Skip to main content
  1. Home
  2. Computing
  3. Legacy Archives

April 1 Comes and Goes…With Nary a Peep from Conficker

Add as a preferred source on Google
April 1 Comes and Goes...With Nary a Peep from Conficker
Image used with permission by copyright holder

April 1 has turned into a certifiable day of lunacy for Internet pranksters, with even major companies like Google and Whole Foods Market getting in on the act with fake product announcements and features designed to make people grin. This year was promising to be a little different—at least according to mainstream media outlets—because the dreaded Conficker worm was schedule to “phone home” and receive new instructions on how to wreak havoc on the Internet and Web sites all around the world. But now it’s April 2, and the Conficker threat has largely failed to materialize.

Conficker has been through two major iterations, A and B, both of which used encryption to hide their target lists in an effort to disguise what sites the worms would target. Both encrypted payloads were broken, and security researchers began preparing for a new “C” variant due to launch when Conficker-infected systems called back to their control servers for new instructions. But while Conficker is still definitely roaming the Internet, so far there doesn’t seem to have been a marked increase in Conficker traffic, nor has a major new variant on the worm appeared in the wild.

Recommended Videos

If Conficker has indeed fizzled—and isn’t just lying in wait to strike again on a less-auspicious date—much of the credit would go to DoxPara‘s Dan Kaminsky along with Felix Leder and Tillmann Werner, who helped develop technology that can detect Conficker-infected systems based on how they respond to particular probes.

Leder and Werner have published a detailed report aimed at security experts and administrators on containing the Conficker worm (PDF), and if you’re curious to know whether you’ve been infected by the Conficker worm, Joe Steward at the Conficker Working Group has put together a simple Web page that ought to tell you: if you’re missing images in the top part of the page, Conficker may be blocking your access to security sites.

Geoff Duncan
Former Contributor
Geoff Duncan writes, programs, edits, plays music, and delights in making software misbehave. He's probably the only member…
OpenAI is investigating more incidents of AI agents going rogue days after hack
OpenAI logo on Microsoft surface

It appears that the "AI agents going rogue" tale has more to it than what AI giants have revealed publicly so far. Merely days after OpenAI announced that its AI agents went rogue and hacked Hugging Face, Anthropic dropped a similar bombshell. Soon, it was discovered that not just one, but multiple services were compromised. Well, it seems there are even more layers to it.

Reuters reports that OpenAI has found more incidents of AI agents escaping their software containment environment during research. Citing sources with knowledge of the incident, the outlet notes that the AI agents didn't go beyond OpenAI's software environment and affect any external service.

Read more
AI is finding Apple security flaws faster than Apple can sort through them
Apple has limited how many bug reports researchers can keep open as AI tools produce both genuine Mac vulnerabilities and a flood of questionable submissions
Lighting, Architecture, Building

Apple has capped the number of security reports researchers can keep open at once after AI bug hunting put its review process under pressure, according to the Financial Times.

Some submissions describe hallucinated or purely theoretical risks. Others uncover vulnerabilities serious enough to require patches. Bynario told the FT that it found more than 50 possible macOS flaws in three weeks, including a privilege-escalation chain that could give an attacker full control of a Mac.

Read more
Anthropic is paying $1.5 billion over pirated books, but it can still legally cut up purchased ones
The settlement addressed unauthorized ebook downloads, not the destructive scanning of lawfully bought physical copies, a distinction now alarming booksellers
Book, Publication, Indoors

A federal judge has approved Anthropic’s $1.5 billion settlement over nearly half a million pirated books. The same litigation also protected a more physical method of feeding its AI systems. Anthropic bought print books, removed their bindings, scanned every page and destroyed the originals.

The legal divide came down to acquisition. The settlement covers books downloaded from LibGen and PiLiMi, while the court treated Anthropic’s one-for-one conversion of purchased books into private digital files as fair use. Training AI models on lawfully acquired material was also considered transformative.

Read more