https://www.channelfutures.com/wp-content/themes/channelfutures_child/assets/images/logo/footer-new-logo.png
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Services Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
    • Diversity, Equity & Inclusion
  • MSP 501
    • Back
    • MSP 501 Information Center
    • 2021 MSP 501 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2022 Editorial Calendar
  • Awards
    • Back
    • 2021 MSP 501
    • Circle of Excellence
    • DE&I 101
    • Top Gun 51
    • Channel Partners 101 (CP 101)
  • Events
    • Back
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
Channel Futures
  • NEWSLETTER
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Services Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
    • Diversity, Equity & Inclusion
  • MSP 501
    • Back
    • MSP 501 Information Center
    • 2021 MSP 501 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2022 Editorial Calendar
  • Awards
    • Back
    • 2021 MSP 501
    • Circle of Excellence
    • DE&I 101
    • Top Gun 51
    • Channel Partners 101 (CP 101)
  • Events
    • Back
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
    • Newsletter
  • REGISTER
  • MSPs
  • VARs / SIs
  • Agents
  • Cloud Service Providers
  • Channel Partners Events
 Channel Futures

Security


Symantec Finds Linux Worm Aimed at Internet of Everything Devices

  • Written by DH Kass 1
  • December 2, 2013

Newly discovered Linux malware can infect Intel (INTC)-based Internet-connected devices not typically targeted by hackers such as routers, security cameras and set-top boxes as well as PCs, according to a Symantec (SYMC) security researcher.

Symantec, which discovered the worm on November 26 and named it Linux.Darlloz, for now has classified the threat as low level.

Newly discovered Linux malware can infect Intel (INTC)-based Internet-connected devices not typically targeted by hackers such as routers, security cameras and set-top boxes, as well as PCs, according to a Symantec (SYMC) security researcher.

Symantec, which discovered the worm Nov. 26 and named it Linux.Darlloz, for now has classified the threat as low level.

“The worm is capable of attacking a range of small, Internet-enabled devices in addition to traditional computers,” wrote Symantec researcher Kaoru Hayashi in a blog post on Nov. 27.

Right now the worm isn’t a big deal because it’s limited to a relatively small number of Intel-based Internet-connected devices. And, it doesn’t do much more than spread itself and wipe system files, but it has the potential to attack a far broader spectrum of things running on ARM chips as well as PPC, MIPS and MIPSEL architectures, Hayashi wrote.

“Although no attacks against these devices have been found in the wild, many users may not realize they are at risk, since they are unaware they own devices that run Linux,” he wrote. “Currently, the worm seems to infect only Intel x86 systems, because the downloaded URL in the exploit code is hard-coded to the ELF [executable and linkable format] binary for Intel architectures.”

“We have also verified that the attacker already hosts some variants for other architectures including ARM, PPC, MIPS and MIPSEL on the same server,” he continued.

“The attacker is apparently trying to maximize the infection opportunity by expanding coverage to any devices running on Linux,” wrote Hayashi. “However, we have not confirmed attacks against non-PC devices yet.”

Linux.Darlloz exploits a vulnerability in web servers running PHP programming language patched in May 2012. Hayashi said the attacker created the worm based on Proof of Concept code released in October.

“Upon execution, the worm generates IP addresses randomly, accesses a specific path on the machine with well-known ID and passwords (think admin-admin), and sends HTTP POST requests, which exploit the vulnerability,” wrote Hayashi. “If the target is unpatched, it downloads the worm from a malicious server and starts searching for its next target.”

To protect from infection by the worm, Symantec recommends users take stock of all their Internet-connected devices, update software including security software, make device passwords stronger, and block incoming HTTP POST requests on specific paths or the gateway on each device.

Tags: Agents Cloud Service Providers MSPs VARs/SIs Security

Most Recent


  • money
    'An Era Has Ended': Inside the $61 Billion Broadcom-VMware Deal Rocking the Software Industry
    "VMware was in a quandary," an analyst told Channel Futures.
  • Layoffs, unemployed
    Lacework Confirms Layoffs Impacted 20% of Workforce
    Last November, Lacework raised $1.3 billion in growth funding.
  • focus a camera
    Knowledge 2022: ServiceNow Focused on Partner Experience to Drive Growth
    ServiceNow will roll out a reimagined partner program early next year.
  • Chinese Cloaked Hackers
    The Gately Report: Cybereason Helps MSSPs Provide Unified Security, Details Massive Espionage Ring
    Also, Hornetsecurity announces its latest acquisition and MarketsandMarkets gives a sunny forecast for cloud security.

