Computer Bug and Security News

Written by Bruce Kratofil
Published July 20, 2004
Part of BugBlog

Here are some of the latest things that can go wrong with your computer, as written about on the BugBlog:

A British researcher, with a website named zapthedingbat.com, demonstrated a new cross-site scripting technique that may allow more phishing attacks. In this case, script from the attacker is injected onto a web page belonging to an online bank or other site where sensitive information can be discovered. This attack appears to work with both Internet Explorer with Windows XP Service Pack 2 (Release Candidate 2) installed, as well as Mozilla Firefox 0.9.1. You can read more about this at eWeek.

The latest reincarnation of the Bagle or Beagle virus has been turning up with greater frequency starting around 7/16 or so. It comes in via an email attachment, and then attempts to turn off security software processes such as firewalls and antivirus programs. It then harvests email addresses and then contacts a number of compromised web servers in Germany. (According to one story, this list of web servers is up to 141.) After the virus infects your computer, it will email a copy of itself to all the email addresses it can find on your hard drive. You can read more at Symantec's summary .

There is already a hotfix for the security patch released with Microsoft's MS04-024 bulletin, released on 7/13/04. This patch, which is officially labelled Security Update 839645, may trigger sharing violations on network shares, may increase network traffic, and may give confused ToolTips. If you installed the new security patch and started to get these problems, you may may want to contact Microsoft Technical Support and ask for the hotfix, which is described in Knowledge Base article 871242. Note that they may charge you for this call.

Anti-virus companies are saying that one of the latest mass-mailing worms, called Atak, tries to sleep if it thinks anti-virus software is looking for it. There are some quotes at ZD Net , and you can read Symantec's analysis here.

Bruce Kratofil blogs on bugs and other things that can go wrong with your computer at The BugBlog, and writes about computers and economics at BJK Research
Keep reading for information and comments on this article, and add some feedback of your own!
Computer Bug and Security News
Published: July 20, 2004
Type:
Section: Culture
Part of a feature: BugBlog
Writer: Bruce Kratofil
Bruce Kratofil's BC Writer page
Bruce Kratofil's personal site
Spread the Word
Like this article?
Email this
Submit to del.icio.us Save to del.icio.us
RSS Feeds
All RSS Feeds (240+)
Comments on this article
Articles in this series
BC articles by Bruce Kratofil
All Culture Articles
Bruce Kratofil's personal weblog
All BC articles
All BC Comments

Comments

Want comments emailed to you? No spam, promise! Address:

Add your comment, speak your mind

(Or ping: http://blogcritics.org/mt/tb/17645)

Personal attacks are not allowed. Please read our comment policy.





Remember Name/URL?

Please preview your comment!

Fresh
Articles
Fresh
Comments