Thursday, February 12, 2009

Wanted: Parties Responsible for Conficker

Microsoft (Nasdaq “MSFT”) announced today a $250,000 reward for information that results in the arrest and conviction of the responsible parties who illegally launched the Conficker (Downadup) worm on the Internet.

Microsoft additionally announced a partnership with the following organizations to "implement a coordinated, global response to the Conficker worm:
ICANN, NeuStar, VeriSign, CNNIC, Afilias, Public Internet Registry, Global Domains International Inc., M1D Global, AOL, Symantec, F-Secure, ISC, researchers from Georgia Tech, the Shadowserver Foundation, Arbor Networks and Support Intelligence
From Microsoft Collaborates With Industry to Disrupt Conficker Worm: Microsoft offers $250,000 reward for Conficker arrest and conviction:
“The best way to defeat potential botnets like Conficker/Downadup is by the security and Domain Name System communities working together,” said Greg Rattray, chief Internet security advisor at ICANN. “ICANN represents a community that’s all about coordinating those kinds of efforts to keep the Internet globally secure and stable.”

“Microsoft’s approach combines technology innovation and effective cross-sector partnerships to help protect people from cybercriminals,” Stathakopoulos said. “We hope these efforts help to contain the threat posed by Conficker, as well as hold those who illegally launch malware accountable.”






Remember - "A day without laughter is a day wasted."
May the wind sing to you and the sun rise in your heart...

Tuesday, February 10, 2009

February 2009 Monthly Bulletin Release

The February security updates have been released:
  • MS09-002 rated Critical that addresses two code execution vulnerabilities in Internet Explorer.
  • MS09-003 rated Critical that addresses one code execution vulnerability and one denial of service vulnerability in Exchange Server.
  • MS09-004 rated Important that addresses one code execution vulnerability in SQL Server
  • MS09-005 rated Important that addresses three code execution vulnerabilities in Visio.
Also updated is the Malicious Software Removal Tool.

Additional information is available in the MSRC Blog at February 2009 Monthly Bulletin Release and TechNet at Microsoft Security Bulletin Summary for February 2009.




Remember - "A day without laughter is a day wasted."
May the wind sing to you and the sun rise in your heart...

New Information Pages on Conficker

Microsoft has posted two new pages that provide information you can use to protect against and remove Conficker. The pages consolidate information that Microsoft has related to the Conficker incident. In addition links are provided to more detailed resources such as the Microsoft Malware Protection Center weblog and encyclopedia.

For Consumers: For IT Professionals and Enterprise Clients:



Remember - "A day without laughter is a day wasted."
May the wind sing to you and the sun rise in your heart...