Though you may be entirely unaware of it, there could be software on your computer which endangers your security — and that of the whole country. What software is out there? How safe are you online? And how do you protect your computer and yourself from the latest security threats?
Do you have highly sensitive personal information on your computer? Do you run an anti-virus program and keep it up to date? If you’re like most people, you answered Yes to the first question, and No to the second.
A survey (PDF) by the National Cyber Security Alliance, a Washington-based nonprofit group sponsored by both government agencies and private companies, found that 62 percent of homes with broadband access to the Internet did not regularly update anti-virus software. Nevertheless, it said, 86 percent kept sensitive information on home computers.
“There is an enormous need to educate non-computer professionals on computer security — there are a lot of naive users out there,” said Bruce Schneier, chief technology officer of Counterpane Internet Security Inc. in Mountain View, Calif. — Newhouse News Service
As one of the world’s foremost experts on encryption, computer security and physical security, Schneier knows what he’s talking about, which is why you find me citing him so much around here.
The most common threats to your computer’s security are viruses, worms, Trojan horses, and spyware/adware. All of these have something in common: they install themselves on your computer, usually without your knowledge or consent. They can cause malicious damage to your computer, send your sensitive personal information to persons unknown, or run unauthorized programs to benefit marketing companies, hackers, criminal organizations or terrorists.
Viruses are small bits of code that attach themselves to legitimate programs, such as Microsoft Word. If you have a virus and launch the infected program, the virus runs first, infecting other programs on your computer and attempting to spread itself to other computers, and sometimes doing malicious damage, such as erasing your hard drive or misspelling words in your documents.
Worms act much the same way, except they do not attach to a legitimate program; they are standalone. A worm will enter your computer, spread itself to other computers, possibly cause damage to your files, but it isn’t attached to any legitimate program.
A Trojan horse is a program that claims to do one thing, but instead does something else. Such a program may e-mail itself to everyone you know, claiming to be a naked picture of Natalie Portman or a collection of jokes. But when you try to open it, nothing happens. Nothing that you can see, anyway. The Trojan horse works its evil behind the scenes.
Spyware and adware generally get on to your computer through deception as well. By pretending to be a legitimate program that offers you some benefit, such as a nice toolbar for Internet Explorer, these programs secretly send personal information about you and your Internet browsing habits to unscrupulous marketers, and can also pop up unwanted advertising on your computer.
Viruses, worms and Trojan horses are commonly released into the wild by so-called “hackers” (they’re nothing of the sort). But they’re starting to be used more frequently by organized crime and terrorist organizations. Once they have a program on your computer, they can command it to do almost anything they want, such as send millions of unwanted spam e-mail messages, or to launch a denial of service attack on a Web site, such as the Department of Homeland Security’s web site. (In this type of attack, a Web server is flooded with bogus connections until it can’t handle any legitimate traffic.) Because the organization will typically have control of hundreds of thousands, or even millions, of computers, it’s fairly easy for them to knock a site offline this way.
Sometimes the threats come from unexpected sources. Just this week Sony was forced to recall 52 CD titles after it was discovered that the copy protection mechanism contained on the CDs contained a rootkit (a type of Trojan horse) which could cause damage to the computer, and which was being used by malicious attackers to take over computers without fear of being discovered — the Sony rootkit was hiding the malicious software!
If your computer is infected with viruses, worms, Trojan horses, or spyware/adware, it could be contributing to any of a number of serious security threats:
To keep yourself safe online and ensure that your computer isn’t contributing to a global security threat, not to mention compromising your own security, there are some things you need to know.
Stay Safe Online has eight steps they recommend to keep you and your computer safe online, and they make a good starting point.
On an ongoing basis, ensure that your system and your anti-virus, firewall and anti-spyware programs remain up to date, and run them regularly to ensure that nothing malicious has gotten on to your system.
Security is a process, not a computer program. The threats to your security will evolve over time, and the proper responses to those threats must also evolve. Consider reading Web sites such as Security Awareness for Ma, Pa and the Corporate Clueless which provide timely security information in an easy to understand format.
Get rid of Internet Explorer and Outlook Express, the two largest entry vectors for malicious software. Replace them with Firefox and Thunderbird, or programs of your choice. (Yes, there are choices!)
