Skip to main content
  1. Home
  2. Computing
  3. Legacy Archives

Conficker Starts Waking Up

Add as a preferred source on Google
Conficker Starts Waking Up
Image used with permission by copyright holder

April 1 may have come and gone without hordes of Conficker-infected zombie computers rising up from the Internet to take over the world, but that doesn’t mean the worm has gone away.

On April 7, Conficker’s authors began seeding a new version of the worm, and—as with previous versions—the update packs in new features designed to get around security patches and techniques employed to stop the worm. The new variant on Conficker, loosely dubbed Conficker.E, is apparently spreading via peer-to-peer networks (according to Trend Micro) and—very curiously—comes with an expiration date: May 3, 2009. That’s right: the latest version of the Conficker worm comes with its own shut-off date, and no one is sure why.

Recommended Videos

The goal of the Conficker updates appears to still be “scareware:” convincing unsuspecting users their computers are infected and making them pay for a software fix to remove the problem—which, of course, never happens. Fears that the Conficker worm—and the estimated 12 million computers it has infected—would be used to send massive amounts of spam or execute denial-of-service attacks so far appear unfounded. However, the new variant of the Conficker worm also seems to have a connection with the well-known Waledac malware, both connecting to a known Waledac haven site and downloading new Waledac variants. Conficker’s intention there might be to set up Waledac as a spamming operation.

The exploit Conficker uses to move between Windows machines was patched by Microsoft back in October; computers that have been updated since then should be immune to the worm. The Conficker Working Group has also posted a handy “eye chart” Web page that lets users quickly know whether their systems are infected.

Geoff Duncan
Former Contributor
Geoff Duncan writes, programs, edits, plays music, and delights in making software misbehave. He's probably the only member…
OpenAI is investigating more incidents of AI agents going rogue days after hack
OpenAI logo on Microsoft surface

It appears that the "AI agents going rogue" tale has more to it than what AI giants have revealed publicly so far. Merely days after OpenAI announced that its AI agents went rogue and hacked Hugging Face, Anthropic dropped a similar bombshell. Soon, it was discovered that not just one, but multiple services were compromised. Well, it seems there are even more layers to it.

Reuters reports that OpenAI has found more incidents of AI agents escaping their software containment environment during research. Citing sources with knowledge of the incident, the outlet notes that the AI agents didn't go beyond OpenAI's software environment and affect any external service.

Read more
AI is finding Apple security flaws faster than Apple can sort through them
Apple has limited how many bug reports researchers can keep open as AI tools produce both genuine Mac vulnerabilities and a flood of questionable submissions
Lighting, Architecture, Building

Apple has capped the number of security reports researchers can keep open at once after AI bug hunting put its review process under pressure, according to the Financial Times.

Some submissions describe hallucinated or purely theoretical risks. Others uncover vulnerabilities serious enough to require patches. Bynario told the FT that it found more than 50 possible macOS flaws in three weeks, including a privilege-escalation chain that could give an attacker full control of a Mac.

Read more
Anthropic is paying $1.5 billion over pirated books, but it can still legally cut up purchased ones
The settlement addressed unauthorized ebook downloads, not the destructive scanning of lawfully bought physical copies, a distinction now alarming booksellers
Book, Publication, Indoors

A federal judge has approved Anthropic’s $1.5 billion settlement over nearly half a million pirated books. The same litigation also protected a more physical method of feeding its AI systems. Anthropic bought print books, removed their bindings, scanned every page and destroyed the originals.

The legal divide came down to acquisition. The settlement covers books downloaded from LibGen and PiLiMi, while the court treated Anthropic’s one-for-one conversion of purchased books into private digital files as fair use. Training AI models on lawfully acquired material was also considered transformative.

Read more