Login

Username:

Password:

 
Lost Password?
Register now!


Did you know?
Soft-keyboard is not safe at all?



Random FAQ
Is there a fee to becoming a partner?

Vulnerabilities & Exploits : Bagle still the malware boss
Posted by glm on 2008/12/22 18:27:54 (23 reads)





By :Clement James


Mar 12, 2007 10:11 AM




Veteran malware Bagle continues to defeat most antivirus solutions almost three years on by using a cleverly devised distribution method, security experts warned this week.

The email worm has begun to use key offensive strategies to maximise propagation and slip under the radar of traditional antivirus defences, according to a report from security firm Commtouch.

Bagle, also known as Beagle, is one of the longest running examples of email-borne malware.

The worm has seen continued success from its high distribution intensity, releasing thousands of infected email messages a day to ensure a wide distribution of the malware across the internet.

Bagle also has a vast number of variants. Over 30,000 distinct variants were detected during the report period. 

As each variant, or group of variants, requires a different signature, it is virtually impossible for antivirus engines to keep up with this rapid-fire pace.

Moreover, each variant is distributed in very small quantities or instances. Since an antivirus vendor must be aware of a malware sample in order to analyse it, distribution in low numbers often enables Bagle to "fly below the radar" of traditional antivirus engines.

"The recent burst of 30,000 new distinct variants shows that Bagle has adopted the server-side polymorphic form and is sending intense waves of variants," said Haggai Carmon, vice president of products at Commtouch.

"Most email malware, including Bagle, has adopted this technique to penetrate traditional antivirus solutions by exploiting their signature time lag."




Source from:Copyright © 2008 vnunet.com







Other articles
2009/2/4 23:20:16 - Cloud computing is a storage spot for malware
2009/2/4 23:20:15 - Microsoft responds to Windows 7 security gripe
2009/2/4 23:20:12 - Web identity hijacking on the rise
2009/2/4 23:20:12 - Google glitch puts surfers in a quandary
2009/2/4 23:20:11 - Facebook plays down privacy concerns
2009/2/4 23:20:10 - Australian Computer Society to use Sophos security solution
2009/2/4 23:20:09 - Google working on fix for clickjacking vulnerability in Chrome
2009/2/4 23:20:08 - McAfee: Malware will use web and USB sticks to spread in 2009
2009/2/4 23:20:07 - With economy in tailspin, Monster discloses major breach
2009/2/4 23:20:06 - OS X 'pirate' trojan resurfaces
2009/2/4 23:20:05 - IE 8 approaching on formal release
2009/2/4 23:20:04 - Companies warned over use of Netbooks
2009/2/4 23:20:03 - Trend Micro signs up with BigFix
2009/2/4 23:17:08 - Banks urged to change security policies
2009/2/4 23:17:08 - Heartland incident provides opportunity to standardise data breach notification laws

The comments are owned by the poster. We aren't responsible for their content.

Articles