Skip to content

Biting the hand that feeds IT

The Register ®

Security:


Related Whitepapers

Comments on ‘Real Media attacks real people via RealPlayer’

Hackers twist ad network into Trojan network

Published Tuesday 23rd October 2007 00:40 GMT

« Back to article page

Well, serves you right.... 

By Andy Worth
Posted Tuesday 23rd October 2007 07:02 GMT

That's what you get for having the "spyware" Realplayer installed.

Real shite and the Beeb 

By Sceptical Bastard
Posted Tuesday 23rd October 2007 07:46 GMT

This news item comes as no surprise to me.

I have long avoided all Real Media software and - patched or unpatched - would never let Real Player near my machine, mainly because it is hopelessly buggy and inherently insecure (see El Reg passim) but also because it constantly tries to phone home and spy on me.

Worryingly, the BBC's 'Listen Again' feature still requires users to download RP. As a licence payer, I strongly object to the Beeb pimping a flawed and insecure proprietary programme. It's not as if they warned users of the potential risk or offered security advice.

Internet security is virtually a contradiction in terms nowadays, of course. But that still doesn't absolve public service providers from their responsibility to help safeguard users wherever possible. As far as I am concerned, advocating Real Media's products is an obvious dereliction of that duty of care.

I quit RealPlayer eons ago 

By Pascal Monett
Posted Tuesday 23rd October 2007 08:56 GMT

They have already disgusted me once with their Big Brother tactics and pushy adware tendancies.

I won't be installing that tripe again. I don't care how "good" it has become, or that this issue is independant of their will. RealMedia has proven itself to be run by crooks, and once a crook, always crooked in my book.

As far as I'm concerned, RealMedia can shrivel up and die.

A small correction. 

By Anonymous Coward
Posted Tuesday 23rd October 2007 10:45 GMT

"People who use RealPlayer should download a patch, ...."

No, people who use RealPlayer should just stop. The only thing to do with Real that they should be downloading is Real Aternative.

www.free-codecs.com/download/Real_Alternative.htm

Real Alternative? 

By Anonymous Coward
Posted Tuesday 23rd October 2007 10:54 GMT

Which parts of Real Player were compromised and could this same vulnerability affect those using Real Alternative (which must use some parts of Real Player, right?)

I'm with Andy 

By Graham Jordan
Posted Tuesday 23rd October 2007 11:30 GMT

Anyone stupid enough to have that crap installed deserves to be hit with spyware..

Figures... 

By Mats Koraeus
Posted Tuesday 23rd October 2007 11:43 GMT
Black Helicopters

<sarcasm>

Shocking! And to think such a thing would happen even after Real cleaning up their act (for the n:th time)!

</sarcasm>

No Paris Hilton angle? Dear Reg, how can this be? 

By Anonymous Coward
Posted Tuesday 23rd October 2007 18:31 GMT
Paris Hilton

And also: fixed my system by uninstalling realplayer. Pity that some sites still require it for their vids and that streaming video on windows media player is so buggy (at least in my experience).

I guess some people will think I deserve the PH icon just for saying that I hope all vids should be flash vids from now on. Most sites that use WMP or Real have let me down sooner or later. All those flash web2.0 thingies do work at least. And so far I did not have to upgrade flash each day.

Real Dumb? 

By B Gracey
Posted Tuesday 23rd October 2007 20:21 GMT

Okay, Real Networks, Real Media and RealPlayer aside, who actually wants to look at ads all day as they surf the web anyway?

Seeing just a few people actually admit to it begs my next question: why are people not blocking it - all of it?

Ask your friend who knows a little about computers if you do not - and get into a real browser with plugins to block JavaScript, ads, iframes, and pop-up windows... if your favourite website uses those things, at least you can get to the meat and potatoes more quickly, and (so it seems) have fewer intrusions into your already cluttered computing life. Play safe.

Host malware, go to... Cabo San Lucas 

By Morely Dotes
Posted Tuesday 23rd October 2007 23:41 GMT
Flame

"An IFrame contained in the tainted ads pointed to malicious code hosted on a server located in the Netherlands that has a history of attacking honeypot machines maintained by Symantec."

A glaringly obvious question: Why have the legal authorities in the Netherlands not arrested that server's operator?

Oh, wait, it's neither the UK nor the US, and he's not providing links to copyrighted shite, so the plods can't be buggered to get off their arses, can they?

whitepaper title

How IT Management Can "Green" the Data Center

This Gartner research provides managers with an outline of the trends affecting datacenters and offers strategies with which to address these changes..
whitepaper title

Gartner Paper: US Data Centers

U.S. enterprise data centers face considerable space and energy constraints over the next few years. Download this free independent report to read more..

Top 20 storiesAll The Week’s HeadlinesArchiveSearch