Bots exploiting Microsoft’s latest RPC flaw
November 7, 2008 by Shanmuga
Filed under Botnets, Recommended Reads
"Several antivirus vendors are reporting on Monday a new round of exploitation of Microsoft’s out-of-cycle security bulletin last month. The flaw in MS08-067, which affects how remote procedure calls (RPC) are handled in the Windows Server Service, has the potential to become a fast-spreading worm, according to Microsoft. But experts predict any exploitation will be bundled within an existing Trojan horse or botnet package because that’s where criminals can make the most money from the malware code.
Read more
If you enjoyed this post, make sure you subscribe to my RSS feed!
Rustock and Srizbi botnets share a common trojan
"Two of the world’s largest and most prolific spamming botnets have been spotted sharing a common bot malware-delivery method. But whether that means that the operators of the rival Rustock and Srizbi botnets are actually in cahoots is unclear, security researchers say.
Read more
If you enjoyed this post, make sure you subscribe to my RSS feed!
Security: New BotSniffer better able to detect foul stench of botnets
"Researchers at Georgia Tech have published a paper on BotSniffer—a program they’ve designed to detect and disable botnets. Botsniffer is not the only bot-detection program available, but the Georgia Tech research team believes that the program’s approach to the botnet issue results in a better correlation rate and a lower number of false positives.
Read more
If you enjoyed this post, make sure you subscribe to my RSS feed!
Security: Limelight kills botnets better than cops do
"Botnet operators have become public enemy number-one as consumers, businesses and governments fall foul to identity theft, DDoS attacks and spam. Yet no one appears to be able to stop the spread of bots — except maybe the media.
Read more
If you enjoyed this post, make sure you subscribe to my RSS feed!
Security: What IT can learn from botnets
"Josh Corman is the host protection architect for Internet Security Systems, Inc. (ISS), with more than eight years of experience in security and networking software. What was refreshing was Corman’s out-of-the-box thinking on the distributed networks currently being used by online criminals. Of the most popular of these networks, he said "Storm did a lot of things right; in some ironic sort of way, you could argue that Storm is itself a blueprint for fighting (botnets)."
Read more
If you enjoyed this post, make sure you subscribe to my RSS feed!





