchin made a comment that he would be happy for his seven-year-old son to use a locked-down version without antivirus.

"The comment about his seven-year-old spurred our idea — let's see if malware runs on Vista," said Carole Theriault, senior security consultant at Sophos. "It does."

"I'm certainly not going to run Vista without antivirus," Theriault added. "And I wouldn't take the risk with my business. Who knows how many more pieces of malware run on it?"

Windows Mail Client will block these mass-mailers, as it detects double extensions. Some mass mailers try to hide their executable payloads behind another extension — for example a text file. Mail Client will notice both the executable and the text file, and prevent the executable from running, in its default setting. However, Mail Client security features do not apply to third-party email clients, which may not block malware adequately.

Although Sophos is recommending that businesses running XP eventually shift to Vista, as XP is less secure, Theriault said that for the time being businesses considering running Vista will still need to take security precautions.

"Vista is excellent, but it hasn't really changed the security landscape," said Theriault. "You still need antivirus, firewalls and patches at least."

Theriault said it was too early to predict the speed and scale of Vista uptake.

"People will listen to what's going on, and make a decision depending on what suits their environment best. It's too early to say," said Theriault.

These are among the first flaws found in the finalised version of Vista. The Vista kernel was hacked by a Polish security researcher at the Black Hat security conference this year, using virtualisation technologies. Security company Symantec also reported flaws in the Vista kernel in August.

Microsoft was approached for comment on this story but no spokesperson was available.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
441 out of 524 people found this useful


More in this Special Report

  • Windows Vista overview

    Video Find out what's new in the latest version of Windows, and what you should be aware of before you buy

  • Windows Vista Business

    Review Windows Vista Business is essentially warmed-up Windows XP. If you're currently happy with Windows XP SP2, we see no compelling reason to upgrade. On the other hand, if you need a new computer right now, Windows Vista is stable enough for everyday use

  • 10 things to consider before taking the Vista plunge

    News If you're planning a rollout of the latest Windows operating system, certain factors need to be evaluated first

  • Bill Gates talks Vista and Linux

    News Bill Gates is pretty confident that when he spots an emerging technology, it will emerge. Exactly when that happens, though, is sometimes an open question

  • Vista launch kicks off in New York

    News Microsoft has begun two days of events celebrating the consumer launch of its latest operating system

  • Why you should care about Vista

    FAQ  It's finally ready, so here's what you need to know about Microsoft's latest operating system

  • Peace in our time for Vista?

    Opinion Jim Allchin's comments that Windows Vista doesn't need any extra security software could stir up further confrontation with antivirus companies, at a time when Microsoft needs all the friends it can get

  • Should businesses upgrade to Vista?

    Buyer's Guide IT managers need to consider whether Microsoft's new Vista operating system is worth installing — and if it is, when the roll-out should begin.

  • A quick guide to Windows Vista's new file system

    Tech Guide Windows Vista challenges how we think about files and file storage, allowing users to tag, organise and search content in new ways.

  • Windows Vista is in sync with your files

    Tech Guide Need to synchronise files and folders with local mobile devices or remote servers? Our guide explains how Windows Vista users go about it.

Video icon

Video

Sentry Posts Blog

Climate research centre compromised

One of the UK's leading climate change research centres has had a security breach. The Climate Research Unit at the University of East Anglia (UEA) suffered a compromise of information,... More

1 comment

Government web-monitoring plans on hol...

Government plans to compel ISPs to process and store details of all web communications have been put on hold until after the next election. The Home Office told ZDNet UK on Wednesday... More

1 comment

Watchdog reveals illegal sale of phone...

The Information Commissioner's Office is preparing a prosecution file against a mobile operator's employees who allegedly sold on thousands of customers' details to a competitor. The... More

1 comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters