Fwd: how wonderful the Internet is...
ZXNet echo conference «zxnet.pc»
From Kirill Frolov → To Boris Paleev 11 July 2004
- --- begin of forward ---
Newsgroups: zxnet.pc
X-Comment-To: All
From: Boris Paleev
Date: Sat, 10 Jul 04 09:07:12 +0400
Subject: how wonderful the Internet is...
Hello All!
CNews.ru: Main news
07/09/2004
-
Experts advise finding a replacement for Internet Explorer
Internet Explorer security problems are becoming more acute every day.
Despite the fact that on July 2 Microsoft released a fresh system update
security of your browser, blocking a called Download.Ject,
It turned out that this does not protect users from intrusion
intruders. Meanwhile, it became known about the appearance of a new version of the old
Trojan Lovgate. Concerned about the situation, the American organization CERT
(Computer Emergency Response Team - rapid response team for issues
information security) officially recommended that users not hesitate
with the transition to alternative browsers.
Download.Ject, which was supposed to be blocked by the July 2nd update,
with
using spyware allowed hackers to intercept passwords, numbers
credit cards and other information that users entered when
authorization on any of the 50 banking sites included in
authors. According to Western information security experts, the virus
was was created by our compatriots. It intercepted characters entered from
Keyboard by visitors to banking websites and redirecting them to another
is a site hosted in Russia. Disrupt plans
The of the attackers succeeded in the Internet provider blocking access to
this site. Meanwhile, Microsoft released an update that disabled
Windows ActiveX component called ADODB.Stream - thanks to
spyware was installed on vulnerable computers.
No sooner had this update appeared than a new flaw was discovered. Dutch
student Jelmer Kuperus published the program code on the Internet, with
with which, in his opinion, it is possible to hack Windows security even with
installed latest update, using the same vulnerability
Download.Ject, only slightly modified. Kuperus suggested attacking
ActiveX component Shell.Application. According to him, the vulnerability of this
the component was discovered back in January of this year.
To demonstrate the danger of the hole he found for users
Internet
Explorer, Kuperus posted malicious code on his own website that uses
Shell.Application vulnerability. Any user of Windows XP with Internet
Explorer visiting the site, the system will freeze. Kuperus assures that
nosuch a demonstration does no harm, but the attackers are not asleep, and have already
Soon the identified vulnerability will be exploited by hackers.
Internet Explorer Vulnerability Discoveries Become So Frequent and Common
a phenomenon that many experts seriously recommend to those who care about their own
safety users switch to alternative browsers - for example,
Mozilla or Opera. Thus, the American federal agency Computer Emergency
Response Team (CERT) last week recommended that IT professionals
go over
to browsers alternative to Internet Explorer. Immediately after the appearance of this
recommendations, number of downloads of Mozilla browser distributions, for example,
has doubled; at the moment it is about 200 thousand copies per week.
While Microsoft is fighting Download.Ject, a new variant of the worm has been discovered
Lovgate, which was born back in February 2003. July 4th were discovered
its new versions are the so-called Lovgate.AE and Lovgate.AH. Their main difference
from previous generations - in the nature of the impact on the affected computer. Now
they no longer delete user data, but replace executable files
copies of themselves. As a result, the computer may become useless
hardware on which it will be impossible to run any application. According to
Sophos security expert Carole Tyheriault,the latest versions of Lovgate are made - due to their extreme,
destructiveness uncharacteristic of the modern generation of viruses. Experts
McAfee has raised the threat level of new Lovgate variants to
- in the first day after the discovery of the virus, more than a hundred were found
copies of it.
Article address: http://www.cnews.ru/newtop/index.shtml?2004/07/09/161061
-
All rights reserved from 1995 - 2004 RIA
For advertising and news subscription questions, please contact marketing@cnews.ru
Best regards, Boris
- --- end of forward ---
Lovgate -- Lovingod ?