Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×
Security Google Microsoft IT

Miscreants Exploit Google-Outed Windows XP Zero-Day 497

CWmike writes "A compromised website is serving an exploit of the bug in Windows' Help and Support Center, identified by a Google engineer last week, to hijack PCs running Windows XP. Graham Cluley, a senior technology consultant at antivirus vendor Sophos, declined to identify the site, saying only that it was dedicated to open source software. 'It's a classic drive-by attack,' said Cluley. The tactic was one of two that Microsoft said last week were the likely attack avenues. (The other was convincing users to open malicious e-mail messages.) The vulnerability was disclosed last Thursday by Google security engineer Tavis Ormandy, who also posted proof-of-concept attack code. Ormandy defended his decision to reveal the flaw only five days after reporting it to Microsoft. Cluley called Ormandy's action 'utterly irresponsible,' and in a blog post asked, 'Tavis Ormandy — are you pleased with yourself?'"
This discussion has been archived. No new comments can be posted.

Miscreants Exploit Google-Outed Windows XP Zero-Day

Comments Filter:
  • Nice quote. (Score:5, Funny)

    by ArbitraryDescriptor ( 1257752 ) on Tuesday June 15, 2010 @10:01PM (#32586358)

    Graham Cluley, a senior technology consultant at antivirus vendor Sophos, declined to identify the site, saying only that it was dedicated to open source software.

    Ballmer should be able to spin that into a win: "To be safe, all XP users are advised to avoid open source software stuff. It has viruses."

  • by Jean-Luc Picard ( 1525351 ) on Tuesday June 15, 2010 @10:07PM (#32586400)
    A security flaw being exploited, via the Internet no less ! I am shocked and outraged ! /s
  • by Anonymous Coward on Tuesday June 15, 2010 @10:09PM (#32586406)

    5 days isn't a much time to wait before releasing this crap on the rest of us.

    Speak for yourself, Windows user.

  • by pem ( 1013437 ) on Tuesday June 15, 2010 @10:12PM (#32586422)
    Google is supposed to learn morals from Microsoft and its toadies?
  • by mbeckman ( 645148 ) on Tuesday June 15, 2010 @10:15PM (#32586442)
    A day that will live in Ormandy.
  • by Ironchew ( 1069966 ) on Tuesday June 15, 2010 @10:18PM (#32586474)

    Graham Cluley...declined to identify the site, saying only that it was dedicated to open source software.

    Begging the question: was it Slashdot?
    [/humor]

  • by Barny ( 103770 ) on Tuesday June 15, 2010 @11:45PM (#32587010) Journal

    I will not fear, fear is the mind killer, fear is the little death that brings total oblivion...

    I will not fear, fear is the mind killer, fear is the little death that brings total oblivion...

    I will not fear, fear is the mind killer, fear is the little death that brings total oblivion...

    I will not fear, fear is the mind killer, fear is the little death that brings total oblivion...

  • by Anonymous Coward on Wednesday June 16, 2010 @02:11AM (#32587764)

    But this is mickeysoft. Journalism has been giving them a by for decades. Its *NEVER* their fault.
      EXAMPLES: Its the virus writers fault that viruses attack the software. If Linux were as popular, it would have viruses too. If people wouldn't publish these zero day exploits, then all the problems would go away. Can't we all just learn to get along? Its the internets fault. If you didn't plug into the internets, there would be no viruses. People are just picking on microsoft. People should pick on Linux and those others too. Linux and Mac get more viruses than microsoft, they only talk about viruses in the press because microsoft is so popular.
    /EXAMPLES
      And with that, all the fanboidom can achieve a zombie state. In the mean time, (as a Linux user who hasn't seen a virus in 15 years, has no anti-virus software on my computer, and has been plugged into the net all that time (and no sparky, I'm not infected, my computer screams speed and doesn't do anything funky) I can only watch in disbelief as people attempt self-hypnosis and delusion.

  • by mcrbids ( 148650 ) on Wednesday June 16, 2010 @02:58PM (#32593320) Journal

    Cite: TFA.

    What is this "TFA" of which you speak?

New York... when civilization falls apart, remember, we were way ahead of you. - David Letterman

Working...