Zombies infiltrate US military networks
Behind the lines
Regcast training : Hyper-V 3.0, VM high availability and disaster recovery
Security researchers have traced spam-sending botnet clients back to networks run by the US military.
Support Intelligence, the firm whose research on honeynets revealed that the networks of at least 28 Fortune 1000 companies contained malware-infected spam-spewing PCs, has found evidence of bots running behind military networks.
Rick Wesson, chief exec of Support Intelligence, said the firm's honeynet system has received Viagra spam from an IP address owned by the Randolph Airforce base. Support Intelligence has also observed bots - running IP addresses owned by the Directorate of Information Management - trying to connect to botnet command and control servers, evidence that PCs run by the directorate have become spam proxies under the control of hackers.
Most security experts associate malware-infected PCs that form the zombie components of botnet networks with careless consumers. The work of Support Intelligence suggests that large IT firms, including HP and Oracle, as well as the US military, are also partly responsible for the deluge of stock offer scams, penis pill offers, and other assorted tat that deluges surfers' inboxes every day.
The misuse of US military networks by spammers and other pond life is infrequently reported, but goes back some years. In August 2004, we reported how blog comment spams promoting illegal porn sites were sent through compromised machines associated with unclassified US military networks. Spam advertising "incest, rape and animal sex" pornography was posted on a web log which was set up to discuss the ID Cards Bill via an open proxy at the gateway of an unclassified military network. ®
COMMENTS
Maybe a change of OS would help....
Can anyone believe they run Windoze on those desktops? Surely you jest.
I dare say if they ran a naturally resistant OS, they might have many less problems with compromise. MacOS, Linux, etc., anything but that insecure piece of garbage.
Open standards would also make it easy to switch to other platforms if need be to stay ahead of the bad guys.
-Tim
First they came for Gary McKinnon...
I wonder what they'll do when (LOL - *if*) they ever catch the people behind the bot networks who have "maliciously" planted unauthorised code on a military machine.
At least in Gary's defence, he can say he was only looking - these bot controllers have gone beyond simple password hacking.
Never Before in the Field of Human Conflict ..... CyberIntelAIgents
Delta Force Skunk Works ...... Virtual Forces Stumbling along....
What Manual are they Following? Is IT Current to Future needs?
I don't think so.

IT infrastructure monitoring strategies
Agentless Backup is Not a Myth
Top 10 SIEM implementer’s checklist
Steps to Take Before Choosing a Business Continuity Partner
Requirements Checklist for Choosing a Cloud Backup and Recovery Service Provider