<br />
<b>Deprecated</b>:  Function create_function() is deprecated in <b>/home/hidefide/public_html/blog/wp-content/plugins/wr-pagebuilder/core/core.php</b> on line <b>127</b><br />
{"id":576,"date":"2017-06-02T16:14:09","date_gmt":"2017-06-02T16:14:09","guid":{"rendered":"https:\/\/icaruspressblog.wordpress.com\/?p=576"},"modified":"2019-04-17T11:28:30","modified_gmt":"2019-04-17T11:28:30","slug":"dont-like-conficker-the-german-governments-got-it-coveredsort-of","status":"publish","type":"post","link":"https:\/\/hidefideas.com\/blog\/2017\/06\/02\/dont-like-conficker-the-german-governments-got-it-coveredsort-of\/","title":{"rendered":"Don\u2019t Like Conficker? The German Government\u2019s Got it Covered\u2026Sort of\u00a0"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"  wp-image-577 alignright\" src=\"http:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/conficker-diagram.jpg\" alt=\"conficker diagram\" width=\"378\" height=\"280\" srcset=\"https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/conficker-diagram.jpg 727w, https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/conficker-diagram-300x222.jpg 300w, https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/conficker-diagram-202x150.jpg 202w\" sizes=\"auto, (max-width: 378px) 100vw, 378px\" \/><br \/>\nY\u2019know, any time there\u2019s a week with a story about <a href=\"http:\/\/news.yahoo.com\/justin-bieber-driver-license-risk-neighbors-allege-recklessness-195042445.html\">Justin Bieber\u2019s latest meltdown<\/a> (which is pretty much every week), it\u2019s nearly impossible to compete. The dog and pony show known as Bieber pretty much screams for a movie of the week, and nothing else that crops up in the news is nearly as funny as the Beebs\u2019 impending fall from grace. But then governments, which are nearly as <!--more-->talentless as Beebs and at least as laughable as his hair, prove that there is a place in the comic kingdom for the wisdom, or lack thereof, of the silly service.<\/p>\n<p>Recently, we saw how a big telecom found a cheap yet effective way of dealing with an attack, when <a href=\"http:\/\/www.allspammedup.com\/2013\/02\/telecom-nz-cancels-60000-passwords-in-spam-attack-then-goes-duck-hunting-with-wmds\/\">Telecom NZ decided the best way to deal with a spam attack was to cancel the account passwords of more than 60,000 of its users<\/a>. Yes, in a world where shock and awe is often confused by schlock and aww, one of New Zealand\u2019s largest telcos decided to take the easy way out rather than fix the problem, in the process angering a large number of its users, and rightfully so. And while Telecom NZ isn\u2019t a government agency, it is a bureaucracy, and it seemed unlikely that this level of boneheadedness could be topped by another bureaucracy. Well, never one to turn down a challenge, the German government has found a way to stick its tongue out at every other <a href=\"http:\/\/www.darwinawards.com\/\">Darwin Award winner<\/a> this month.<\/p>\n<p>The story goes like this, <a href=\"http:\/\/www.theregister.co.uk\/2013\/05\/10\/german_ministry_dumps_conficker_pcs\/\">according to the Register<\/a>: the German education ministry, so the story goes, discovered that 170 brand new PCs were infected with the Conficker worm. \u201cIt emerged this week that a grand total of 170 PCs and servers at German teacher training institutes in Schwerin, Rostock and Greifswald were dumped soon after they became infected with the notorious Windows worm in September 2010. The decision cost German taxpayers \u20ac187,300 (\u00a3158,291).\u201d<\/p>\n<p>Now, as you probably know, <a href=\"http:\/\/www.allspammedup.com\/2011\/12\/conficker-linked-to-stuxnet-conspiracy-theory-activity-up-530\/\">Conficker is a nasty little piece of malware<\/a> that shouldn\u2019t be left alone with a PC, let alone 170 of them. One of the most pervasive and devastating known worms, Conficker was discovered in 2008 and currently infects millions of computers in more than 200 countries. Due to its sophistication, the worm is generally believed to be the work of an Eastern European crime syndicate, because a vast amount of resources would be required to develop it, and the little bugger is extremely difficult to detect and destroy. And Conficker left an indelible mark. According to the Register, \u201cthe peak zombie headcount created by the botnet peaked at over six million PCs, more than enough to create all sorts of mayhem. Backdoored PCs were, of course, wide open to secondary infection but not much malfeasance along these lines actually took place.\u201d<\/p>\n<p>Now, that may sound like reason enough to call it a day and bin \u20ac187,300 worth of computer equipment, right? Not so fast. First, if the government agency had decided to sanitize the systems, it would have been considerably cheaper than trashing them and purchasing new ones. In an <a href=\"http:\/\/www.heise.de\/newsticker\/meldung\/Schwerin-Virus-verseuchter-Rechner-Ab-auf-den-Muell-damit-1851718.html\">article at heise.de<\/a> and according to an audit report, cleaning the malware would have cost around \u20ac130,000, a difference of \u20ac57,000, and that\u2019s not chump change.<\/p>\n<h2><strong>Open Door Policy<\/strong><\/h2>\n<p>According to the Register, a report by auditors at the State of Mecklenburg-Vorpommern, states \u201cthat the teacher training colleges had left themselves wide open to attack by failing to create a up-to-date security policy.\u201d Well, duh. Wish that were the first time I\u2019d heard of an organization which either didn\u2019t have current policies or chose to ignore them. Nevertheless, the auditors weren\u2019t able to apportion blame and concluded that &#8220;It remains unclear if the anti-virus product had some issues, or if the outbreak was caused by technical or human failure.&#8221;<\/p>\n<p>Indeed. Security firm Sophos reached their own conclusions, pointing out that a little antivirus software and a properly implemented backup policy would have averted the disaster to taxpayers\u2019 wallets. It appears that the agency has some explaining to do, as <a href=\"http:\/\/www.allspammedup.com\/2013\/05\/when-spam-comes-knocking-if-spam-could-talk\/\">an open door policy for spammers and malware rarely lends itself to a happy conclusion<\/a>.<\/p>\n<p>Windows PCs infected with Conficker\u2019s C variant download Spyware Protect 2009, which is good old fashioned scareware, and Waledac, everyone\u2019s least favorite botnet client. The spread of Conficker led to a partnership between Microsoft and several major players in the information security field, known as the Conficker Working Group. To date, the group has been moderately successful in neutralizing parts of Conficker\u2019s control system.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Y\u2019know, any time there\u2019s a week with a story about Justin Bieber\u2019s latest meltdown (which is pretty much every week), it\u2019s nearly impossible to compete.&hellip; <\/p>\n","protected":false},"author":3,"featured_media":577,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20,13,14],"tags":[11,9,10,8,7],"class_list":["post-576","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-humor","category-security","category-spam","tag-allspammedup","tag-bot","tag-botnet","tag-malware","tag-spam","jsn-master"],"_links":{"self":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/576","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/comments?post=576"}],"version-history":[{"count":2,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/576\/revisions"}],"predecessor-version":[{"id":1751,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/576\/revisions\/1751"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/media\/577"}],"wp:attachment":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/media?parent=576"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/categories?post=576"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/tags?post=576"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}