All the latest UK technology news, reviews and analysis

Warhol Worm 'could hit one million PCs'

by James Middleton

20 Aug 2001

Be the first to comment

  • Tweet this

The Code Red worm may have had its 15 minutes of fame as it failed to reappear this weekend. The worm, which was designed to propagate, lay dormant and then attack the White House website over pre-set time periods, seems to have been stopped in its tracks.

Although various reports claim that there are 250,000 to 300,000 NT servers still infected, security experts say that most vulnerable systems have now been patched. The worm has not been able to damage the White House site as the administrator simply shifted the site's IP address when it first appeared.

A statement released on Friday from the National Infrastructure Protection Center said that the threat posed by the worm "is significantly reduced".

However, in the light of Code Red and similar worms a technology researcher from Berkeley University of California has written a white paper describing how a similarly constructed super worm could be capable of one million infections in eight minutes.

The so-called Warhol Worm overcomes the problem that a worm faces of obtaining its initial 'critical mass' of infected hosts. Technically, it would be easy for someone intending to release a worm to pre-scan the internet and generate a 'hit list' of a few thousand vulnerable machines with fast network connections.

This hit list would be given to the worm and later divided up among infected machines to maximise the number of victims that could be further infected.

According to the paper's author, Nicholas C Weaver, this "divide and conquer" strategy would allow several thousand vulnerable machines to be infected in less than a minute, potentially infecting one million machines in eight minutes. "The potential mayhem is staggering," he added.

The full white paper is available here.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

32%

2%

15%

51%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

Sales Consultant - Datacentre

Sales Consultant - Data Centre, Colocation, Hosting...

Senior Interaction Designer (User Experience, UCD, Prototypes)

Senior Interaction Designer (User Experience, UCD, Interactive...

Head of Information Architecture / UX - London - £370p/d

Information Architecture / IA / User Experience / UX...

Sales Consultant

Sales Consultant A rapidly expanding independent managed...

To send to more than one email address, simply separate each address with a comma.