Slashdot Mirror


WMF Exploit Sold Underground for $4,000

tero1176 writes "Eweek has a story with information from Kaspersky showing that exploit code used in the WMF malware attack was being peddled on underground sites by rival Russian hacker groups for $4,000 in early December. The first sign of an exploit was traced back to the December 1, 2005, a full month before anti-virus vendors started noticing mysterious WMF files rigged with malicious executable code. It serves as more proof that the market for malware is well and truly alive."

9 of 166 comments (clear)

  1. Maybe they should get involved... by ackthpt · · Score: 5, Funny
    It serves as more proof that the market for malware is well and truly alive."

    Do you suppose Microsoft will try to enter this market, too?

    --

    A feeling of having made the same mistake before: Deja Foobar
    1. Re:Maybe they should get involved... by ozmanjusri · · Score: 4, Funny

      You are hear by forbidden from ever using statistics or percentages again.

      You are the only one here who thinks hereby is spelled "hear by" or throw is spelled "through". *

      You are hereby forbidden to use the English language in a pedantic and patronising manner ever again.

      * Probably not true

      --
      "I've got more toys than Teruhisa Kitahara."
  2. What, you expected... by Orrin+Bloquy · · Score: 4, Funny

    ...open source exploits for a commercial OS?

    Joke, don't waste your mod points here.

    --
    "Made up/misattributed quote that makes me look smart. I am on /. and I must look smart."
  3. Access to this market by davidgrouchy · · Score: 5, Funny

    Will my AT&T "platinum," "gold" and "silver" levels of Internet access provide access to this underground market ?

  4. Russians eh? by Dragon+of+the+Pants · · Score: 4, Funny

    In Soviet Russia, code exploits you!

  5. DRM needed by Anonymous Coward · · Score: 5, Funny

    Ironically, copies of the exploit were pirated by a group of Chinese hackers and sold on Ebay for pennies on the dollar...

  6. Re:Windows Only? by AndroidCat · · Score: 4, Funny
    I remember a mud client, early version of Tintin, IIRC, which would make all players shout "Snowy rules, OK" if a client saw some particular text.

    Not unlike Slashdot where certain text will cause all readers to post "All your base", "Soviet Russia", "..only old people", "3. Profit!" comments.

    --
    One line blog. I hear that they're called Twitters now.
  7. unknown name? by AyeRoxor! · · Score: 4, Funny

    "[...] the vulnerability was detected by an unnamed person around Dec. 1, 2005."

    Ok, what are the chances that this person really has no name?!

    I'm going to have to call shenanigans on this whole article.

  8. Great seller! by saboola · · Score: 4, Funny

    Exploit works as advertised!!! Speedy email!! Would Buy From AGAIN!! A+++++++++++! :)