Re: PhD Topic suggestions
Kurt Huwig <[email protected]> Thu, 11 Dec 2003 11:31:05 +0100
| Newsgroups | gmane.comp.security.virus.openantivirus.general |
|---|---|
| Message-ID | <[email protected]> |
Fridrik Skulason wrote:
>>I don't get the point of using a virus here. A virus infects binary
>>files to propagate.
>
> Eh, no...a virus just infects, replaces or attaches itself in some way
> to another executable object. There is nothing that says it has to be
> a binary file - script viruses are alive and well, and they are interpreted
> text files - not executable binaries.
Hmm, you can argue if execution by an interpreter is fundamentally
different from interpretation by a processor. With Java, it can be both,
interpreted by a Intel JVM or executed by a Java processor.
>>The other thing are worms. You need a security hole for a worm to
>>propagate.
>
> No. A worm is basically just a self-replicating program that spreads
> across a network. It may utilize a security hole (like Blaster or CodeRed),
> but it can just as well just mail copies of itself and rely on the
> receivers being ignorand and/or careless.
Ok. Still this is a manual security hole. If I can call someone and he
tells me the root passwords, this is a hole too (although I am not a
worm, at least I think so).
>>Maybe you should dig into something like Red-Code
>
> Do you mean CodeRed?
No. I meant Redcode from Core War:
http://www.tl.infi.net/~wtnewton/corewar/
http://www.cosc.brocku.ca/Project/info/corewar.htm
Kurt
--
Kurt Huwig iKu Systemhaus AG http://www.iku-ag.de/
Vorstand Am Römerkastell 4 Telefon 0681/96751-0
66121 Saarbrücken Telefax 0681/96751-66
GnuPG 1024D/99DD9468 64B1 0C5B 82BC E16E 8940 EB6D 4C32 F908 99DD 9468
signature.asc
(application/pgp-signature, 261 B)
-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.2-rc1-SuSE (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iD8DBQE/2EdpTDL5CJndlGgRAjy+AKDDs7cgeDYaplz5dQkW7i27KqYsPQCeJ8sX a850VgJcq0vxXqYcsxQGlbk= =oZ5l -----END PGP SIGNATURE-----