• If you would like to get your account Verified, read this thread
  • The TMF is sponsored by Clips4sale - By supporting them, you're supporting us.
  • >>> If you cannot get into your account email me at [email protected] <<<
    Don't forget to include your username

New Hacker Threat......

venray

Verified
Joined
Apr 2, 2001
Messages
28,217
Points
0
Hackers Target New Microsoft JPEG Flaw
By PAUL GEITNER, AP

NEW YORK (Sept. 29) - In a harbinger of security threats to come, hackers have exploited a newly announced flaw in Microsoft Corp. programs and begun circulating malicious code hidden in images that use the popular JPEG format.


Software tools to create the malicious images began appearing last month, and this week security experts saw images employing them posted on adult-oriented Usenet newsgroups.

To get the malicious code, a visitor must download the image and view it using Microsoft's Windows Explorer software, said Oliver Friedrichs, senior manager with Symantec Security Response.

The computer then contacts a server to obtain code that would let an attacker take over the machine remotely.

Friedrichs said the current exploit is fairly limited but that he expects future attempts to create malicious images that would work on the more popular Outlook and Internet Explorer programs, also made by Microsoft.

The Internet Storm Center at the SANS Institute said an image it found, disclosed on the BugTraq security mailing list, only caused computers to crash in tests, but ''we suspect that a working exploit is very close to widespread availability.''


Computers with updated versions of anti-virus software should be protected, according to SANS center. Microsoft also has a software patch to fix the flaw and said users who have the Service Pack 2 security update for Windows XP are not affected.

Microsoft disclosed the flaw in question on Sept. 14. It affects people running Windows XP, Windows Server 2003 and later versions of Office.

People who have earlier versions of Windows or Office may also be affected if they are running some specialized applications, such as Digital Image Pro and Visio 2002. The flaw is in a technology that is used to render JPEG images.


AP-NY-09-29-04 1311EDT
 
I tried downloading the patch but needed to insert my Windows products CD's, which I couldn't find. I now have them, but can't get an alert for the update any more, because there's an unactivated one on my PC. Do you know the URL where I can do it manually Ray?
 
Any news on this front?

Some of my friends have gotten into the habit of disconnecting their computer's externals to prevent this..... not a bad precaution!
 
This is why all remote access, networking and file sharing software has been dumped from my computer. From what I've heard, these codes turn on those programs to allow them access. If the program isn't there, they can't turn it on and gain access. We also have our cable modem disconnected at all times when not online. So, hackers wouldn't have much time to do anything if they did manage to get access again.

Ann
 
What's New
11/17/25
There is always something happening in our Chat Room. Stop in! Free for all members!.

Door 44
Live Camgirls!
Live Camgirls
Streaming Videos
Pic of the Week
Pic of the Week
Congratulations to
*** TikleFightChamp ***
The winner of our weekly Trivia, held every Sunday night at 11PM EST in our Chat Room
Top