Hackers, VB 'worm': double dose of danger

By
13 October 2000 03:01 PM
Tags: worm, joke, funny, aol, text, vbs, hack, outlook

More security breaches. That's the outlook for more computer users as latest high profile infringements include America Online's service and Microsoft's Outlook software.

In the case of AOL, hackers used a "Trojan horse" program sent to AOL employees last week to gain access to users' accounts over the weekend.

The Internet service provider acknowledged that a few thousand user accounts had been accessed by outside parties and that the hackers would have been able to view customer information, including passwords and credit card data.

An undetermined number of AOL employees received an e-mail message last week containing the program, which, when executed, allowed the sender to take control of an employee's machine and access the company's internal customer database.

AOL removed the billing information from the affected customers' accounts, according to published reports. As of Monday morning, the security hole was still open.

The VBS/Stages worm
At the same time, anti-virus vendors are warning enterprises of a new Visual Basic worm that uses the Windows Scrap file to copy its code onto vulnerable computers.

So far, most companies are rating the worm a "medium grade" threat and are trying to avoid overplaying it.

The worm, called VBS/Stages, is not a descendant of other worms, although it does use Microsoft Outlook as its unwitting accomplice. As it promulgates through Outlook inboxes, it changes its name, making it harder to track. It also copies itself to all available local and network drives attached to the person opening the file.

When launched, the worm creates a text file containing a joke about men and women's interest in sex as they age. It also changes Windows settings that affect the Scrap file and the Windows Registry Editor.

But the worm does not damage the machine it attacks by deleting files or changing crucial settings. Rather, its danger lies in its ability to overload e-mail servers.

Subject headings that have been connected to the e-mail include: "Fw: Life Stages," "Fw: Funny," "Fw: Jokes," "Fw: Life Stages text," "Fw: Funny text," "Fw: Jokes text," "Life Stages," "Funny," "Jokes," "Life Stages text," "Funny text" and "Jokes text."

Advertisement

Talkback 0 comments

Latest Videos

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • David Braue All I want for Xmas is Telstra pricing
    Five consecutive days without broadband has led me to what seemed at the time to be an act of desperation: contemplating signing up for Telstra's 100Mbps cable modem service.
  • Array Sick of broken tender sites
    Some of the state governments desperately need to invest in more user-friendly tender sites so that looking for information on government tenders doesn't have to be a game of blind man's bluff.
  • Array Cyberwar: What is it good for?
    In this week's episode, Cyberwar. What is Australia's place in the world of digital warfare? What are the implications for the NBN?
  • More blogs »

Tags

Back to top

Featured