On GameFAQs: Halo 3 ODST: Where's the last audio log?
BNET Business Network:
BNET
TechRepublic
ZDNet

March 30th, 2009

Enterprises thrown a lifeline as Conficker worm looms

Posted by Larry Dignan @ 8:19 am

Categories: General, Hardware Infrastructure, IT Management, Security

Tags: Network, Honeynet Project, Worm, Conflicker, Ryan Naraine, Network Scanner, Scanners, Cyberthreats, Viruses And Worms, Security

There has been a big break in the Conficker worm that threatens to activate and cause a lot of havoc on April 1: German researchers at the Honeynet Project have been able to fingerprint the malware on infected networks.

Ryan Naraine has the details:

Just days ahead of an April 1st activation date for the Conficker worm squirming through the Windows operating system, security researchers at the Honeynet Project have scored a major breakthrough, finding a way to fingerprint the malware on infected networks.

With the help of Dan Kaminsky and Rich Mogull, off-the-shelf network scanning vendors have the ability remotely (and anonymously) detect Conficker infections.

So what does that mean in English? Anyone with a network scanner, which trolls infrastructure for oddities, has two days to find the Conficker worm and mitigate it. And what entities are most likely to have network scanners? Enterprises. The Honeynet Project has released a proof of concept scanner and enterprise scanners from the likes of Tenable (Nessus), McAfee/Foundstone, nmap, ncircle, and Qualys will follow. There’s also the Nmap freebie.

This fingerprinting advance for Conficker is a big deal because the worm’s first move is to turn off antivirus defenses. But since enterprises have network scanners as an additional layer of defense the Conficker damage should be limited.

Unfortunately, consumers that rely solely on antivirus software, which is turned off when the worm activates, may still be screwed.

Conficker has garnered a lot of attention in recent days (tech media has never found a killer worm it didn’t like). Conficker has become such a sensation that even 60 Minutes chimed in.


Watch CBS Videos Online

Larry DignanLarry Dignan is Editor in Chief of ZDNet and Editorial Director of ZDNet sister site TechRepublic. See his full profile and disclosure of his industry affiliations.

For daily updates, follow Larry on Twitter.

Email Larry Dignan

Subscribe to Between the Lines via Email alerts or RSS.

  • Talkback
  • Most Recent of 4 Talkback(s)
RE: Enterprises thrown a lifeline as Conflicker worm looms
This is a burden on the oil and gas indurstry throught the Middle East and Asia. We need to keep tabs on all our IT systems and subcontractors have to be clean.

Max Douglas
Project Manager
... (Read the rest)
Posted by: MaxOffshore Posted on: 08/29/09 You are currently: a Guest | | Terms of Use
"Conflicker"?  ejhonda | 03/30/09
RE: Enterprises thrown a lifeline as Conflicker worm looms  redrooz@... | 03/30/09
RE: Enterprises thrown a lifeline as Conflicker worm looms  Millystone | 04/09/09
RE: Enterprises thrown a lifeline as Conflicker worm looms  MaxOffshore | 08/29/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

Meet Doc

  • Here to help you with your Document Management Needs
  • Doc is an enigma. Born to a Russian ballerina and a German electrical engineer, he grew up in various locations in the United States. He’s seen the insides of more brands, versions, and generations of printer and printer-related hardware than almost anyone.
  • To learn more about this mysterious figure check out his blog on ZDNet and his Workspace on TechRepublic. You’ll be glad you did.
  • Produced by
    ZDNet and