ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Desktop platforms Toolkit in association with http://ad.doubleclick.net/clk;205413468;14699245;m?http://adfarm.mediaplex.com/ad/ck/2397-58840-22058-14

Microsoft on alert for worm attack

Joris Evers CNET News.com

Published: 14 Aug 2006 09:40 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Computer code that takes advantage of a serious Windows flaw has been published on the Internet, increasing the chance of a worm attack.

The release of the attack code, which exploits a security hole in a Windows component related to file and printer sharing, also raises the urgency to patch. Microsoft provided a fix for the problem on Tuesday with security bulletin MS06-040. Tens of millions of Windows users have already downloaded that fix, Microsoft's Security Response Team said on a corporate blog earlier this week.

While the vulnerability affects all versions of Windows, the published exploit code works only on Windows 2000 and Windows XP Service Pack 1, Microsoft said in a security advisory published on Friday.

"This code does not affect Windows XP Service Pack 2, Windows Server 2003 or Windows Server 2003 Service Pack 1," it said.

So far, Microsoft has only seen limited use of the flaw in cyberattacks. Security experts have said that it could be exploited by an Internet worm similar in scope to Blaster, which wreaked havoc three years ago.

Microsoft's emergency response team is on worm watch, the company said.

"We have not seen signs of widespread malicious activity so far. But be assured that, like we always do, we've got our emergency-response process teams watching for any possible malicious activity," Christopher Budd, security program manager at Microsoft, wrote on the Microsoft blog on Wednesday.

Some security experts, however, don't expect a high-profile worm attack. "A fully automated 'big bang' type worm is increasingly unlikely in an Internet world where under-the-radar attacks take place for criminal gain," said Ken Dunham, director of the rapid response team at security company iDefense.

Instead, Dunham predicts that we will see Trojan horses and semi-automated malicious code attacks that exploit the Windows flaw in such a way that attackers can profit.

"Hacker activity has been light for the MS06-040 exploitation to date but is likely to increase with the advent of this coming weekend," Dunham said, adding that all computers connected to the Internet should be patched as soon as possible.

Meanwhile, Microsoft has verified that the MS06-040 security update works and that patched computers are not at risk from the exploit code. The fix is available via the Windows Update and Automatic Updates tools as well as on Microsoft's Web site.

A day after Microsoft released its fixes, the US Department of Homeland Security issued a rare alert urging Windows users to plug the potential worm hole in the operating system. "Users are encouraged to avoid delay in applying this security patch," the Department of Homeland Security said in the statement.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
202 out of 275 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:





Related Jobs

Tester - Systems Integration - Financial Markets - Herts - c35k

You will also need the ability to execute automated test scripts through WinRunner or equivalent tools, use test harnesses for FIX messages and use ...

Exception Java Developer Hedgefund Algo Execution Trading - DMA/FIX

Links/messaging protocols for order execution both direct to exchanges and via prime brokers through FIX connectivity. Designing and implementation ...

2 Senior Testers - leading Media client - AUTOMATION QTP/VBScript

You will plan, execute and report testing activity, and this will predominantly be web-based, so previous experience in this area is key. There is an ...

Featured Talkback

So if you upgrade to XP SP3 you can't uninstall Internet Explorer, I'm quite sure I'm having a Deja-vu feeling about MS preventing people from uninstalling Internet Explorer in other Windows products.

By: TheKLF99

Read full story:
Upgraders to XP SP3 warned over IE downgrades

Desktop Management Benchmarking

Test Your Desktop Management Systems

How good are your company's desktop management solutions? How do they compare with those of your peers?

Take two minutes to complete our new Desktop Management and Energy Consumption benchmark, and find out what issues your business needs to focus on.