UK Ministry of Defence Stung By Rapidly Spreading Virus

The U.K. Ministry of Defence is in the midst of an electronic fight with a computer virus that rapidly spread through its computer networks starting Jan. 6.

By Jeremy Kirk
Fri, January 16, 2009

IDG News Service — The U.K. Ministry of Defence is in the midst of an electronic fight with a computer virus that rapidly spread through its computer networks starting Jan. 6.

The virus infected computers throughout the military, including those used by the Royal Air Force and Royal Navy, and is one of the most severe attacks the organization has ever faced, according to a Ministry of Defence spokeswoman.

"Obviously with a computer system of our size we are fighting off viruses daily, but not of this scale," the spokeswoman said. "I don't think we've ever had an instance like this before."

The virus has affected e-mail systems and Internet access but has not jeopardized war-fighting systems, she said. Due to pre-existing security systems, no classified or personal data was compromised, the Ministry said.

Just 27 percent of the Ministry's computers meet current data security standards for holding classified information and personal data, it said earlier this week. About 31 percent of systems meet some standards, while the rest are being evaluated.

Efforts to contain and clean up the virus have resulted in widespread shutdown of systems, but the ministry declined to say how many machines in total are affected. A solution to prevent reinfection of the PCs is being tested.

"The reason why so many people are without their computers is because we've turned them off rather than they've been wiped or destroyed by this virus," she said.

Some Navy systems are now up and running, but the Ministry did not have an estimate of how many of those systems remain down. The ministry declined to say which warships have been affected, but news reports singled out the fleet flagship HMS Ark Royal, an aircraft carrier that went into service in July 1985.

Due to security reasons, the type of virus has not been publicly released, the spokeswoman said. However, the computer security community has been grappling lately with the Conficker worm, which targets a flaw in Windows Service Server, a component in Microsoft's Windows 2000, XP, Vista, Server 2003 and Server 2008 products.

Microsoft issued an emergency patch for the problem on Oct. 23, but security companies have said businesses have been hit hard by Conficker.

Systems become infected when a hacker constructs a malicious Remote Procedure Call (RPC) to an unpatched server, which then allows arbitrary code to run on a machine. Finnish security company F-Secure conservatively estimated the number of computers affected by Conficker at 3.5 million on Wednesday. In the span of one day earlier this week, F-Secure said it saw infections rise by 1 million machines.

This document is aimed at those looking at data center builds, upgrades, or consolidation. It provides an introduction to some of the new security challenges of such environments and provides recommendations for implementing security in next-generation data centers.
This editorial brief addresses the disconnect between security and operations teams and the need for IT operations teams to address security and risk management.
The McAfee virtual patching solution provides a layered approach to security risk management, while adding the ability to apply a virtual patching strategy to your existing change-management process.
Learn more about Gartner's evaluation of network IPS that places McAfee in the leaders' quadrant. Deep inspection network-based intrusion prevention continues to be a due-diligence security control.
The topics span attack categories, trends and priorities, with a short synopsis of the topics, various use cases, key concepts, and providing references to our Security Connected Reference Architecture.
With cybercrime on the rise, McAfee and Intel researchers believe that we need to re-envision how to detect and block stealthy malware.
Learn how Gartner's criteria for next generation IPS helps organizations achieve effective threat prevention despite changes in network communications, new applications, and changes in the threat landscape.
3 minute Flash video - overview of the need for and value of Configuration Control.
Cloud deployments are playing a critical role in propelling innovation for many companies. At the same time security has become the #1 one of the top concerns for IT and business leaders as they migrate into the cloud. In this webinar, learn from Accenture discusses how to recast the cloud as a "fresh chance to rethink your approach to security."
Big Data-it has the potential of transforming a business. In the case of Klout, a social networking analytics site, big data is the heart of the business. Klout processes and analyzes billions of user data signals every day-from Facebook, Twitter, LinkedIn, blogs and more. How do they do it? Gain valuable insights from David Mariani, vice president of engineering for Klout.
Date: February 29, 2012
Time: 1:00 PM EST

Seasoned IT managers know from experience that in many cases the bulk of the cost of an IT solution is incurred after the sale. Issues can range from sizing and skill development, to committing significant resources installing, deploying, managing, and supporting a complex assortment of hardware, software, and networking.

With the Oracle Database Appliance, you can eliminate the time, risk, and costs often associated with building, implementing, and maintaining a high-availability solution for your users and customers. Plus it's based on Intel Xeon processors to ensure a high level of performance and scalability.

Attend this Webcast to discover how the Oracle Database Appliance can help you increase your ROI by:
* Reducing deployment time from weeks to hours
* Simplifying ongoing maintenance and support
* Benefitting from the highest levels of availability
Today's workforce is truly mobile. At the office, from customer sites, even at home or in a hotel - their connectivity and application performance needs remain the same. But even though their requirements don't change, the challenges in meeting their expectations do.
Newsletter Sign-Up »

Receive the latest news test, reviews and trends on your favorite technology topics

Choose a newsletter
  1. View all Newsletters | Privacy Policy
Resource Center