Silicon Valley Sleuth, an insider's view from Silicon Valley
A blog from vnunet.com



Other blogs
PCW Inter@ctive
Your views, your comments, your say

Security Watchdog
Sniffing out IT security
issues

The test bed
The hottest products, news and gossip from PCW's
Labs.

IT Sneak
IT Sneak Blog rummages in the dustbin of IT events.

Backbytes
An irreverent and offbeat look at the lighter side of technology

InterActive Home
Your complete guide to home entertainment technology

Taking Stock
Gags and Gossip from Accountancy Age.

Gizmodo
The gadgets weblog.



« Scientists crack bee flight mystery | Main | Mobile phone payments reach rural Germany »

Rootkits all over again

The ink on Sony BMG's settlement with the Electronic Frontier Foundation is hardly dry, and already we're hit with a second rootkit soap.

This time Symantec thought it would be useful to hide file from the system and anti-virus software in Norton SystemWorks. The feature rootkit allowed the software to recover 'lost' files by preventing the user from deleting them.

The thing is that rootkits could also be used by worms and other kinds of malware to hide from virus scanners.

While hiding files isn't all a rootkit does (it's primarily designed to build a backdoor into system for hacking purposes), rootkits have become best known for their cloaking capabilities after last year's Sony BMG goof-up.

There is lot to be said against comparing Symantec with Sony BMG. The record label trivialized the threat at first, where it was well documented in Symantec's case. The firm also was quick to publish an update, contrary to Sony BMG.

But Sony BMG at least could plead ignorance: 'We're just a record label. We weren't really knowing what we are doing.'

I'd expected better from one of the world's largest security vendors.

205684_7142_1

Tags: rootkit, sony bmg, symantec, f-secure, mark russinovich

January 13, 2006 at 12:21 AM | Permalink

TrackBack

TrackBack URL for this entry:
http://www.typepad.com/t/trackback/24766/4032240

Listed below are links to weblogs that reference Rootkits all over again:

Comments

Post a comment






 

Useful links: About | Privacy policy | Terms & conditions | Top of the page
© Incisive Media Ltd. 2008
Incisive Media Limited, Haymarket House, 28-29 Haymarket, London SW1Y 4RX, is a company registered in the United Kingdom with company registration number 04038503