ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Application development Toolkit

Mutant Bugbear worm targets bank security

CNET Asia CNet Asia

Published: 11 Jun 2003 15:38 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Security experts have uncovered a sinister new function in fast-spreading email virus Win32.Bugbear.B which suggests the worm harvests passwords used by bank employees.

"We have discovered a previously unknown functionality within the 32Bugbear.B worm and are strongly advising financial institutions worldwide that they may be at greater risk of exposure," antivirus software firm Symantec said in a recent statement.

The company said that this new discovery specifically affects employees of financial institutions. When the worm finds names of banks in a victim's mailbox, it tries to send sensitive data such as cached passwords and keystrokes to one of 10 email addresses included in its code.

The Win32.Bugbear.B belongs a new, worrying class of email worm that not only attempts to clog networks through malicious replication, but also attempts more serious forms of criminal activity.

According to a report from the Associated Press, the US government has issued a similar warning and the FBI is currently looking to what security experts believe to be the first Internet attack aimed at a specific economic sector.

Symantec said that the code of the new Bugbear worm contains a list of about 1,200 Web addresses for many of the world's largest financial institutions in its code. These include JP Morgan, American Express and Citibank.

If the worm determines that the default email address for the local domain belongs to a banking company, it will send cached dial-up networking passwords to the virus author, as well as other passwords and key-logging data, according to Symantec.

No major bank has yet to report a security breach as a result of the worm.

Soon after it surfaced last Wednesday, security software firms have upgraded the Win32.Bugbear.B virus from a medium level threat to high due to the rapid rate of infection. To date, Symantec said it has received 8,932 reports, with 245 of them being corporate customers.


For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Security News Section.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
29 out of 61 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:








Related Jobs

London Investment bank seeking a Murex application support analyst

The core skills and knowledge required are cluster scripts, U.A.T.testing and integration, MXML reconfigurations and delivery of trade interfaces, ...

Business Analyst - Consultancy - London - 60,000

This is an excellent opportunity for a Business Analyst with excellent technical and client facing skills to forge an exciting career working with ...

Tier 1 investment bank requires Technical Project Leader

If you are familiar with the above technologies and have previous experience leading within financial institutions then please reply with an up to ...

Discussions

harpless harpless

SAP goes big business

Friday 25 July 2008, 6:17 PM

1 comment
pjc158 pjc158

Will Drizzle rain on Sun's MySql

Friday 25 July 2008, 5:30 PM

1 comment
pjc158 pjc158

Show me the money!

Friday 25 July 2008, 5:18 PM

5 comments

Featured Talkback

The fact is: Software developers today are really designers and not coders. The reason that business anlaysts exist today to model solutions is because they understand the value of designing software before writing it. All too often developers create code that has little value because they do not understand that business classes interact with other classes within the confines of a working model or pattern.

By: 1000165269

Read full story:
Making sense of agile modelling