Johannes Ullrich
Johannes Ullrich
Johannes Ullrich is the founder of DShield. DShield is now part of the SANS Internet Storm Center which he leads since it was created from Incidents.org and DShield back in 2001. In 2005, he was named one of the 50 most powerful people in Networking by Network World Magazine. He is the dean of research, and an instructor for the SANS Institute...
claims picture sexual sort tricks
It claims to be a movie or picture with some sort of sexual content. That is how it tricks you.
cooperate functions less patches problems software sort various
These are the sort of problems that we typically see when patches don't cooperate well with various third-party software and some of the less used functions of Windows,
apple call everybody operating sort viruses
It?s sort of a wake-up call for Apple users. Everybody focuses on Windows, but there are viruses for other operating systems.
allow blocking display files normally programs windows
This should allow Windows programs to display WMF files normally while still blocking the exploit.
applying recommend temporary
At this point, we do not recommend applying these temporary patches.
allow bad compromise crash excel file hackers program trying word
What hackers are trying to find is, if they can make a bad Excel file or a bad Word file, does the program crash and allow them to compromise the system.
damage good patch quickly roll testing
More often than not, a patch will actually do more damage than good if you roll it out too quickly without testing it first.
felt guess necessary release serious
My guess is that it's just serious enough that they really felt it was necessary to release it early.
against attack average defend hard problem
The problem with this attack is that it is so hard to defend against for the average user.
basically capable keeping last longer lost
Particularly over the last year, anti-virus (programs) have lost a lot of their effectiveness. They are basically no longer capable of keeping up with the proliferation of new viruses.
activity becomes increase linux virus
I think we'll see an increase in virus activity as Linux becomes more mainstream.
code endorse source validate
I don't think we will endorse this patch. There is no source code available, so we are not able to validate the patch.
basically built doors
We've basically built doors now for 4,000 years and still have burglaries.
assembly available both code difficult functions limits operating relying virus work worm
Writing a cross-platform worm is difficult because it limits you to functions that are available on both operating systems. You have to also code the virus in assembly to make it work without relying on any OS-specific function.