On mySimon: Spiewak Durand Jacket
BNET Business Network:
BNET
TechRepublic
ZDNet

By Robert Lemos
Posted on ZDNet News: May 10, 2004 11:51:00 PM

Microsoft confirmed on Monday that German authorities had arrested a man suspected of writing and releasing a program widely used to compromise and surreptitiously control computers on the Internet.

The program, known as Agobot, has caused concern among many security experts because it allows a single individual to control a vast network of computers, potentially as a means to attack Internet sites. The coder was captured Friday, the same day that an 18-year-old man, also a resident of Germany, was arrested for creating all five versions of the Sasser worm.

While Microsoft aided in both cases, the two investigations were separate, said Hemanshu Nigam, a corporate attorney for the software giant.

"Two different paths led to two different cases which resulted in arrests around the same


Get Up to Speed on...
Enterprise security
Get the latest headlines and
company-specific news in our
expanded GUTS section.


time," he said. The investigation into the identity of Agobot's author is ongoing, and there could be more arrests, said Nigam, who would not elaborate. Other suspects were arrested in the Agobot case, according to press reports, but Nigam would not confirm the arrests.

The two arrests possibly put into custody the creators of the two largest threats on the Internet--the Sasser worm and the widespread Agobot--and represent a big win for the software giant's efforts to dissuade attacks on its customers. The suspected author of the Sasser worm has also claimed to have written all 28 variants of the mass-mailing computer worm known as Netsky, another program that has plagued Microsoft Windows users, said Nigam.

Though Microsoft had not announced any reward for information about the person or group that released, and presumably wrote, the Sasser worm, a group of informants approached the software giant's German office last Wednesday and inquired about whether such a cash award would be paid.

Microsoft promised it would be, and believes that the informants aren't otherwise involved in the case.

"We are comfortable" with their story, said Nigam.

The arrest of the alleged creator of Agobot didn't come from informants, he added, but from other, unspecified, leads. Moreover, contrary to what some press reports had to say, Nigam did not believe that the person penned a variant of Agobot known as Phatbot. That program adds peer-to-peer capabilities to the original program.

Nigam also refuted press reports that the latest variant of Sasser, Sasser.E, came out after the 18-year-old German resident was arrested. The suspected Sasser author apparently confessed to releasing a fifth version of the worm a week ago.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 35 Talkback(s)
"Just like the Corvair of years past..."
First, you need to get your facts straight. It was the Ford Pinto that had the gas tank issue...it was the FIRST version of the Corvair rolled over when pushed to its limits. That was corrected in lat... (Read the rest)
Posted by: IT_Guy_z Posted on: 05/13/04 You are currently: a Guest | | Terms of Use
This is an interesting approach  FirstNLastN | 05/10/04
An interesting analogy ...  CPT1985 | 05/11/04
if he left the note without  V Sanders | 05/11/04
Call me crazy..  Patrick Jones | 05/11/04
that's kind of dangerous...  ryusen | 05/11/04
If I caught you in my house.  No_Ax_to_Grind | 05/11/04
Rethink?  Spoon Jabber | 05/11/04
Bzzzt wrong, not in my state.  No_Ax_to_Grind | 05/11/04
Hmmmm  Spoon Jabber | 05/11/04
Yes, common sense is required.  No_Ax_to_Grind | 05/11/04
i remember a case..  ryusen | 05/11/04
Problem is that the LAW saws you are WRONG  Plain Logic | 05/11/04
In your house  beepster | 05/11/04
And according to the law...  B.O.F.H. | 05/11/04
Again, Ax, the LAW says you are wrong . . . AGAIN !!!  Plain Logic | 05/11/04
Faulty analogy  SteveS_z | 05/11/04
but there WAS damage done...  ryusen | 05/11/04
Microsoft should be held liable also ...  Plain Logic | 05/11/04
You're right  Spoon Jabber | 05/11/04
I wish...  Nullifidian | 05/11/04
State Lemon Laws v. M$  drichards1953 | 05/11/04
simply... wrong  ejhonda | 05/11/04
re Microsoft should be held liable also...  Wolfie2K3 | 05/11/04
But...  Spoon Jabber | 05/11/04
no excuse...  ryusen | 05/11/04
Why you are wrong.  No_Ax_to_Grind | 05/11/04
Hmmm, no reply? I must have been right.  No_Ax_to_Grind | 05/11/04
Excuse me?  gunny_z | 05/11/04
or codered for that matter (nt)  ryusen | 05/11/04
Yo,bozo,WRONG AGAIN. Buffer overflow bugs have nothing to do with hardware!  Plain Logic | 05/11/04
Bug Hunters  paman57@... | 05/11/04
"Just like the Corvair of years past..."  IT_Guy_z | 05/13/04
Now if they only give the little weasels...  Stewart Cannon | 05/11/04
I'll supply the rope!  No_Ax_to_Grind | 05/11/04
Yep, it really slowed 'em down, didn't it?  Yen_z | 05/11/04

What do you think?

advertisement
Click Here
Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
advertisement

White Papers, Webcasts, and Downloads