« Updated: Obama & Clinton Come Down Against Telecom Immunity | Main | INTEROP: NAC Frustration is Mounting »
October 24, 2007
INTEROP: Is the Storm Worm Intimidating Security Researchers?
Storm worm strikes back at security pros:
“The Storm worm is fighting back against security researchers that seek to destroy it and has them running scared, Interop New York show attendees heard Tuesday.
“The worm can figure out which users are trying to probe its command-and-control servers, and it retaliates by launching DDoS attacks against them, shutting down their Internet access for days, says Josh Korman, host-protection architect for IBM/ISS, who led a session on network threats.
“‘As you try to investigate [Storm], it knows, and it punishes,’ he says. ‘It fights back.’
“As a result, researchers who have managed to glean facts about the worm are reluctant to publish their findings. ‘They’re afraid. I’ve never seen this before,’ Korman says. ‘They find these things but never say anything about them.’
“And not without good reason, he says. Some who have managed to reverse engineer Storm in an effort to figure out how to thwart it have suffered DDoS attacks that have knocked them off the Internet for days, he says.’
Tags: security, storm worm, malware, interop
Posted by mhall at 6:40 PM | Add Comment


Leave a comment