HNS Newsletter Issue 212 - 10.05.2004. http://net-security.org This is a newsletter delivered to you by Help Net Security. It covers weekly roundups of security events that were in the news the past week. ---------------------------------------------------------------- Windows Server System is integrated server infrastructure software from Microsoft that is designed to work together and interact seamlessly with other data and applications across your IT environment so you can reduce the costs of ongoing operations, deliver highly reliable and secure IT infrastructure, and drive valuable new capabilities for the future growth of your business. For more information visit http://ad.sk.doubleclick.net/clk;8019783;9084238;v ---------------------------------------------------------------- Table of contents: 1) Security news 2) Vulnerabilities 3) Advisories 4) Articles 5) Software 6) Webcasts 7)Conferences 8) Security world 9) Virus news [ Security news ] ---------------------------------------------------------------- U.S. CHARGES 4 UNDER NEW LAW AGAINST 'SPAM' E-MAILS Federal authorities say they managed to pierce the murky underworld of Internet spam e-mails, filing the first criminal charges under the government's new "can spam" legislation. http://www.net-security.org/news.php?id=5130 FIRMS SPEND MORE ON PRINTERS THAN SECURITY Users are spending less on security than printers, according to a report from IDC. However, the company does not think that pouring in more money is necessarily the answer. http://www.net-security.org/news.php?id=5132 WHY YOUR PERSONAL FIREWALL COULD BE OBSOLETE If your business has turned the use of personal firewalls into a required countermeasure, now's a good time to start thinking more strategically before buying any more personal firewall technology from a third party. http://www.net-security.org/news.php?id=5133 LINUX HAS ITS OWN SECURITY HOLES There may be fewer viruses designed to attack the Linux operating system, but experts warn that Linux is no more bulletproof than any other system. http://www.net-security.org/news.php?id=5134 INTRUDER ALERT - PREPARING FOR THE WORST-CASE SCENARIO Is the "worst-case scenario" thinking helpful when it comes to network security and can imagining an extremely potent attack give IT security personnel a better picture of their infrastructure's strengths and weaknesses? http://www.net-security.org/news.php?id=5135 STEAMED ABOUT SECURITY Lawmakers increasingly push agencies for specifics. http://www.net-security.org/news.php?id=5136 GIVE IT UP: INFO FOR PROTECTION Derek V. Smith sees bad people lurking everywhere: terrorists, quack doctors, identity thieves. And yet Smith colors himself an optimist, insisting that society can protect itself from such dicey characters, using information as a shield. http://www.net-security.org/news.php?id=5137 MICROSOFT UNVEILS NEW ANTIPIRACY TOOLS Microsoft has released details of a long-delayed update to its content protection technology, offering new features aimed at bringing piracy-proof digital content to mobile devices and home networks. http://www.net-security.org/news.php?id=5141 BIOMETRIC IDS OK WITH U.K. About 80 percent of 1,000 British adults recently surveyed say they want a biometric identification card, citing concerns about illegal immigration and identity theft. http://www.net-security.org/news.php?id=5142 NETSKY AUTHORS POSSIBLY PENNED SASSER The unknown team of programmers who created the latest variant of the Netsky virus claim to be the authors of the Sasser worm--and researchers have found evidence that supports that assertion. http://www.net-security.org/news.php?id=5143 MITNICK BUSTS BOMB HOAXER Ex-hacker Kevin Mitnick is a hero to the small town of River Rouge, Michigan, after using his tech skills to help officials nab the culprit behind a harrowing series of bomb threats. http://www.net-security.org/news.php?id=5144 WIFI HIGH CRIMES Before WiFi can entirely fulfill its promise, we'll have to confront an oppressive latticework of outdated criminal laws. http://www.net-security.org/news.php?id=5145 SASSER WORM SPREADING QUICKLY Computer security experts are dealing with at least four variants of a worm that is spreading quickly through Windows operating systems. http://www.net-security.org/news.php?id=5146 MICROSOFT SIGNS SECURITY PACT WITH GERMANY Microsoft signed a security-related agreement Monday with the federal government of Germany, where the