Linux Users: Welcome to the World of Malware
Preston Gralla
Oct. 27, 2004 11:55 AM
Permalink

Linux users are often smug about the state of their computer security, rightly criticizing Windows for its numerous security holes, but overlooking their own vulnerabilities.
Now it's their turn to suffer.
Over the last several days, Linux users have been targeted by a phony email claiming to be from the Red Hat Security Team, claiming that a vulnerability in fileutils-1.0.6 could "allow a remote attacker to execute arbitrary code with root privileges." The email tells people to download a patch to fix the problem.
The patch, of course, contains malicious code that compromises the system it's run on.
Linux users: Welcome to my world.
This kind of thing is old hat to PC users. Just this morning, for example, I received four phony emails purporting to be from eBay and PayPal, but which were really phishing exploits.
Linux users are going to have to get used to this kind of thing. They'll have to learn to be suspicious of any email they receive, and pay as much attention as possible to keeping their system patched - using only legitimate patches, of course.
In a way, this security exploit may be a backhand compliment to those who use Linux. They should figure that if malware writers have finally taken notice of them, it means that they've finally arrived.
Preston Gralla
is the author of Windows Vista in a Nutshell, the Windows Vista Pocket Reference, and is the editor of WindowsDevCenter.com. He is also the author of Internet Annoyances, PC Pest Control, Windows XP Power Hound, and Windows XP Hacks, Second Edition, and co-author of Windows XP Cookbook. He has written more than 30 other books.
Comments on this weblog
1 to 14 of 14
-
-
Remember
2005-01-21 12:13:20
JustthefactsPlease
[View]
-
-
Remember
2005-02-17 13:24:50
RickMoen
[View]
-
-
Multiple trojan variants, but same story
2004-11-03 14:26:14
RickMoen
[View]
-
-
Acute disappointment
2004-11-03 13:13:52
RickMoen
[View]
-
-
This article is stupid
2004-11-01 11:12:56
Jimmy_King
[View]
-
-
Malware pretty much orriginated on unix systems
2004-11-01 08:08:29
simon_hibbs
[View]
-
-
hmmm....
2004-10-30 07:20:47
b0xii
[View]
-
-
I'm sorry, but you're a bit confused
2004-10-29 15:51:31
rcrelia
[View]
-
-
I'm sorry, but you're a bit confused
2004-10-31 16:55:27
Dan_Bercell
[View]
-
-
I'm sorry, but you're a bit confused
2004-11-28 14:27:34
sgk284@gmail.com
[View]
-
-
this kind of thing is old hat to nix users
2004-10-29 09:17:49
emacsuser
[View]
-
-
What a yawn
2004-10-29 05:55:33
blackhole
[View]
-
-
Missing the Point
2004-10-28 03:07:04
Dave Cross | 
[View]
-
-
Missing the Point
2004-10-28 21:16:47
einheit
[View]
-
-
Missing the Point
2004-10-28 23:55:00
TWD
[View]
-
-
Missing the Point
2004-10-29 07:53:06
unoengborg
[View]
-
-
Linux and Phishing
2004-10-28 02:28:31
dscotson
[View]
-
-
Linux and Phishing
2004-10-29 16:37:13
riplin
[View]
-
-
Not Quite
2004-10-27 15:16:03
bairdcarr1
[View]
-
-
Not Quite
2004-10-28 01:47:18
jwenting
[View]
-
-
Not Quite
2004-10-29 16:30:13
riplin
[View]
-
-
Not Quite
2004-10-29 08:10:24
unoengborg
[View]
-
-
Not Quite
2004-10-28 23:42:03
RichardJC
[View]
-
-
Not Quite, jwenting
2004-10-28 07:50:21
bairdcarr1
[View]
-
-
Not Quite, jwenting
2004-10-28 23:01:36
jwenting
[View]
-
-
Not Quite, jwenting, Continued...
2004-10-29 21:05:53
bairdcarr1
[View]
-
-
Not Quite, jwenting
2004-10-29 11:01:15
alucinor@mail.com
[View]
-
-
Not Quite, jwenting
2004-10-29 08:35:19
unoengborg
[View]
-
-
Argument from ignorance is frustrating
2004-10-28 07:37:36
Anonymous_Coward
[View]
-
-
This is going to sound -really- smug, but...
2004-10-27 14:31:35
Steve Mallett |
[View]
-
-
Old hat to Linux users too
2004-10-27 13:26:03
Kyle Rankin |
[View]
1 to 14 of 14
Return to weblogs.oreilly.com.
Weblog authors are solely responsible for the content
and accuracy of their weblogs, including opinions they
express, and O'Reilly Media, Inc., disclaims any and
all liabililty for that content, its accuracy, and
opinions it may contain.
This work is licensed under a
Creative Commons License.