Common Tasks

Recent Posts

Community

Email Notifications

Personal Links

Archives

Security Protection - Harry Waldron (CS)

Security Best Practices, Breaking News, & Updates

Keylogger malware - IBM accidentally includes on USB drive at AusCERT 2010

IBM accidentally distributed some infected USB sticks that contained a Keylogger agent (which can infect via USB flash drives).  IBM may have contracted these drives with their logo to another manufacturer and may not be even be responsible.  The key point is that even with media from highly reputable companies, there is a need for AV protection at all times and also users who were up-to-date on Microsoft Security patches would also be well protected.  Accidents can always happen in addition to direct attacks. 

Conficker Worm - IBM accidentally includes on USB drive at AusCERT2010
http://www.itnews.com.au/News/175451,ibm-unleashes-virus-on-auscert-delegates.aspx
http://www.zdnet.com/blog/security/malware-infected-usb-drives-distributed-at-security-conference/1173

QUOTE: "At the AusCERT conference this week, you may have collected a complimentary USB key from the IBM booth," IBM Australia chief technologist Glenn Wightwick wrote in an email to delegates this afternoon. "Unfortunately we have discovered that some of these USB keys contained malware and we suspect that all USB keys may be affected."

IBM said in a statement that a "small number of IBM-branded USB sticks distributed to delegates at the recent AusCERT2010 conference were found to contain malware". "IBM has immediately contacted delegates with remedial advice, and regrets any inconvenience that may have been caused," an IBM spokesman said.

Comments

Lordparody said:

Conficker was NOT on the USB keys handed out at AusCERT2010 by IBM. The malware included was a keylogger originally spotted by 90% of AV vendors back in 2008. You have posted that Conficker was the malware across a number of blogs and forums. Check your information before creating your own news.

# May 23, 2010 10:37 PM

Harry Waldron said:

Thanks Lordparody for your feedback, as earlier reports I read noted Conficker.  This has been corrected in 2 blogs I posted. Main intent of post wasn't to specifically name malware but to share as an example for users to be careful with external media.  Regards, Harry

# May 25, 2010 11:43 AM