무섭다 ㅡ.ㅡ; 자세한 내용은 원문으로 확인하시길...
원문보기 : http://www.theregister.co.uk/2009/03/24/psyb0t_home_networking_worm/
By Dan Goodin in San Francisco • Get more from this author
Posted in Security, 24th March 2009 00:20 GMT
Security researchers have identified a sophisticated piece of malware that corals consumer routers and DSL modems into a lethal botnet.
The "psyb0t" worm is believed to be the first piece of malware to target home networking gear, according to researchers from DroneBL, which bills itself as a real-time monitor of abusable internet addresses. It has already infiltrated an estimated 100,000 hosts. It has been used to carry out DDoS, or distributed denial of service, attacks and is also believed to use deep-packet inspection to harvest user names and passwords.
"This technique is one to be extremely concerned about because most end users will not know their network has been hacked, or that their router is exploited," the DroneBL researchers wrote here. "This means that in the future, this could be an attack vector for the theft of personally identifying information. This technique is not going away."
Vulnerable devices include any home router or modem that uses Linux Mipsel, has an administration interface, sshd, or telnet in a DMZ, and employs a weak password. Once the malware takes hold, it locks legitimate users out of the device by blocking telnet, sshd, and web access. It then makes the devices part of a botnet. The researchers said they first learned of the worm while investigating DDoS attacks that hit DroneBL's infrastructure two weeks ago.
The worm also helps identify exploitable phyMyAdmin and MySQL servers. More information about psyb0t is available from this research paper (PDF) published in January
'IT 보안소식' 카테고리의 다른 글
드디어 내일이 4.1일 Conficker.C는 동작할것인가 ㅋ (2) | 2009.03.31 |
---|---|
바이러스토탈 "Antiy-AVL" 엔진 추가 (0) | 2009.03.24 |
Internet Explorer 8 등장 (8) | 2009.03.19 |
11일, KISA와 SK컴즈 간 보안 MOU 체결[보안뉴스] (0) | 2009.03.11 |
[Eset오탐지] Eset false alarm puts system files on remand (0) | 2009.03.11 |
댓글