The Steel Guitar Forum Store 

Post new topic Warning! Yahoo e-mail Under Worm Attack!
Reply to topic
Author Topic:  Warning! Yahoo e-mail Under Worm Attack!
Wiz Feinberg


From:
Mid-Michigan, USA
Post  Posted 13 Jun 2006 7:46 am    
Reply with quote

Symantec warns of mass-mail worm that exploits a vulnerability in Yahoo's Web e-mail

A mass-mail worm that exploits a vulnerability in Yahoo's Web e-mail is making the rounds, security vendor Symantec said Monday.

The worm, which Symantec calls JS.Yamanner@m, is different from others in that a user merely has to open the e-mail to cause it to run, said Kevin Hogan, senior manager for Symantec Security Response. Mass-mail worms have usually been contained in an attachment with an e-mail note encouraging a user to open it.

The worm, written in JavaScript, takes advantage of a vulnerability that allows scripts embedded in HTML (Hypertext Markup Language) e-mail to run in the users' browsers. Yahoo users should be able to modify their settings to block the zero-day exploit, Hogan said.

Symantec rated the worm a Level 2 threat, one notch above its least harmful ranking. Hogan said the worm did not appear to be spreading widely, and he did not anticipate the threat level rising.

When activated, the worms then sends itself to other users in the victim's address book who also use Yahoo e-mail with the suffixes of @yahoo.com or @yahoogroups.com. The worm mimics a function within Yahoo's Web mail called "Quickbuilder," which allows a user to add contacts in an address book from received e-mail, Hogan said. The process, however, is transparent to the victim, he said.

The harvested e-mail addresses are sent to a remote server. Users of Yahoo Mail Beta do not appear to be affected, Symantec said.

The worm also opens a browser that displays a Web page that does not appear to contain malicious content.

Although Yahoo's Web e-mail has not been fixed, users are advised to update virus and firewall definitions and block any e-mail sent from av3@yahoo.com. The subject line of the e-mail with the worm says "New Graphic Site," and the body says "this is test."

------------------
Bob "Wiz" Feinberg
Moderator of the SGF Computers Forum
Visit my Wiztunes Steel Guitar website at: http://www.wiztunes.com/
or my computer troubleshooting website: Wizcrafts Computer Services,
or my Webmaster Services webpage.
Learn about current computer virus and security threats here.
Read Wiz's Blog for security news and update notices


View user's profile Send private message Send e-mail Visit poster's website

Wiz Feinberg


From:
Mid-Michigan, USA
Post  Posted 13 Jun 2006 8:24 am    
Reply with quote

It appears that Yahoo has quietly patched this vulnerability in it's web mail system, but I urge extreme caution if you use your browser to read Yahoo! email.

I'll wager that a lot of you aren't aware of a special program called YPOPS that will allow you to send and receive Yahoo email via Outlook Express, or any other real email client. You can read all about it on SourceForge, and download it from here.

There is even a YPOPS Forum for various supported operating systems, covering all facits of installing, configuring and using the program. The Windows Forum is here and the MAC Forum is here.

------------------
Bob "Wiz" Feinberg
Moderator of the SGF Computers Forum
Visit my Wiztunes Steel Guitar website at: http://www.wiztunes.com/
or my computer troubleshooting website: Wizcrafts Computer Services,
or my Webmaster Services webpage.
Learn about current computer virus and security threats here.
Read Wiz's Blog for security news and update notices


View user's profile Send private message Send e-mail Visit poster's website

mickd

 

From:
london,england
Post  Posted 13 Jun 2006 1:59 pm    
Reply with quote

Wiz
I always thought one of the pluses of Yahoo mail was that it was browser-based (no need to use Outlook - notorious vehicle for viruses etc). Did I get that wrong ? Is a local pukka email client actually safer ?
Mick
View user's profile Send private message Send e-mail Visit poster's website

Wiz Feinberg


From:
Mid-Michigan, USA
Post  Posted 13 Jun 2006 3:53 pm    
Reply with quote

Mick;
A real email client is neither more nor less secure than browser based email, unless steps are taken to make it secure. Browser-based email is only as secure as your browser's security settings. Email programs usually have their own configuable security settings. I know how to lock down Outlook Express, don't browse with Internet Explorer and don't use my Firefox browser to do email.

This is a subject unto itself. I have written about setting up security in Outlook Express on my Blog.

------------------
Bob "Wiz" Feinberg
Moderator of the SGF Computers Forum
Visit my Wiztunes Steel Guitar website at: http://www.wiztunes.com/
or my computer troubleshooting website: Wizcrafts Computer Services,
or my Webmaster Services webpage.
Learn about current computer virus and security threats here.
Read Wiz's Blog for security news and update notices


View user's profile Send private message Send e-mail Visit poster's website

mickd

 

From:
london,england
Post  Posted 14 Jun 2006 1:41 pm    
Reply with quote

Thanks - point taken.
Would I lose the automatic Yahoo virus check on attachments if I went from being browser-based to client-based ?

[This message was edited by mickd on 14 June 2006 at 02:42 PM.]

View user's profile Send private message Send e-mail Visit poster's website

Wiz Feinberg


From:
Mid-Michigan, USA
Post  Posted 15 Jun 2006 6:47 am    
Reply with quote

Mick queried my positronic net with:
Quote:
Would I lose the automatic Yahoo virus check on attachments if I went from being browser-based to client-based ?

The Yahoo virus scanner runs at the email server level, on incoming and outgoing email, so you won't lose that protection, as such, for what it is worth. You should not be trusting the security of your entire operating system to any external solution, like Yahoo email virus scanning. If you aren't already using a personal anti-virus program you are playing Russian Roulette with viruses and other malware. There are free programs available from AVG and Avast, so there is no excuse for not having an up-to-date A/V program on every computer.


------------------
Bob "Wiz" Feinberg
Moderator of the SGF Computers Forum
Visit my Wiztunes Steel Guitar website at: http://www.wiztunes.com/
or my computer troubleshooting website: Wizcrafts Computer Services,
or my Webmaster Services webpage.
Learn about current computer virus and security threats here.
Read Wiz's Blog for security news and update notices


View user's profile Send private message Send e-mail Visit poster's website

mickd

 

From:
london,england
Post  Posted 15 Jun 2006 1:59 pm    
Reply with quote

Wiz
I already run AVG (have done for a long while now) but it's reassuring to have belt and braces . I have just downloaded Ypops and will give it a try..
Mick

[This message was edited by mickd on 15 June 2006 at 03:05 PM.]

View user's profile Send private message Send e-mail Visit poster's website


All times are GMT - 8 Hours
Jump to:  

Our Online Catalog
Strings, CDs, instruction,
steel guitars & accessories

www.SteelGuitarShopper.com

Please review our Forum Rules and Policies

Steel Guitar Forum LLC
PO Box 237
Mount Horeb, WI 53572 USA


Click Here to Send a Donation

Email admin@steelguitarforum.com for technical support.


BIAB Styles
Ray Price Shuffles for
Band-in-a-Box

by Jim Baron
HTTP