January 03, 2006

Microsoft Windows Vulnerable To 'Huge' Virus Threat

Russian Programmer Develops Unofficial Fix

All versions of Microsoft Windows are now thought to be vulnerable to viruses and spyware exploiting Windows Metafile (WMF) files.

From Financial Times via The Drudge Report:

The flaw, which allows hackers to infect computers using programs maliciously inserted into seemingly innocuous image files, was first discovered last week. But the potential for damaging attacks increased dramatically at the weekend after a group of computer hackers published the source code they used to exploit it. Unlike most attacks, which require victims to download or execute a suspect file, the new vulnerability makes it possible for users to infect their computers with spyware or a virus simply by viewing a web page, e-mail or instant message that contains a contaminated image.

“We haven’t seen anything that bad yet, but multiple individuals and groups are exploiting this vulnerability,” Mr Hyppönen said. He said that every Windows system shipped since 1990 contained the flaw.

...some security experts were urging system administrators to take the unusual step of installing an unofficial patch created at the weekend by Ilfak Guilfanov, a Russian computer programmer.

The Russian patch is available here. Guilfanov recommends uninstalling it as soon as Microsoft gets off the dime and offers their own patch. I can't vouch for the patch. Most corporate system administrators will not use unofficial patches. If you install it, read everything carefully and proceed at your own risk.

Also posted at The Dread Pundit Bluto.

Posted by: Bluto at 01:16 AM | Comments (11) | Add Comment
Post contains 255 words, total size 2 kb.

1 Agent Smith says "The virus is ME".

Posted by: Agent Smith at January 03, 2006 06:07 AM (0kwVT)

2 You've certainly behaved virus-like here.

Posted by: Oyster at January 03, 2006 07:26 AM (YudAC)

3 Whoah baby look at that there virus threat. Why, that sucker's huge.

Posted by: Tiny Elvis at January 03, 2006 08:50 AM (D3+20)

4 We need a patch against the Liberal virus.

Posted by: Jesusland Carlos at January 03, 2006 09:15 AM (8e/V4)

5 Hmmmmm! Have "Me" finally transititioned to M2 - the Architect will be displeased.

Posted by: hondo at January 03, 2006 09:40 AM (3aakz)

6 Bluto's post Bluto's rules. I would imagine he has left 98% of your blabber. So you did not get your way one time and are whining? Now who is acting age two here?

Posted by: Howie at January 04, 2006 08:59 AM (D3+20)

7 Howie: I had left 99.9% of his blather. Now I've flushed all of his comments from my posts.

Posted by: The Dread Pundit Bluto at January 04, 2006 11:14 AM (RHG+K)

8 I take it your referring to artie - OK & not Smith - Smith I can deal with, and appreciate.

Posted by: hondo at January 04, 2006 12:56 PM (3aakz)

9 Yes, apparently artie has gone off his meds and is experiencing a major psychotic break. Of course, I always find it flattering when lib stalker fixates on me.

Posted by: The Dread Pundit Bluto at January 04, 2006 01:18 PM (RHG+K)

10 Show him your photo - that will spook him - nice shirt - is that the Hudson or Mohawk Valley.

Posted by: hondo at January 04, 2006 01:34 PM (3aakz)

11 Neither, it's the Hollywood Hills. We took a vacation to the left coast last year. I don't want to scare him off. I'm hoping he'll start a "Bluto Sucks" or "Dreadwatch" blog. Then I'll know that I've arrived.

Posted by: The Dread Pundit Bluto at January 04, 2006 01:52 PM (RHG+K)

Hide Comments | Add Comment

Comments are disabled. Post is locked.
18kb generated in CPU 0.3422, elapsed 0.3894 seconds.
118 queries taking 0.375 seconds, 240 records returned.
Powered by Minx 1.1.6c-pink.