NEWS A virus or worm that exploits newly revealed vulnerabilities in the current versions of Windows could emerge fairly soon, security experts say, in part because the vulnerabilities are very similar to the flaws exploited by the MSBlast worm. Alfred Huger, senior director of engineering at Symantec Security Response, said: “This is essentially the same type of vulnerability. We’re likely to see them [new viruses] in the near future.” Code that exploits the vulnerability is already being exchanged between researchers, he said. A new virus could come out in the next few days, he added, if not sooner. Robin Matlock, vice president of marketing at Network Associates, speculated that an exploit might take a few weeks. Still, “the gap between vulnerabilities and exploits is shrinking dramatically,” she said. Microsoft has already issued a patch and a scanning tool that ensures systems are patched. The company and a host of security firms are urging businesses and consumers to apply the new software as soon as possible. Both the patch and new scanning tool are necessary, according to Microsoft. If users download the new patch but have the old scanning tool, that tool will state that the PC has not been repaired, a Microsoft representative said. A damaging outbreak could well hinge on how quickly people and institutions move to inoculate their PCs against potential attacks. Often, businesses and consumers can be slow to patch systems. A patch for the vulnerability that the MSBlast worm, also known as Blaster, exploited was available for three weeks before the first virus hit. Some businesses and several consumers had not applied the patch by then. Keeping up with viruses is also a difficult, time-consuming job. “It is just impossible,” said Matlock. Symantec President John Schwarz testified on Wednesday in front of a Congressional subcommittee on technology that approximately 450 new viruses are reported every month. On the other hand, the recent round of virus attacks is fresh in people’s minds, which may prompt them to act fast. The new vulnerability affects Windows NT 4.0, Windows 2000, Windows Server 2003 and Windows XP, including the 64-bit versions of Windows XP. “The advantage we have here is that Blaster came out just a little while ago,” Huger said. There are three new vulnerabilities. Two allow hackers to launch a buffer overflow attack. With a buffer overflow, hackers can take control of a computer and implant unwanted programs. The third is a denial-of-service flaw that affects a component known as the remote procedure call (RPC) process. The RPC process facilitates activities such as sharing files and allowing others to use a computer's printer. By sending too much data to the RPC process, an attacker can cause the system to grant full access to its resources. Michael Kanellos writes for CNET News.com
New Windows virus outbreak just a matter of days
Batten down your patches...
Post your comment
In order to post a comment you need to be registered and logged in.
You can also log in with Facebook. Log in or create your silicon.com account below
Get silicon.com's daily newsletter
-

Enter your email to register
Featured white papers
-
Why is encryption important?
Data protection has become a hot topic, but where is the real threat and what can you do to protect your business? How...
-
CIO challenges: Bringing your iPad to work
The arrival of personal technology in the office is a challenge for all organisations. The technology is here, but not...
-
2012 Olympics: Is your business prepared?
Athletes prepare for all kinds of conditions and problems in competition. With the London-hosted Olympics fast...
Keep in touch with silicon.com
-
Connect with silicon.com on Facebook
Discuss the news of the day with the silicon.com team
-
Follow silicon.com on Twitter
Get regular updates from the silicon.com editors
-
Join the silicon.com LinkedIn networking group
Network with your peers and share expertise
Latest jobs
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
silicon.com newsletters
-
Stay up to date with silicon.com newsletters
Keep up with the latest news and analysis from silicon.com with our free email newsletters





Comments
There is 1 comment. Join the discussion
1. anonymous
i have new virus on my computer called win/32hidpog ive got windows xp home.Thought i better let people know could not find any info in mircosoft site about it a tall