Virus Writers Looking To Slow Things Down
from the too-fast-means-you-get-caught dept
It's no secret that malware writers are more likely to be in the virus writing business these days more for profit, rather than fame or for kicks. Hell, we've been seeing articles about this trend for over three years now. However, that also means that the type of malware being written is changing as well. Rather than go for the big hit, with a virus that spreads super fast and makes the headlines, virus writers know that they're better off being sneaky. The less well known their viruses are, the less likely they are to be stopped by security software... and the longer there is to profit from the malware. This probably explains why the various predictions of more big virus attacks have failed to come true. The attacks are still there, but the thinking is entirely different. This is especially interesting from the viewpoint of security companies. In fact, it suggests that many were caught off-guard by this behavior. Plenty of researchers were trying to anticipate the next big attack, when they would have been better off trying to find the next hidden attack.Thank you for reading this Techdirt post. With so many things competing for everyone’s attention these days, we really appreciate you giving us your time. We work hard every day to put quality content out there for our community.
Techdirt is one of the few remaining truly independent media outlets. We do not have a giant corporation behind us, and we rely heavily on our community to support us, in an age when advertisers are increasingly uninterested in sponsoring small, independent sites — especially a site like ours that is unwilling to pull punches in its reporting and analysis.
While other websites have resorted to paywalls, registration requirements, and increasingly annoying/intrusive advertising, we have always kept Techdirt open and available to anyone. But in order to continue doing so, we need your support. We offer a variety of ways for our readers to support us, from direct donations to special subscriptions and cool merchandise — and every little bit helps. Thank you.
–The Techdirt Team
Reader Comments
Subscribe: RSS
View by: Time | Thread
Not unexpected
slow vs fast infectors attributes.
I think it was in The Little Black Book of
Viruses published 1990.
Depending on the prevailing conditions,
fast may be better as it can out pace the
AV vendors. Slow might be better to avoid
detection but once it's caught the AV vendors
can make short work of it.
This is not a revelation, as always YMMV.
[ link to this | view in thread ]
Sounds Familiar
[ link to this | view in thread ]
Or Another Option
[ link to this | view in thread ]
Re: Or Another Option
It should be easy to clean. Worse case: you would have to erase the user's entire home directory. If you didn't have any important files there, it shouldn't matter much at all.
Sandboxes can work, but a permission system is better. In fact, using both should make your system nearly impossible to crack--assuming there are no exploitable bugs in the kernel. ;-)
[ link to this | view in thread ]
Re: Re: Or Another Option
[ link to this | view in thread ]
VMWare
[ link to this | view in thread ]
good
[ link to this | view in thread ]