software giant has seen numerous challenges involving open-source products. http://www.net-security.org/news.php?id=5147 WE ARE ALL SECURITY CUSTOMERS National security is a hot political topic right now, as both presidential candidates are asking us to decide which one of them is better fit to secure the country. http://www.net-security.org/news.php?id=5148 'DECEPTIVE DUO' HACKER CHARGED A Florida man has been charged in federal court in Washington DC for his alleged role as one half of the high-profile hacking team "The Deceptive Duo". http://www.net-security.org/news.php?id=5149 BOFFINS BEEF-UP WIFI SECURITY Security sits high on the WiFi development agenda this year as global adoption of the technology reaches a high. http://www.net-security.org/news.php?id=5150 WORM DAMAGE COULD HAVE BEEN REDUCED Far fewer computers would have been disabled by the latest Internet worm had their owners configured them to automatically get the latest security fixes. http://www.net-security.org/news.php?id=5151 STUDENT HACKS ITUNES FOR COMPATIBILITY Weakness in Apple's authentication technology is music to iTunes hacker's ears. http://www.net-security.org/news.php?id=5152 CYBER-CRIME FIGHT MAY NEED NEW LAWS Computer Misuse Act needs updating 'to address the network world', experts tell inquiry. http://www.net-security.org/news.php?id=5153 WORM CRASHES COASTGUARD COMPUTERS Computers at the Coastguard Agency were among millions of PCs hit yesterday by a new worm that spreads over the internet. http://www.net-security.org/news.php?id=5154 SECURITY FUNDS DRY UP On May 3, federal civilian agencies were put on notice that they could have a harder time next year finding money for certifying their computer systems' security. http://www.net-security.org/news.php?id=5155 HUNT ON FOR SASSER WORM CULPRIT Security experts began the daunting task on Wednesday of trying to track down the authors of "Sasser," a tenacious computer worm expected to infect millions of machines before it runs its course. http://www.net-security.org/news.php?id=5156 UK POLICE ARREST 12 PHISHING MULE SUSPECTS The UK's National Hi-Tech Crime Unit (NHTCU) today arrested six men and six women from Eastern Europe suspected of laundering funds from bank accounts seized through phishing scams. http://www.net-security.org/news.php?id=5157 SECURITY HAS ITS PRIVILEGES Maybe an innocent bystander can be excused for not seeing and stopping a crime about to happen, but IT security administrators can't. http://www.net-security.org/news.php?id=5158 SASSER IS FASTEST WRITTEN WINDOWS WORM The "Sasser" computer worm now plaguing computers around the world was based on a critical software flaw revealed by Microsoft just 17 days before the worm's release. http://www.net-security.org/news.php?id=5159 WORMS PART OF IT DIET Some security experts believe that it's only a matter of time before a "superworm" is unleashed. Others have brushed it aside as mere myth. http://www.net-security.org/news.php?id=5160 WI-FI SECURITY IMPROVES New standards will be certified and products shipping this year, say developers. http://www.net-security.org/news.php?id=5161 SECURITY FIRMS TEAM FOR NEW PRODUCT Antivirus-technology companies Network Associates and Check Point Software co-released on Wednesday an automated Internet and desktop security package designed for small businesses. http://www.net-security.org/news.php?id=5162 CUSTOMERS WON'T TOLERATE SECURITY BREACHES Latest research shows that firms who fall victim to hacking, viruses or phishing may have to worry about more than just patching up their systems. http://www.net-security.org/news.php?id=5163 LONGHORN WILL FEATURE 'SECURE' COMPONENTS Microsoft says it still wants to incorporate major security features into its next operating system. http://www.net-security.org/news.php?id=5164 DEFENCES TESTED BY VIRUS ATTACKS The reaction times of companies are being tested by the accelerating rate that new viruses, worms and other forms of malicious code are appearing. http://www.net-security.org/news.php?id=5165 LONGHORN: MICROSOFT'S SECURITY BULL? "Ultimately, [Microsoft's forthcoming Windows XP Service Pack 2] will be a solution to many of these [security] problems. But when it first comes out, the situation will be the same as how people treat patches now," says Jimmy Kuo, a research fellow at Network Associates. http://www.net-security.org/news.php?id=5166 SMALL BUSINESSES LEFT VULNERABLE TO VIRUS ATTACKS As