News Blog

News Blog


Conficker 3.0: April Fool's joke or serious security threat?

It could be just another April Fool's joke, but just in case, security experts are warning Microsoft Windows users that the creators of the Conficker computer worm may launch a new campaign tomorrow to infect as many PCs as possible with their malicious software. This third generation of Conficker—the worm has been on the loose since November and has infected nearly 15 million computers—is expected to use new methods of spreading that security pros have yet to completely block.

The latest version of Conficker (which has various aliases, including Conficker.D, Conficker.C or Downadup.C) snuck onto computers already infected by one of its predecessors. According to Microsoft's Security Response Center Web page, this new version, which the company refers to as Conficker.D, does not spread by attacking new systems. Conficker.D does, however, have a new "peer-to-peer" updating capability that could enable infected systems to spread or receive instructions from those controlling the worm (it's creators remain at large) to steal info from infected computers or generate large amounts of spam e-mail that could clog the Internet and slow its performance, according to a Web posting by the Conficker Working Group (a team of computer security specialists formed by Microsoft, Internet Corporation for Assigned Names and Numbers (ICANN), and various security software makers to keep the worm from spreading).

The worm has already infected the French Navy computer network Intramar, U.K. Ministry of Defense and Great Britain's House of Commons, among others. Like a computer virus, a worm is a software program that can travel over a network and enter a computer through a flaw in that computer's software or operating system. Unlike a virus, a worm can automatically copy itself from one computer to another.

A common worm behavior is to raid the address book on a user's computer and send out copies of itself via e-mail to all contacts in it. This mass e-mailing not only spreads the worm, it also clogs networks, making them sluggish.

As with any infection, the best way to protect oneself is to avoid getting it in the first place. Microsoft and its competitors sell a variety of security software to patch holes in Windows and other programs. Other measures to protect against Conficker and other worms include setting up a firewall that screens information entering your computer from the Web and avoiding e-mail attachments if it's not clear where they came from or what they'll do when opened. If a worm does wriggle its way into a computer, it has the ability to lock users out of that computer, disable security software already installed on the computer, and/or block users from accessing Web sites that sell security software.

It's a mystery who unleashed Conficker on the world, but CNET reports that Vietnamese security firm BKIS says it has clues suggesting the worm may have originated in China. BKIS claims to have spotted similarities between Conficker's code and that of the 2001 Nimda worm, which the company believes was made in China. There were earlier rumors that it might have hailed from Russia or Europe, according to CNET.

Some Internet security firms point out that no one actually knows what Conficker will do on April 1, so there's no reason to act as though the sky is falling. According to a blog earlier this month by Boston-based security firm Sophos Plc., "It's quite possible that Conficker will not do anything significant on April 1st. Certainly it won't be 'deadly' and your computers won't melt."

The FBI today issued a statement about Conficker indicating the agency will be on alert to "fully identify and mitigate the threat" and warning the public not to fall for spam e-mails that might unleash the worm on their computers.

Image ©iStockphoto.com/ Baris Onal

Tags: China, Windows, Microsoft, Nimda, Conficker
More News Blog: Next: JAMA editors embroiled in brouhaha over treatment of critic Previous: EPA to monitor air outside toxic schools

4 Comments

Add Comment
View
  1. 1. hotblack 07:03 PM 3/31/09

    Sweet! Day off tomorrow!

    Reply | Report Abuse | Link to this
  2. 2. Cristofero 05:34 PM 4/1/09

    Thid one not a joke. It hst over 20 million users so far. I am concerned for my computer. To Not be on of them, as I understand what it does and that is not vey nice. I hope you have your tops lookin to help fis this this wor,m.

    Sndy

    Reply | Report Abuse | Link to this
  3. 3. Cristofero 05:51 PM 4/1/09

    I feel this worm is something to not walkke over loosilu. When a hacker finds a back door to windows ooperating systems, This opene so many door with a c omputer to where they can do just about anying, Tom me that is a major concern, Cristofero

    Reply | Report Abuse | Link to this
  4. 4. Cork1 04:44 AM 4/2/09

    Where is it, Did it fizzle out on Apr 1?

    Reply | Report Abuse | Link to this
Leave this field empty

Add a Comment

You must sign in or register as a ScientificAmerican.com member to submit a comment.
Click one of the buttons below to register using an existing Social Account.

More from Scientific American

See what we're tweeting about

Scientific American Editors

More »

Free Newsletters


Get the best from Scientific American in your inbox

Solve Innovation Challenges

Powered By: Innocentive

  SA Digital

Latest from SA Blog Network

  SA Digital

Science Jobs of the Week

Email this Article

Conficker 3.0: April Fool's joke or serious security threat?: Scientific American Blog

X
Scientific American Magazine

Subscribe Today

Save 66% off the cover price and get a free gift!

Learn More >>

X

Please Log In

Forgot: Password

X

Account Linking

Welcome, . Do you have an existing ScientificAmerican.com account?

Yes, please link my existing account with for quick, secure access.



Forgot Password?

No, I would like to create a new account with my profile information.

Create Account
X

Report Abuse

Are you sure?

X

Institutional Access

It has been identified that the institution you are trying to access this article from has institutional site license access to Scientific American on nature.com. To access this article in its entirety through site license access, click below.

Site license access
X

Error

X

Share this Article

X

About the Bering in Mind Blog

In this column presented by Scientific American Mind magazine, research psychologist Jesse Bering of Queen's University Belfast ponders some of the more obscure aspects of everyday human behavior. Ever wonder why yawning is contagious, why we point with our index fingers instead of our thumbs or whether being breastfed as an infant influences your sexual preferences as an adult? Get a closer look at the latest data as "Bering in Mind" tackles these and other quirky questions about human nature. Sign up for the RSS feed or friend Dr. Bering on Facebook and never miss an installment again.

X

About the Cross-check Blog

Every week, John Horgan takes a puckish, provocative look at breaking science. A former staff writer at Scientific American, he is the author of several books—most notably, The End of Science: Facing the Limits of Knowledge in the Twilight of the Scientific Age. He currently directs the Center for Science Writings at Stevens Institute of Technology. He lives in New York State's Hudson Highlands, where he plays ice hockey each winter to hone his cross-checking skills.

X

Expeditions Blog

Ever wonder what it's really like to be working in Antarctica or collecting core samples from the middle of the Pacific Ocean? Get a first-hand feel for scientific exploration by following the blog posts of researchers out in the field.

X

About the Extinction Countdown Blog

Several times a week, John Platt shines a light on endangered species from all over the globe, exploring not just why they are dying out but also what's being done to rescue them from oblivion. From unusual or little-known organisms like the giant spitting earthworm and the stinking hawk's-beard to popular favorites like cheetahs and koalas, Platt, a journalist specializing in environmental issues and technology, does his part to slow the countdown.

X

About the Guest Blog

The editors of Scientific American regularly encounter perspectives on science and technology that we believe our readers would find thought-provoking, fascinating, debatable and challenging. The guest blog is a forum for such opinions. The views expressed belong to the author and are not necessarily shared by Scientific American.

X

About the Solar at Home Blog

Follow Scientific American editor George Musser as he installs--or tries to install--solar photovoltaic panels on the roof of his suburban New Jersey home. You'll learn the literal nuts and bolts of going green with the sun and get energy-saving tips even if you aren't putting up panels.

Write to us with tips or comments at blog@sciam.com and follow us on Twitter: http://twitter.com/sciam.

X