Virus
The Storm worm appears to be gearing up for another attack

Storm clouds gather again

Reports of death exaggerated

Written by Shaun Nichols in California

This is definitely an interesting development in the story of the Storm worm

Vikram Thakur Symantec

Just days after reports of the possible demise of Storm, the worm has again set off security alarm bells.

Researchers at Symantec found a fresh raft of domains hosting the malware, which leads to a series of browser exploits that attempt to infect the user.

However, the domains are not currently hosting any active pages and researchers have yet to link the domains to spam attacks, Storm's favourite method for claiming new victims.

"This is very unusual. It is also interesting to note the move from simply using social engineering techniques to spread malware, to actually exploiting vulnerabilities," wrote Symantec researcher Vikram Thakur.

"In the past, the Storm authors would directly link to malware on websites or within spam emails. The malware would not check for any particular vulnerability before planting its seed."

Discovery of the new domains comes just days after researchers first reported a 95 per cent drop in the Storm botnet.

Some researchers attributed the drop to improvements in security tools, while others posited that Storm was being pushed out in favour of the new Kraken botnet.

But it now appears that Storm is gearing up for another attack. Thakur mentioned a Mother's Day spam run or a round of iFrame injections as possible methods for an upcoming assault.

"Only time will allow the method employed in this wave of attacks to be confirmed," he said. "This is definitely an interesting development in the story of the Storm worm."

Further reading

Kraken awakes to oust Storm

New menace taking over, experts warn   More...

Storm botnet blows itself out

But overall malware volumes still rising fast   More...

Infosec: Malware to grow tenfold in 2008

Kaspersky forecasts huge growth in attacks   More...

Storm worm seeks out April fools

New malware attack no laughing matter   More...

Related articles

Sharp hike in cyber-attacks from China

Finjan reports new wave of malicious activity   More...

Hackers step up website attacks

Security forecast for 2008 makes grim reading   More...

Virus and phishing attacks soar in September

Second surge of email attacks targeted at executives   More...

Storm resurfaces for Valentine's Day

Old worm, old trick   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

12 May 2008

2.4 MBMicrosoft's battles, data breach fines and website rip-offs More...

09 May 2008

2.51 MBWiMax muddle, Google tactics and asteroid bunkum More...

08 May 2008

3.26 MBBroadband Anywhere, phone-free transport and Web 3.0 More...

Poll

DATA ENCRYPTION

DATA ENCRYPTION

Should encryption be mandatory for all personal data held by companies and governments?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

Ofcom

Ofcom outlines future wireless vision

Wi-Fi healthcare and intelligent car brakes in the pipeline   More...

HP

HP Labs opens doors to academia

Innovation Research Program invites proposals related to current research   More...

Advertisement

Asteroid

Nasa plans manned mission to asteroid

Bruce Willis thankfully not going   More...

MySpace

MySpace offers opt-in data sharing

Deals signed with Photobucket, Twitter, eBay and Yahoo   More...

Advertisement