04 May 2004
Microsoft customers are being urged to update their patches to protect against a family of internet worms that are spreading fast by exploiting a vulnerability in Windows.
The Sasser worms exploit the Windows Local Security Authority Subsystem Service flaw, about which Microsoft has already advised users. Four variants of the worm have been reported since 1 May.
Security software firm McAfee warned that systems are especially at risk, as the virus does not spread via email and no user action is required to propagate it. The worm simply instructs vulnerable systems to download and execute its code.
"Computers which are not properly protected with antivirus updates, firewalls and Microsoft's security patches are asking for trouble," warned Graham Cluley, senior technology consultant at antivirus firm Sophos.
Luis Corrons, a director at Panda Software, said that Sasser looked like a dangerously virulent worm.
"All these signs make for a dark forecast for the beginning of the week when it is expected that the number of incidents will soar at the start of the working day," he said in a statement.
The worm scans random IP addresses for vulnerable systems, then sends a specially crafted packet to produce a buffer overrun on LSASS.EXE. This causes the program and infected system to crash, requiring Windows to reboot.
"More infections can lead to increased network traffic and result in severe network slowdowns, like an internal denial-of-service attack," said Joe Hartmann, senior virus researcher and analyst at Trend Micro.
The worm affects Windows 95, 98, ME, NT, 2000 and XP. Customers are advised to apply the necessary patches immediately. The Microsoft patches can be found here.
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Hands on with the highly anticipated Android 4.0 Ice Cream Sandwich hybrid tablet
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Project Manager (BI) 6 Months Contract – to...
Desktop Support Manager 3 month contract - to start...
/ Programme Manager / 45k / Significant benefits / London...
Automation Test Manager Selenium London 75k Automation...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?