the new Sasser virus does the rounds, research shows almost two-thirds of the country's small businesses have been the victim of a malicious online attack. http://www.net-security.org/news.php?id=5167 U.S. HIT BY RISE IN 'PHISHING' ATTACKS An estimated one in five Americans were the target of a "phishing" attack in the past year, as the number of such Internet scams rose dramatically, according to a study released on Thursday. http://www.net-security.org/news.php?id=5168 PRISON TIME FOR CYBER STOCK SWINDLER Teen scammer hacked a brokerage account to dump worthless Cisco options. Diary entry: "Even if I go to jail -- big deal -- I will learn something there. Hahaha." http://www.net-security.org/news.php?id=5169 NET WATCHERS WARY OF SASSER FALLOUT Though the damage wrought by Sasser failed to reach the levels of MSBlast and other major infections, security experts are warning that there could still be more trouble to come from the worm. http://www.net-security.org/news.php?id=5170 BRITAIN'S BIOMETRIC ID CARDS POSTPONED Technical problems have delayed the British government's trials for biometric ID cards by three months. http://www.net-security.org/news.php?id=5171 MAC VIRUS FEARS GROW Recent vulnerabilities could make Macs vulnerable to virus attacks. http://www.net-security.org/news.php?id=5172 SASSER INFECTION RATE ACCELERATES The rapidly evolving Sasser computer worm has torn across the internet, disrupting home computer and corporate systems, including Westpac Bank, and stoking fears of more potent outbreaks to come. http://www.net-security.org/news.php?id=5173 ---------------------------------------------------------------- [ Vulnerabilities ] All vulnerabilities are located here: http://www.net-security.org/archive_vuln.php ---------------------------------------------------------------- P4DB Multiple Vulnerabilities http://www.net-security.org/vuln.php?id=3435 PhpNuke 7.2 Multiple Vulnerabilities http://www.net-security.org/vuln.php?id=3434 Titan FTP Server Aborted LIST Denial of Service Vulnerability http://www.net-security.org/vuln.php?id=3433 SMF Size Tag Script Injection Vulnerability http://www.net-security.org/vuln.php?id=3432 Fuse Talk Multiple Vunerabilities http://www.net-security.org/vuln.php?id=3431 Verity Ultraseek Path Disclosure Vulnerability http://www.net-security.org/vuln.php?id=3430 PHPX 3.26 Multiple Vulnerabilities http://www.net-security.org/vuln.php?id=3429 Omail Remote Root Execution Vulnerability http://www.net-security.org/vuln.php?id=3428 AppleFileServer Remote Command Execution Vulnerability http://www.net-security.org/vuln.php?id=3427 PaX Linux Kernel 2.6 Patches Denial of Security Vulnerability http://www.net-security.org/vuln.php?id=3426 Coppermine Multiple Vulnerabilities http://www.net-security.org/vuln.php?id=3425 Apple QuickTime QuickTime.qts Heap Overflow Vulnerability http://www.net-security.org/vuln.php?id=3424 Serv-U LIST -l Parameter Buffer Overflow Vulnerability http://www.net-security.org/vuln.php?id=3423 Citrix MetaFrame Administrator Excessive Privilege Vulnerability http://www.net-security.org/vuln.php?id=3422 Microsoft Internet Explorer Certificate Stealing Vulnerability http://www.net-security.org/vuln.php?id=3421 3com NBX VOIP NetSet Denial of Service Vulnerability http://www.net-security.org/vuln.php?id=3420 Props 0.6.1 Multiple Vulnerabilities http://www.net-security.org/vuln.php?id=3419 SquirrelMail Multiple Cross Scripting Vulnerabilities http://www.net-security.org/vuln.php?id=3418 Moodle Cross Site Scripting Vulnerability http://www.net-security.org/vuln.php?id=3417 ---------------------------------------------------------------- [ Advisories ] All advisories are located at: http://www.net-security.org/archive_advi.php ---------------------------------------------------------------- Debian Security Advisory - New exim packages fix buffer overflows (Debian Security Advisory) http://www.net-security.org/advisory.php?id=3309 Conectiva Linux Security Announcement - lha (CLA-2004:840) http://www.net-security.org/advisory.php?id=3308 SuSE Security Announcement - Live CD 9.1 (SuSE-SA:2004:011) http://www.net-security.org/advisory.php?id=3307 FreeBSD Security Advisory - heimdal kadmind remote heap buffer overflow (FreeBSD-SA-04:09.kadmind) http://www.net-security.org/advisory.php?id=3306 FreeBSD Security Advisory - heimdal cross-realm trust vulnerability (FreeBSD-SA-04:08.heimdal) http://www.net-security.org/advisory.php?id=3305 