Worms Going Further, Faster
Major Byte writes "Rob Kolstad's MOTD (pdf) column in Usenix login; passes along a few distilled factiods from a CAIDA analysis of the 'Sappire/Slammer' Worm. When it was at full blast it was scanning over 3 billion systems per hour--a speed that 'a "better" vulnerability would have enabled infection of the entire internet in 15 minutes, a "flash worm" or a "Warhol Worm."' I think 'better' to mean 'able to infect across a lot of platforms.'"
I'm wonderfully happy to live in a world where the only large-scale communication network is prone to mass disruption and/or destruction at the drop of a pin. Great.
Fast moving worms are harder for those pesky birds to get at.
I thought this article was about Worms 2 being released for linux :(
It was terrible. I had to take lots of drugs.
Cut off their arms?
There is no god
obligatory dumb and dumber:
LLOYD
(smiling)
I got worms.
MARY
I beg your pardon?
LLOYD
That's what we're gonna call it: I
Got Worms. We're gonna specialize in
selling worm farms â" you know, like
ant farms. A lot of people don't
realize that worms make much better
pets than ants. They're quiet,
affectionate, they don't bite, and
they're super with the kids.
MARY
Aren't ants quiet, too?
Thank God I've got a Mac! It's hard enough to get regular software ported, I doubt that many people would invest time to port a worm, except "Worms Blast" =D
Taking guns away from the 99% gives the 1% 100% of the power.
Some day, we will all curse like sailors and have to reboot every god damned machine we have - maybe even revert to latest backup. Some day, the apocalypse will hit us, and Internet will cough for a day like it had the SARS. And then you hope your mother wasn't in hearing range.
"Worms Going Further, Faster"
Former East German sports coaches now working on worm farms?
Comment removed based on user account deletion
Harsher spankings for the people that still haven't grasped the concept of NOT clicking that email attachment with a .vbs extension. :P
-blink-blink-
Connecting to AOL...
-blink-
You've got mail!
-blink-blink
"ooh, an attachment..."
Stop listening to Art Bell, you'll rot your brain.
a speed that 'a "better" vulnerability would have enabled infection of the entire internet in 15 minutes, a "flash worm" or a "Warhol Worm."'
A "Warhol" worm wouldn't infect the Internet in 15 minutes, it would infect it for only 15 minutes.
Hey! Thanks for the hints... heh heh heh... just kidding, maybe. ;)
And so we go, on with our lives
We know the truth, but prefer lies
Lies are simple, simple is bliss
A really nice way to make an extremely destructive worm would be to ensure that the great majority of computers connected to the internet are running the exact same operating software. This would guarantee that a vulnerability can reliably be exploited in pretty much any neighbor.
Unfortunately, such a scenario is but a dream. Modern operating systems are too secure!
Everyone knows that worms DO infect apples.
A multi-headed worm that can penetrate seven different networks at once, and steal 4 billion dollars from the Swordfish slush fund, all within ten seconds?
N4st0r, trixx0r h0bb1tz0rz! Th3y st0l3 0ur pr3c10uzz!
any idiot with a little spare time can write a reasonably effective worm.
OK, I'll nibble. Write a reasonably effective worm!
Otherwise, you're not even smart enough to be considered an idiot...
I dare ya!
There are these things called, uh, let me think, they're often connected to wires in the wall, umm, sometimes people forget to turn them off in movie theaters, err, they make noise when someone wants to talk to you, uh, damnit I forget. But they were the big thing a few years ago. I think I can even remember using them for Internet access, but maybe that was just a bad dream.
Gates' Law: Every 18 months, the speed of software halves.
"The happiest day of my life was when the doctor said I didn't have worms anymore"
If that was their point, they were a bit too subtle for their own good.
If I was going to do that, I'd stick a huge NOP slide into the payload followed by a JMP to skip over the text literal "INSERT MALICIOUS CODE HERE", just to make the point obvious :)
Nonesuch@Chicago
This issue is a bit more complicated than you think.