Sasser worm spreads rapidly across internet

By

The Sasser worm was infecting thousands of systems by exploiting a recently announced Microsoft flaw, security experts said Monday.

Researchers at Internet Security Systems estimated 500,000 to one million Sasser infections.


Sasser exploits the Microsoft Local Security Authority Subsystem Service (LSASS) vulnerability, which Microsoft announced and issued a patch for last month.

The worm spreads by scanning randomly chosen IP addresses on unpatched Microsoft systems, according to Symantec. The vendor upgraded a second version of the worm, Sasser.B, to a Category 4 threat, meaning a severe threat.

Sasser affects Windows XP and Windows 2000 systems. A patch for the vulnerability the worm exploits can be downloaded from Microsoft's web site at www.microsoft.com

 

 

 

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

CBA using facial recognition logins to verify disputed payments

CBA using facial recognition logins to verify disputed payments

Researchers demo AI-crippling GPUHammer attack

Researchers demo AI-crippling GPUHammer attack

Qantas obtains court order to prevent third-party access to stolen data

Qantas obtains court order to prevent third-party access to stolen data

Google Gemini for Workspace vulnerable to prompt injection attacks

Google Gemini for Workspace vulnerable to prompt injection attacks

Log In

  |  Forgot your password?