Leave a comment Cancel reply

-or-

Log in with your Channel Futures account

Alternatively, post a comment by completing the form below:

Your email address will not be published. Required fields are marked *

Related Content

  • edge computing
    'Challenging Results' for MSPs in Channel Futures' Exclusive Quarterly Survey
  • White House
    White House Urges Companies to Take Ransomware Attacks More Seriously
  • Security shield on digital background
    VMware Security Connect Focused on Redefining Security, Increasing Threats
  • Fortune 500 2021 logo
    AT&T, Microsoft, Verizon, More Tech, Telco Companies Make Latest Fortune 500

Upcoming Events

View all

Channel Partners Europe

June 14, 2022 - June 15, 2022

MSP Summit

September 13, 2022 - September 16, 2022

Galleries

View all

‘An Era Has Ended’: Inside the $61 Billion Broadcom-VMware Deal Rocking the Software Industry

May 26, 2022

Knowledge 2022: ServiceNow Focused on Partner Experience to Drive Growth

May 26, 2022

The Gately Report: Cybereason Helps MSSPs Provide Unified Security, Details Massive Espionage Ring

May 26, 2022

Industry Perspectives

View all

Increased Cybersecurity Vulnerability = Increased MSP Opportunities

May 25, 2022

Leverage Your MSP’s People Power

May 24, 2022

How SD-WAN Helps Secure the Expanding Network Perimeter

May 19, 2022

Webinars

View all

Simplifying SaaS Security for MSPs

April 27, 2022

How to Supercharge The Network to Support Your IT Superhero Moves

May 3, 2022

The 2022 MSP Challenge: Scale Service Delivery Despite the Talent Gap

April 21, 2022

White Papers

View all

Work Goes Remote – (and Other Top ITOps Trends)

May 25, 2022

The New Bottom Line: How MSPs Can Meet the Healthcare Crisis While Evolving Their Businesses

April 19, 2022

How to build a Security Operations Center (on a budget)

April 4, 2022

Channel Futures TV

View all

AT&T, Microsoft, Cisco, ThreatLocker on Unlocking Partner Potential

Agents Share ‘Secrets,’ Industry Opportunity

May 11, 2022

Vonage Addresses Potential Partner Opportunity via Acquisition by Ericsson

May 5, 2022

Lumen Technologies ‘Built for Growth and Scale’

May 4, 2022

Twitter

ChannelFutures

.@Lacework lays off 20% of workforce. #cloudsecurity dlvr.it/SR7Jsl https://t.co/Mg3OVXHAhe

May 26, 2022
ChannelFutures

#Know22: @ServiceNow focused on transforming #partnerexperience to foster more growth. dlvr.it/SR7Hbj https://t.co/J1BhmT3OzS

May 26, 2022
ChannelFutures

Departing @msPartner exec @rodneyc55 to become @johnsoncontrols chief commercial officer. dlvr.it/SR7HZN https://t.co/v0eVGBMKbQ

May 26, 2022
ChannelFutures

Everyone's talking about the massive Broadcom-VMware deal. @AnuragTechaisle, @Dataprise, @Carousel_Ind, @imlazar an… twitter.com/i/web/status/1…

May 26, 2022
ChannelFutures

Our latest Gately Report features @cybereason on MSSPs and growth, @Hornetsecurity acquisition, @marketsandmarkets… twitter.com/i/web/status/1…

May 26, 2022
ChannelFutures

“The ‘on premises versus cloud’ debate is dead” @DellTech @DellTechUK @DayneTurbitt explains the opportunity for… twitter.com/i/web/status/1…

May 26, 2022
ChannelFutures

.@Broadcom's acquisition of @VMware comes as the chipmaker reports that infrastructure software accounted for 23% o… twitter.com/i/web/status/1…

May 26, 2022
ChannelFutures

Are your #MSP clients struggling to handle their cybersecurity vulnerability? #cybersecurity #cyberthreats… twitter.com/i/web/status/1…

May 25, 2022

MSSP Insider

Business advice for MSSPs and news from the broader security channel.

Newsletters and Updates

Sign up for The Channel Report, Channel Futures Update, MSP 501 Newsletter and more.

Live Channel Events

Get the latest information on the next industry-leading Channel Partners event.

Galleries

Educational slide shows and images from live events.

Media Kit And Advertising

Want to reach our audience? Access our media kit.

DISCOVER MORE FROM INFORMA TECH

  • Channel Partners Events
  • Telecoms.com
  • MSP 501
  • Black Hat
  • IoT World Today
  • Omdia

WORKING WITH US

  • Contact
  • About Us
  • Advertise
  • Newsletter

FOLLOW Channel Futures ON SOCIAL

  • Privacy
  • CCPA: “Do Not Sell My Data”
  • Cookie Policy
  • Terms
Copyright © 2022 Informa PLC. Informa PLC is registered in England and Wales with company number 8860726 whose registered and Head office is 5 Howick Place, London, SW1P 1WG.
This website uses cookies, including third party ones, to allow for analysis of how people use our website in order to improve your experience and our services. By continuing to use our website, you agree to the use of such cookies. Click here for more information on our Cookie Policy and Privacy Policy.
X