Big Yellow worm targets Symantec bug

By
Follow google news

Online threats shifting away from Microsoft, warns security researcher.


Researchers at EEye Digital Security claim to have found a worm that targets Symantec's antivirus software.

The 'Big Yellow' malware targets a flaw in the remote management interface for the Symantec AntiVirus and Symantec Client Security applications.

On infection, systems are recruited for a botnet and the worm starts using the system as a launch for further infections.

Symantec issued a patch for the flaw in May, but many enterprises failed to deploy the update.

Marc Maiffret, chief technology officer at EEye, suggested that many users do not perceive software flaws in non-Microsoft products as a serious threat because large scale attacks 'always' target Microsoft.

However, Maiffret expects that the Big Yellow worm is the first of many online threats that target non-Microsoft software.

"Given the rapid discovery of critical vulnerabilities within desktop applications other than Microsoft's, the release of malware of this magnitude targeting non-Microsoft software was only a matter of time," he said.
Got a news tip for our journalists? Share it with us anonymously here.
Copyright ©v3.co.uk
Tags:

Most Read Articles

Popular text editor Notepad++ was hacked to drop malware

Popular text editor Notepad++ was hacked to drop malware

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

'Moltbook' social media site for AI agents had big security hole

'Moltbook' social media site for AI agents had big security hole

Under malware threat, runaway AI agent project OpenClaw turns to Google's VirusTotal

Under malware threat, runaway AI agent project OpenClaw turns to Google's VirusTotal

Log In

  |  Forgot your password?