OpenPKG Security Advisory - kolab (OpenPKG-SA-2004.019) http://www.net-security.org/advisory.php?id=3304 SCO Security Advisory - UnixWare 7.1.3 Open UNIX 8.0.0 UnixWare 7.1.1: apache multiple vulnerabilities, upgraded to apache-1.3.29 (SCOSA-2004.6) http://www.net-security.org/advisory.php?id=3303 Slackware Security Advisory - lha update in bin package (SSA:2004-125-01) http://www.net-security.org/advisory.php?id=3302 SGI Security Advisory - Sasser worm and Embedded Support Partner (ESP) port 5554/tcp (20040501-01-I) http://www.net-security.org/advisory.php?id=3301 Apple Security Advisory - Security Update 2004-05-03 (APPLE-SA-2004-05-03) http://www.net-security.org/advisory.php?id=3300 SUSE Security Announcement - Linux Kernel (SuSE-SA:2004:010) http://www.net-security.org/advisory.php?id=3299 Slackware Security Advisory - libpng update (SSA:2004-124-04) http://www.net-security.org/advisory.php?id=3298 Slackware Security Advisory - xine-lib update (SSA:2004-124-03) http://www.net-security.org/advisory.php?id=3297 Slackware Security Advisory - sysklogd update (SSA:2004-124-02) http://www.net-security.org/advisory.php?id=3296 Slackware Security Advisory - rsync update (SSA:2004-124-01) http://www.net-security.org/advisory.php?id=3295 Microsoft Security Update Alert - Sasser Worm http://www.net-security.org/advisory.php?id=3294 Debian Security Advisory - New flim packages fix insecure temporary file creation (DSA 500-1) http://www.net-security.org/advisory.php?id=3293 Debian Security Advisory - New rsync packages fix directory traversal bug (DSA 499-1) http://www.net-security.org/advisory.php?id=3292 Netwosix Linux Security Advisory - xchat (2004-0014) http://www.net-security.org/advisory.php?id=3291 Netwosix Linux Security Advisory - samba (2004-0013) http://www.net-security.org/advisory.php?id=3290 Apple Security Update - QuickTime 6.5.1 (APPLE-SA-2004-04-30) http://www.net-security.org/advisory.php?id=3289 Red Hat Security Advisory - Updated mc packages resolve several vulnerabilities (RHSA-2004:173-01) http://www.net-security.org/advisory.php?id=3288 Mandrakelinux Security Update Advisory - proftpd (MDKSA-2004:041) http://www.net-security.org/advisory.php?id=3287 Red Hat Security Advisory - Updated OpenOffice packages fix security vulnerability in neon (RHSA-2004:163-01) http://www.net-security.org/advisory.php?id=3286 Red Hat Security Advisory - Updated libpng packages fix crash (RHSA-2004:181-01) http://www.net-security.org/advisory.php?id=3285 Trustix Secure Linux Security Advisory - libpng proftpd (2004-0025) http://www.net-security.org/advisory.php?id=3284 Red Hat Security Advisory - Updated utempter package fixes vulnerability (RHSA-2004:175-01) http://www.net-security.org/advisory.php?id=3283 OpenPKG Security Advisory - proftpd (OpenPKG-SA-2004.018) http://www.net-security.org/advisory.php?id=3282 Debian Security Advisory - libpng, libpng3 (DSA 498-1) http://www.net-security.org/advisory.php?id=3281 Trustix Secure Linux Security Advisory - rsync (2004-0024) http://www.net-security.org/advisory.php?id=3280 Red Hat Security Advisory - Updated httpd packages fix mod_ssl security issue (RHSA-2004:182-01) http://www.net-security.org/advisory.php?id=3279 Red Hat Security Advisory - An updated LHA package fixes security vulnerabilities (RHSA-2004:179-01) http://www.net-security.org/advisory.php?id=3278 Red Hat Security Advisory - An updated X-Chat package fixes vulnerability in Socks-5 (RHSA-2004:177-01) http://www.net-security.org/advisory.php?id=3277 Mandrakelinux Security Update Advisory - libpng (MDKSA-2004:040) http://www.net-security.org/advisory.php?id=3276 Mandrakelinux Security Update Advisory - mc (MDKSA-2004:039) http://www.net-security.org/advisory.php?id=3275 OpenPKG Security Advisory - png (OpenPKG-SA-2004.017) http://www.net-security.org/advisory.php?id=3274 Gentoo Linux Security Advisory - Multiple Vulnerabilities in Samba (GLSA 200404-21) http://www.net-security.org/advisory.php?id=3273 Debian Security Advisory - New mc packages fix several vulnerabilities (DSA 497-1) http://www.net-security.org/advisory.php?id=3272 ---------------------------------------------------------------- [ Articles ] All articles are located at: http://www.net-security.org/articles_main.php Articles can be contributed to articles@net-security.org ---------------------------------------------------------------- SCANNING THE HORIZON Let's look at the key features of a