18 Dec 2006
Researchers at eEye Digital Security claim to have found a worm that targets Symantec's antivirus software.
The 'Big Yellow' malware targets a flaw in the remote management interface for the Symantec AntiVirus and Symantec Client Security applications.
On infection, systems are recruited for a botnet and the worm starts using the system as a launch for further infections.
Symantec issued a patch for the flaw in May, but many enterprises failed to deploy the update.
Marc Maiffret, chief technology officer at eEye, suggested that many users do not perceive software flaws in non-Microsoft products as a serious threat because large scale attacks 'always' target Microsoft.
However, Maiffret expects that the Big Yellow worm is the first of many online threats that target non-Microsoft software.
"Given the rapid discovery of critical vulnerabilities within desktop applications other than Microsoft's, the release of malware of this magnitude targeting non-Microsoft software was only a matter of time," he said.
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
We have been given the privilege of recruiting for a...
My client is a proprietary, electronic trading firm and...
Our client is looking for a Senior Project Manager (Telecoms...
Business Analysts are being sought by my leading financial...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?