A new, upgraded WMF exploit was posted to the public today and is highly functional.
More Quotes from Ken Dunham:
The threat level for this vulnerability may be dramatically increased if more automated methods of distribution are found to be successful, such as e-mail or IM or file shares. The impact of attacks may also increase, with more sinister codes being installed as new hackers attempt to leverage the vulnerability to their advantage.Ken Dunham
Then, we thought maybe the police had gotten inside the group that made Sober and might be close to an arrest. But now it's likely that they found a date coded inside an earlier version of the worm.
Ken Dunham
The attack, if it comes, could come anytime after the afternoon and the evening of the 5th.
Ken Dunham
If someone starts capitalizing on the crossover worm, and we start to see increased activity, then we can talk about a global threat. It's a little premature at this time.
Ken Dunham
We did reverse engineering on the variants, and found this date in the code. The way this works is that at a pre-determined time, computers already infected with Sober will connect with specified servers and download a new payload, which will likely be spammed out in the millions, as was the last version.
Ken Dunham
The reality is that there could have been hundreds of thousands of computers with overwritten files today. Instead, we only have a handful of reports, and that is a hands-down victory for the collaborative effort of the security community.
Ken Dunham
Readers Who Like This Quotation Also Like:
Based on Keywords: wmfAs players, we always have a way to get back at you.
Lawrence Taylor
The happiness of the bee and the dolphin is to exist. For man it is to know that and to wonder at it.
Jacques Yves Cousteau
Resignation is the courage of Christian sorrow.
Alexandre Vinet