vulnerability assessment scanner and how to get the most out of this essential tool. http://www.net-security.org/article.php?id=683 HNS LEARNING SESSION: DDOS THREATS In this ten minute audio you are introduced to the enormous threat of Distributed Denial of Service attacks in the Internet era and you hear what should organizations do to stop them. http://www.net-security.org/article.php?id=684 NVIDIA FIREWALL CERTIFIED BY ICSA LABS The firewall itself will be integrated into new NVIDIA nForce media and communication processors, including the NVIDIA nForce3 250Gb MCP. http://www.net-security.org/article.php?id=685 ---------------------------------------------------------------- [ Software ] Windows software is located at: http://net-security.org/software_main.php?cat=1 Linux software is located at: http://net-security.org/software_main.php?cat=2 Pocket PC software is located at: http://net-security.org/software_main.php?cat=3 ---------------------------------------------------------------- Symantec Sasser Removal Tool http://www.net-security.org/software.php?id=559 F-Secure Sasser Removal Tool http://www.net-security.org/software.php?id=560 ---------------------------------------------------------------- [ Webcasts ] All webcasts are located at: http://www.net-security.org/webcasts.php ---------------------------------------------------------------- Seven Simple Truths About Multi-Function Protection Organized by ISS on 11 May 2004, 11:00 AM EDT http://www.net-security.org/webcast.php?id=271 The Basics of WLAN Security Organized by Funk Software on 11 May 2004, 1:00 PM EDT http://www.net-security.org/webcast.php?id=275 Vulnerability Expert Forum Organized by eEye on 12 May 2004, 1:00 PM PST http://www.net-security.org/webcast.php?id=277 Network Forensics Made Easy Organized by eEye on 13 May 2004, 11:00 AM PST http://www.net-security.org/webcast.php?id=278 Combat Spam and Improve Productivity Organized by ISS on 13 May 2004, 1:00 PM EDT http://www.net-security.org/webcast.php?id=272 Top Five Web Application Server Protection Strategies Organized by eEye on 18 May 2004, 10:00 AM PST http://www.net-security.org/webcast.php?id=279 Architecting Your 802.1x-Based WLAN Deployment Organized by Funk Software on 18 May 2004, 1:00 PM EDT http://www.net-security.org/webcast.php?id=276 The Next Generation of Managed Security Services Organized by ISS on 25 May 2004, 11:00 AM EDT http://www.net-security.org/webcast.php?id=273 Automate Remediation Activities for Efficient Vulnerability Management Organized by eEye on 27 May 2004, 10:00 AM PST http://www.net-security.org/webcast.php?id=280 Virtual Patch - The Next Generation of Managed Protection Services Organized by ISS on 8 June 2004, 11:00 AM EDT http://www.net-security.org/webcast.php?id=274 ---------------------------------------------------------------- [ Conferences ] All conferences are located at: http://www.net-security.org/conferences.php ---------------------------------------------------------------- Computer Security Mexico 2004 Organized by Computer Security Department and UNAM-CERT - 27 May-28 May 2004 http://www.net-security.org/conference.php?id=87 RSA Conference 2004 Japan Organized by RSA Conference 2004 Japan Executive Comittee - 31 May-1 June 2004 http://www.net-security.org/conference.php?id=82 Infosecurity Canada Conference & Exhibition 2004 Organized by Reed Exhibitions - 1 June-3 June 2004 http://www.net-security.org/conference.php?id=86 BCS Birmingham IT Security Conference 2004 Organized by British Computer Society - 8 June-8 June 2004 http://www.net-security.org/conference.php?id=81 16th Annual FIRST Conference Organized by FIRST - 13 June-18 June 2004 http://www.net-security.org/conference.php?id=22 NetSec 2004 Organized by Computer Security Institute - 14 June-16 June 2004 http://www.net-security.org/conference.php?id=20 2004 USENIX Annual Technical Conference Organized by USENIX Association - 27 June-2 July 2004 http://www.net-security.org/conference.php?id=66 DIMVA 2004 Organized by German Informatics Society - 6 July-7 July 2004 http://www.net-security.org/conference.php?id=47 RUXCON 2004 Organized by Australian computer security community - 10 July-11 July 2004 http://www.net-security.org/conference.php?id=88 Open Source Convention 2004 Organized by O'Reilly - 26 July-30 July 2004 http://www.net-security.org/conference.php?id=89 13th USENIX Security Symposium Organized by USENIX Association - 9 August-13 