24 Apr 2009
The Conficker worm was a classic example of media misunderstanding of malware, said security guru Bruce Schneier.
Calling the panic over the virus an “April fool's joke”, he said it was a classic example of how the mainstream news media misunderstood the threat from malware and used it to make news to the detriment of security.
“Conficker pushed a few good buttons,” he said.
“It appeared to come from nowhere, it had a funny-sounding name – and research shows unusual names provoke fear – and it came on a 'magic' date. But it was the classic boy who cried wolf story.”
He pointed out that for all the media frenzy, the malware didn't even update itself on April 1st. Instead it did so five days later, by which time the media had forgotten the story.
“This is why I tell people that if it's in the news then it's nothing to worry about,” he said.
“By definition news is something that happens rarely, because that's what news is.”
While the technical press were among the few to point out that there was little to fear from the Conficker worm, many media outlets speculated wildly that the worm would cause massive damage.
Schneier said that such cases may have helped vendors sell more security products but in some ways they made the situation worse, since people became inured to virus stories and this might lead them to ignore future warnings.
Latest stories from Finance
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Principal Development Engineer Lead- London - Smart TV...
Development Engineer - London - Smart TV, Gaming, Tablets...
Principal Development Engineer - London - Smart TV, Gaming...
Test Engineer -London - Smart TV, Gaming, Tablets, PC...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
Public awareness is ignorance?
The Security Ivory Tower dwellers need to stop pontificating and start performing. Making the public aware of the scourge that is malware is not a bad thing. If you don't like the message, then take the lead and become the one putting out the message. So far the security community, at least those who envision themselves as luminaries, have done a remarkably lousy job of getting the computing public moving towards the level of security awareness that would begin to make a difference.
Posted by: EJ 24 Apr 2009