Slashdot Mirror


Name That Worm

Ant wrote to mention a C|NET article reporting on the Common Malware Enumeration (CME) initiative, now emerging from its test phase. From the article: "Next month, the U.S. Computer Emergency Readiness Team (CERT) plans to officially take the wraps off the effort, meant to reduce the confusion caused by the different names security companies give worms, viruses and other pests. The project assigns a unique identifier to a particular piece of malicious software. When included in security software, in alerts and in virus encyclopedia entries, this identifier should help people determine which pest is hitting their systems and whether they are protected ..."

5 of 80 comments (clear)

  1. Proposal by b100dian · · Score: 2, Interesting

    Run all antiviruses on a machine.
    Exec the worm.
    Blitblt the screenshot into an OCR buffer.
    Compute the name of the worm

    extra step: see if all AVs fired: if not so, the naming can become "AV killer"

    --
    gtkaml.org
  2. Compliance will be an issue... by Anonymous Coward · · Score: 2, Interesting

    I think the most difficult part of this proposal will be getting the virus writers to include the unique identifier in their code. Besides, isn't the evil bit already supposed to take care of this issue?

  3. Not hard to do by Red+Flayer · · Score: 2, Interesting

    Why don't we just use the Linnean system?

    I'm all about latin names for malware -- for one thing, malware creators won't feel so cool when their piece of code gets designated "Caenorhabditis Crapiticus" of the phylum Nematoda.

    --
    "Trolls they were, but filled with the evil will of their master: a fell race..." -- J.R.R. Tolkien on Olog-hai
  4. Ya know... by Shadow+Wrought · · Score: 2, Interesting

    It's not a like a hurricane in which everyone can agree on which worm is which. How do you know that Worm Bob really is an unique new worm, and not just a variant of Worm Jimbo? And what happens when the 21 names run out?

    --
    If brevity is the soul of wit, then how does one explain Twitter?
  5. CARO? by Leebert · · Score: 2, Interesting

    Whatever happened to the Compute Antivirus Research Organization (CARO)? I thought they were the de facto standard for naming of viruses.