August 2004 http://www.net-security.org/conference.php?id=67 The 14th Virus Bulletin International Conference (VB2004) Organized by Virus Bulletin - 29 September-1 October 2004 http://www.net-security.org/conference.php?id=83 RSA Conference Europe 2004 Organized by RSA Security - 3 November-5 November 2004 http://www.net-security.org/conference.php?id=90 ---------------------------------------------------------------- [ Security world ] All press releases are located at: http://www.net-security.org/press_main.php Send your press releases to press@net-security.org ---------------------------------------------------------------- Utimaco Chosen as Exclusive Provider of Security Solutions for PCs and Notebooks by the Finnish Government http://www.net-security.org/press.php?id=2108 Bluefire Disables Bluetooth and Infrared Device Communication With New Version Of Mobile Security Software http://www.net-security.org/press.php?id=2107 ISL Biometrics and A4Vision Collaborate to provide 3D Facial Recognition Secured Access and Identity Monitoring Solution http://www.net-security.org/press.php?id=2106 Permeo Technologies Releases Permeo Application Security Gateway 5.1 http://www.net-security.org/press.php?id=2105 "Linux Unwired" Released by O'Reilly http://www.net-security.org/press.php?id=2104 Certicom Licenses Intellectual Property to Research In Motion (RIM) http://www.net-security.org/press.php?id=2103 GFI Slashes Prices For Event Log Monitoring by up to 60% http://www.net-security.org/press.php?id=2102 ServGate Enhances McAfee-based Email Filtering Engine with Intelligent Spam Prevention and Heuristics Capabilities http://www.net-security.org/press.php?id=2101 AEP Systems Hires New Positions, Strengthens AEP Sureware Net Team http://www.net-security.org/press.php?id=2100 Aladdin and Crossbeam Systems Partner to Offer Powerful Content Security for High Capacity and High Availability Customers http://www.net-security.org/press.php?id=2099 Sygate Technologies Named Finalist For Red Herring Top 100 http://www.net-security.org/press.php?id=2098 Lurhq Reports Sasser Worm Rapidly Spreading Across Internet http://www.net-security.org/press.php?id=2097 ---------------------------------------------------------------- [ Virus News ] All virus news are located at: http://www.net-security.org/viruses.php ---------------------------------------------------------------- PandaLabs in the Hunt for the Authors of the Sasser Worms http://www.net-security.org/virus_news.php?id=402 Sasser Epidemic Collateral Damage http://www.net-security.org/virus_news.php?id=401 Symantec Response to Sasser Worm - New information http://www.net-security.org/virus_news.php?id=400 New Netsky Worm Poses as a Cure For Sasser http://www.net-security.org/virus_news.php?id=399 Information Quotes on Sasser Worm http://www.net-security.org/virus_news.php?id=398 New Automatic Internet Worm Spreading at Increasing Pace http://www.net-security.org/virus_news.php?id=397 Top Ten Viruses And Hoaxes Reported To Sophos in April 2004 http://www.net-security.org/virus_news.php?id=396 Panda Software Offers to Every User the Free Tool to Disinfect and Remove Sasser.A http://www.net-security.org/virus_news.php?id=395 Panda ActiveScan Top 10 Viruses in April 2004 http://www.net-security.org/virus_news.php?id=394 Weekly Report on Viruses and Intrusions - Bagle and NetSky Variants, Gimered and Gaobot Worms http://www.net-security.org/virus_news.php?id=393 ---------------------------------------------------------------- Questions, contributions, comments or ideas go to: Help Net Security staff staff@net-security.org http://net-security.org ---------------------- Unsubscribe from this weekly digest on: http://www.net-security.org/subscribe.php The archive of the newsletter in TXT and PDF format is available http://www.net-security.org/newsletter_archive.php ---------------------------------------------------------------- Windows Server System is integrated server infrastructure software from Microsoft that is designed to work together and interact seamlessly with other data and applications across your IT environment so you can reduce the costs of ongoing operations, deliver highly reliable and secure IT infrastructure, and drive valuable new capabilities for the future growth of your business. For more information visit http://ad.sk.doubleclick.net/clk;8019783;9084238;v ----------------------------------------------------------------