Also consider installing and using an operating system other than Windows. I’ve been having some really good experiences with Ubuntu Linux lately, and you can even try it out without having to use any of your hard drive space to install it. If you like it, then you can go whole hog and install it on your computer.
Bill Yotter
Nov 18, 2005
Is your computer endangering HOME security ?
The government publicly condemns spyware & virus’s while secretly spying on every home computer. They run all emails sent and received through their department of cyber security and have carte blanch wire tap authority to monitor everything you do online. If you stay off line they have the right to come into you home and confiscate your computer equipment so they can check and see what you may or may not have written. The government is the most invasive security threat to the American people on the planet.
Chris Goodwin
Dec 14, 2005
This is a copy of an email that was sent with a “forwarded” sample of a malevolent email that rr.com has allowed through their mail servers for four months and has refuses to trap this known virus.
Is rr.com actively involved in spamming their customers with a known malevolent attachment?
We are still getting these emails or some variance of them daily. It contains DELETEDO.TXT , a known virus and it is coming through your mail server. WHY? Every IT/mail server manager on the face of the planet knows about these phoofed email attacks as they are old news to everyone but your guys. You ask us to “forward” the mail (with headers) to you with each of these complaint, we do (forward them as instructed) but it appears your mail server IS filtering them out! WHY are your rr.com mail servers filtering out this spam (and not allowing us to “forward” them too you) but this viral spam is still coming into our mailboxes? Maybe they aren’t coming through your mail servers at all but are being propagated by your servers and some disgruntled employee. Or maybe you have a server virus that is generating this spam and putting them in our mail box. We have run virus checks with McAfee latest and greatest images and it’s not finding any virus, trojan, etc. on our computers. Maybe RR.com is the guilty parity that is launching this attack? (Without your knowledge of course) Our RR.com account is a Lockheed-Martin business account and we don’t understand why these emails are coming through your servers. We just sent a copy from another account to our tampabay.rr.com address and it did come through your mail servers. So you DO NOT have a filter for known spam that contains a virus attachment that four (4) months old. That is really lame! No! “Lame” is not the word for it, it may be a criminal since such attacks are now covered (as a crime) under the homeland security act. Since you could easily filter them out, should have installed filters for them without the request of your customers and are still permitting them to be delivered, your mail server staff are either idiots or terrorist. Our IT guys had traps in place and warning issue to their users 4 months ago. After all, all you have to do is just filter out any email that contain DELETEDO.TXT as an attachment to stop this email attack or trap the subject line which is always the same (“you visited illegal websites”) to stop this attack on our computer. It seems reasonable that you easily filter this viral spam out and stop them from being delivered to our mailbox. It also uses a federal government “senderâ€? address. They include @fbi.gov, @cia.gov, etc. The point here is, a 6th grader could install a hand keyed filter for this spam in 3 minutes or less, yet after four months we are still getting this spam. This being the case, it really sound like rr.com employees are involved in this terrorist attack which is now being escalated to federal authorities for them to investigate. A copy of this email has been sent to Home Land Security with a request to investigate rr.com failure to stop this virus from reaching their customer, including DOD Contractors like Lockheed Martin who are using rr.com broadband for telecommuting of employees
—– Original Message —–
From:
To:
Sent: Wednesday, December 14, 2005 12:58 PM
Subject: You visit illegal websites
> Dear Sir/Madam,
>
> we have logged your IP-address on more than 30 illegal Websites.
>
> Important:
> Please answer our questions!
> The list of questions are attached.
>
>
> Yours faithfully,
> Steven Allison
>
>
>
> *** Federal Bureau of Investigation -FBI-
> *** 935 Pennsylvania Avenue, NW, Room 3220
> *** Washington, DC 20535
> *** phone: (202) 324-3000
Michael Hampton
Dec 14, 2005
Chris, the FBI made a statement regarding that email on November 22. To report activity such as this, visit the Internet Crime Complaint Center.
Michael Hampton
Dec 27, 2005
I should also note that DELETEDO.TXT is not a virus; you get that when your Internet Service Provider’s e-mail server anti-virus protection removes a virus from the e-mail before it reaches you. It then replaces the virus with the DELETEDO.TXT file.
Feb 03, 2006
National Consumer Protection Week - Homeland Security or Homeland Stupidity