Opinion: Malware vs. anti-malware, 20 years into the fray
From Robert Morris Jr. to mayhem, with tips for practical living
Computerworld - As I recall, Nov. 2, 1988, started as an ordinary day at Goddard Space Flight Center where I was working in the data communications branch. By the end of the day ... well, actually, that day never ended. We just kept fighting to bring our servers and networks back to life. Our SunOS and VAX/BSD systems, which were connected to the Internet, had slowed to a stop.
We didn't know it yet, but we were fighting the first Net-propagated malware program: the Robert Morris Internet worm. Twenty-four hours into our "day," we received a fix developed by the University of California at Berkeley, and we were back online.
As it turned out, the Morris worm wasn't a deliberate attack. It was a self-replicating program with a bug that caused it to reproduce at a rate so fast that it brought down the (then much smaller) Internet. That was almost 20 years ago, and eventually it came to light that Robert Morris Jr. didn't intend to wreak the havoc he did. He was simply trying to get a hard number as to how many systems were attached to the Net.
In contrast, today's malware causes less overt havoc but far more deliberate harm. Most 21st-century crackers aren't making malware to show off their skills or wreck systems for the sheer malicious fun of itall. They're making malware that hides in your system so they can use your personal information and PC resources to make money. Welcome to the era of capitalist hacking.
In response, the security vendors come up with anti-malware programs, and we're locked into a seemingly endless battle between crackers and the defenders for the safety of our networks, our computers and our personal information. At the moment, it appears the bad guys are winning. There's more malware than ever before.
In this corner, the challenger ...
Perhaps "malware" isn't the right word. Historically, viruses, worms and the like were hit-and-run attackers -- get in, zap some files and try to leap to another PC before they were caught and cleaned out. Modern invading programs are designed to curl up and make themselves at home in your system, but they're not there to destroy your computer or your files. They're not malicious in the way as famous computer viruses as ILOVEYOU, which in 2000 destroyed untold numbers of files on Windows systems.
No, they're there to wait for a chance to snatch an important password or a credit card number, to turn the PCs under your care into a 2 a.m. spam generator, and to hurt your users and your data, not your machines. You may not even be the main target. One of the more disturbing rumors, albeit a difficult one to prove, is that some malware may not be acting on the behalf or organized cybercrime crews but by terrorists or government agencies. The Baltic country Estonia's Web sites, for example, were hit by a massive DDoS (distributed denial of service) attack last year by what was believed to be a group of Russian hackers.
Not, mind you, that viruses such as Melissa, ILOVEYOU and Sasser didn't cause enormous damage; they did. But users could avoid infection by taking relatively few, relatively simple precautions, such as never, ever opening an executable attachment sent to them via e-mail. Or they could practice safe computing by not using Outlook -- the system vulnerability that claimed to be an e-mail client. Then, however, if you used an up-to-date virus detection program and practiced safe e-mail, chances are you'd be safe.



- Excel 2010 Cheat Sheet
- Register for this Computerworld Insider Cheat Sheet and gain access to hundreds of premium content articles, guides, product reviews and more.
- Reducing the Cost and Complexity of Web Vulnerability Management
- Hackers and cybercriminals are constantly refining their attacks and targets; which means you need agile tools to stay ahead of them.
Download this... - Overcome Top 7 Admin Challenges of Active Directory
- As Active Directory's role in the enterprise has drastically increased, so has the need to secure the data. Gain insight on creating repeatable,...
- Insiders Can Ruin Your Company. Take Action.
- Did you know that 80 percent of threats to an organization come from the inside? The threat from insiders is often overlooked in...
- Top Solutions and Tools to Prevent Devastating Malware
- Custom malware frequently goes undetected. According to Forrester Research, the best way to reduce risk of breach is to deploy file integrity monitoring...
- Streamline Compliance and Increase ROI
- Streamline, simplify, and automate compliance related activities; especially those that impact multiple business units. This white paper from NetIQ, outlines solutions that will... All Malware and Vulnerabilities White Papers
- Optimizing Networks for the Cloud
- Join guest speaker, Rohit Mehra, IDC Director of Enterprise Communications Infrastructure, to explore current trends, discuss best practices for optimizing Data Center and...
- Apps QuickStart Series Part 2: Designing and Deploying SQL Server on VMware vSphere
- Download this webcast to learn about the design considerations for virtualizing SQL workloads, performance and scalability information and high-availability options, as well as...
- Apps QuickStart Series Part 1: Designing and Deploying Exchange 2010 on VMware vSphere
- Download this webcast to learn the virtual hardware design considerations for Exchange 2010, deployment using the building block approach, options for high-availability and...
- Customer Spotlight: How IPC The Hospitalist Company Implemented Oracle on VMware
- Have you been looking to hear about customer's experiences with the new VMware vCenter Site Recovery Manager product? View this webcast to learn...
- Virtualize Business-Critical Applications with Confidence
- Virtualizing business-critical applications has become a key focus for organizations as they move along their virtualization journey. With the launch of VMware vSphere®... All Malware and Vulnerabilities Webcasts