Quantcast
PC World: Technology Advice You Can Trust
Find a Review
Free Newsletters
Receive the latest reviews, how-to's, news, and more.
Weekly Brief
Daily Downloads
Daily Technology News
WiFi Finder
Locate wireless services by a specific address, city, state, country, airport, or zip code.
RSS Feeds
Get our latest content via convenient RSS feeds.
Latest News
Today @ PC World
Become a PCW Member
Join the community and start enjoying the benefits:
  • Get tech advice from thousands of PC World Members
  • Rate and recommend the latest tech products
  • Share your thoughts in blog and article comments
  • Get free excerpts and exclusive discounts on Super Guides
Read More About: Windows Bugs

Windows Attacks on the Rise

Malicious software targeting the unpatched WMF vulnerability is now the most widely reported threat on the Internet.

Robert McMillan, IDG News Service

Wednesday, January 04, 2006 8:00 AM PST
Recommend this story?

Malicious software that exploits an unpatched vulnerability in Microsoft's Windows operating system is now the most widely reported threat on the Internet, though it does not appear to be widely infecting corporate customers, according to McAfee.

In late December, hackers posted code that took advantage of the way Windows processes graphics files in the WMF (Windows Metafile) format, and that software is now being distributed in easy-to-use tools for creating malicious software that can be used to take over an unprotected computer, says Craig Schmugar, virus research manager with McAfee.

Although most security vendors, including McAfee, already protect their customers from this malicious software, an undetermined number of users are still at risk. Microsoft has said it plans to fix the underlying problem in a security patch, scheduled for release next Tuesday, giving attackers another week in which to strike.

About seven percent of McAfee users have been exposed to malicious files that exploit the WMF vulnerability, which is the most-reported vulnerability among McAfee customers right now, Schmugar says.

Spreading Via E-Mail, Ads

ScanSafe Services reports that about 15 percent of its customers are being exposed to WMF malware, according to Dan Nadir, vice president of product strategy with the Web browsing security company. "It looks like it's being spread either through e-mail images or though ads that are on sites that users are browsing," Nadir says. "There's a lot of variation. It looks like there's more than 50 unique variations of this threat that we've seen."

Instant messages that contain links to maliciously encoded WMF images are also being used to spread the malware, according to security researchers.

Neither Schmugar nor Nadir could say how many PCs have actually been infected by the vulnerability, but experts said it did not appear to be disrupting corporate users, who are typically protected by antivirus software.

"As far as we're concerned, the threat is being vastly overblown," says Russ Cooper, editor of the NTBugtraq mailing list and a scientist at security vendor Cybertrust. "It's not being massively exploited."

Just two months ago, Microsoft fixed three other problems with the way Windows processes WMF images, and those vulnerabilities were not widely used with any success, Cooper says. "We've had image rendering problems in the base operating system for a long time, and still nothing massive has happened."


Recommend this story?
Related Searches: windows wmf flaw security attack

Comments
Latest News
Hewlett-Packard's acquisition of Electronic Data Systems won't hurt Dell in the next few years, but it could affect Dell's... 16-May-2008
Microsoft confirms that it has yanked parts of a backup feature from a major upgrade to its Windows Home Server. 16-May-2008
HP confirms that some users of its AMD-based desktops have had problems after installing Windows XP Service Pack 3. 16-May-2008
The days of imagining Wi-Fi blanketing a city are over with the exit of the last major municipally focused Wi-Fi service provider. 16-May-2008
In its continued attempt to convince business customers to adopt Vista, Microsoft has outlined and tried to explain some of... 16-May-2008
Sony Friday revealed a list of 15 upcoming games for the PlayStation 3, PS2 and PSP. 16-May-2008
This was a big IT news week, with the massive earthquake in China on Monday showing once again the role that the Internet... 16-May-2008
FastMac on Friday announced its new U-Charge. It's a universal battery charger for Apple laptops and it costs US$69.95; it... 16-May-2008
The June 2008 issue of Macworld includes a feature article on running Windows on your Mac--and how to do it in the most... 16-May-2008
Apple's Address Book utility is a handy place to store information for your contacts, especially since it integrates so well... 16-May-2008

PC World's Marketplace

PC World's Free Whitepapers

Name City
Address 1 State Zip
Address 2 E-mail (optional)