Warning: Rouge Packets About To Pounce You!
Are you secure? Check again.
Microsoft is scrambling to stomp a new armada of nasties, including a killer flaw in XP/Vista that exposes your innards to miscreants by simply going online. The plot stinks: a hacker simply broadcasts rogue TC/IP packets to a stream of addresses (including yours). That’s the usual modus operandi, but it goes a step further. These rogue packets then ventures on to trick their way into your Windows core and hijack your PC, transforming it into a mindless zombie for a gargantuan botnet. Before you know it, your innocent PC is churning out spam to viagra sites. Or manufacturing self-replicating worms. Damn.
According to news I’ve read, one programmer demonstrated the proof-of-concept at a community college on a fully patched XP system. Defenses crumbled in a flash. Scary?
Don’t fret. Windows already has a patch to address this solution. If you value your security, I suggest you grab it now:
VISTA DOWNLOAD:
http://www.microsoft.com/downloads/details.aspx?FamilyID=23c0e03a-db66-4618-bce0-af55e5c1b067&displaylang=en
XP DOWNLOAD:
http://www.microsoft.com/downloads/details.aspx?FamilyID=0a766242-2342-4fa0-9b66-8953c54a2211
Here’s a snippet of Microsoft warning:
Executive Summary
This critical security update resolves two privately reported vulnerabilities in Transmission Control Protocol/Internet Protocol (TCP/IP) processing. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
This is a critical security update for all supported editions of Windows XP and Windows Vista, an important security update for all supported editions of Windows Server 2003, and a moderate security update for all supported editions of Microsoft Windows 2000. For more information, see the subsection, Affected and Non-Affected Software, in this section.
This security update addresses the vulnerability by modifying the way that the Windows kernel processes TCP/IP structures that contain multicast and ICMP requests. For more information about the vulnerability, see the Frequently Asked Questions (FAQ) subsection for the specific vulnerability entry under the next section, Vulnerability Information.
Recommendation. Microsoft recommends that customers apply the update immediately
Bookmark & Share
Related Posts
- SP1 or KB938194 = a Ferarri PC!
- Microsoft Push Email service - The end of Blackberries?
- New Version Of Windows Vista Advisor Launched Today
- Do You Really Need To Upgrade To Vista At A Cost Of $450?
- Microsoft Launching Music And Video Download Services?
- Which Anti-Virus Software To Use With Windows Vista
- Turning Off Low Disk Space Warning In Vista





Comment by Wii on 9 July 2008:
Time to move to MAC OS?
Comment by MB Web Design on 9 July 2008:
At least this exploi was privately reported rather than sold to the highest bidder. (Paid in kind with blue tablets no doubt)
Comment by Goran Website on 10 July 2008:
Its not right, we spend money on these programs believing that they are safe. Millions of dollars later, 1000’s of technicians and this still happens.
Comment by SEO Tips on 14 July 2008:
Continual glitches like this are increasingly leading to user dissatisfaction and migration to alternatives like Ubuntu.
Comment by sandhuharvey on 14 July 2008:
We spend so much money on these products thinking they are safe when they are not. They should have much more testing.
Comment by Tech blog on 15 July 2008:
ooh,, thats a big flaw.
Thanks for the links, just downloaded.
Read Tech blog’s latest blog post….Earn Money - Sell Text Ads On Your Site>>>
Comment by PPC on 15 July 2008:
Rouge packets? That should redden some cheeks…..
Comment by Wii on 16 July 2008:
Doesn’t the blame lie just as squarely at the door of the people who make the tools to exploit the flaws?
Comment by Joseph Plazo on 19 July 2008:
I have the Macbook Pro. Though I type this from a Vista Machine, I spend more time on the Mac when online or accessing financial data. It’s the one way I know that scumbags aren’t barging through doors and windows on my drafty Windows machine