IBM hands out malware laden USBs
By Jennifer Scott,
It is not unusual to receive a freebie USB stick when you attend a conference, but the ones IBM was handing out at a security event in Australia last week had a little extra surprise in store for the attendees.
The complementary sticks passed out at the AusCERT show were riddled with malware – two separate worms to be exact – and the company was forced to send out emails to the recipients warning them and asking them to return the sticks to IBM’s Australian headquarters as soon as possible.
The email said: “At the AusCERT conference this week, you may have collected a complimentary [sic] USB key from the IBM booth. Unfortunately we have discovered that some of these USB keys contained malware and we suspect that all USB keys may be affected.”
After examining the sticks, analysts at security firm Sophos confirmed the devices were infected with two worms. The first infection was a W32/LibHack-A – an infected setup file which gets into the machine when executed – and the second was a W32/Agent-FWF – a Windows worm capable of logging keystrokes.
“You should exercise care if you plug the device into your computer, since it is an autorun worm - which means it will launch when inserted into a computer if autorun/autoplay is enabled,” wrote Graham Cluley, senior technology correspondent at Sophos, on his blog.
“I imagine that the security professionals at IBM will have their head in their hands about this breach, because it wasn't even as though this malware was previously unknown. Sophos has been detecting W32/Agent-FWF, for instance, since June 2007!”
IBM is not the first company guilty of spreading malware in this way.
Cluley claimed that while he was at the RSA conference in San Francisco earlier this year, one of the staff was putting presentations onto attendee’s laptops via an infected USB stick.
“She wasn't a security professional, but she was working for a security company - and when she asked me to look at her Windows computer I found she had no anti-virus software installed,” he added.
USBs are becoming an increasingly popular way of spreading malicious software. McAfee’s latest threat report released earlier this month showed it was the most popular way of getting worms onto systems, despite living in an internet age.
Greg Day, director of security strategy for McAfee, in Europe, the Middle East and Africa (EMEA) told IT PRO: “Go back 20 years and malware used USBs to spread… but we have been living in an age of internet and networking malware.”
He added: “The report has [shown that] this old technique, that was long forgotten, has come back.”
IBM and Sophos both advise users to delete the setup.exe and autorun.inf files and ensure their antivirus software is up to date.
You may also like...
Sponsored Links
advertisement
You may also like...
Latest Security Analysis & Insight
Do British police get cyber security?
Davey Winder listens to telephone conversations between the FBI and the Metropolitan Police, courtesy of Anonymous, and isn't impressed.
- Who to trust after the VeriSign hack?
- Striving to solve the security skills crisis
- Would you employ a hacker or malware writer?
- Q&A: Raj Samani, CTO McAfee
- Erase and rewind: the EU and privacy
- My email address is [CENSORED]
- Is there such a thing as a secure tablet?
- 2011: The year in news
- BYOD: Old or new, good or bad?
Latest Security Reviews
Check Point 2210 Appliance review
Rating: ![]()
advertisement
Most popular
- Ubuntu vs. Windows 7 on the business desktop
- York researchers heat storage to speed up data
- BlackBerry Bold 9790 review
- OneNote hits Google?s Android
- O2 trials Olympic-scale remote working
- Will someone rid me of these troublesome Macs?
- Lenovo beats expectations again
- Who to trust after the VeriSign hack?
- Google to promise fairness after Motorola buy
- Report: Google cloud storage coming soon
Latest News Videos in Security
IT PRO Podcast: Are UK data protection laws flawed?
We bring in two experts to talk about the problems with UK data protection law and the way it is managed.
Register for IT PRO
You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.






A multi-scanning solution for USB threats
MetaDefender is a solution that protects your organization from risks associated with infected media present on peripheral devices such as USB drives and CDs/DVDs. MD4M offers the most complete threat analysis possible and will scan media using multiple antivirus engines.
By stanford1985 on Monday May 24