Feeds

Japanese malware author admits guilt

Movie-munch miscreant on trial for copyright infringement

Protecting against web application threats using SSL

A Japanese man has confessed to creating a data-destroying Trojan horse.

Masato Nakatsuji, 24, admitted in Kyoto District Court that he wrote a Trojan horse that incorporated copyrighted animation footage as a lure. The booby trapped file was distributed via the controversial Winny filesharing system in Japan last year.

Surfers who fell for the bait and opened the file risked finding their Windows PC infected with malware, identified by anti-virus firms as the Pirlames Trojan, that wiped music and movie files from compromised systems.

Two other men were also arrested alongside Nakatsuji, but are yet to stand trial

Nakatsuji admitted writing the malware during the first day of his trial on Tuesday, where he faces charges of copyright infringement and defaming an acquaintance by embedding his photograph within the malicious code. Oddly, he isn't being tried for virus writing.

Nakatsuji's defence team argues that the malware created by Nakatsuji caused little damage and that the interests of justice would not be served by imprisoning the graduate student for distributing a Trojan horse when there were no specific laws against it, English language Japanese daily The Yomiuri Shimbun reports.

Security watchers say Japan ought to consider drafting specific legislation clearly outlawing virus creation, currently something of a grey area in Japanese law. This legislative gap is unlikely to help Nakatsuji.

"If he is found guilty, the general public are unlikely to worry that it was his ill-advised choice of graphics which got him into legal trouble rather than virus-writing," said Graham Cluley, senior technology consultant for Sophos.

The Pirlames Trojan is far from the first time the Winny filesharing network has been linked to malware-related security snafus. In May 2006, a virus was blamed for leaking power plant secrets via Winny for the second time in four months.

A month earlier, a Japanese anti-virus company was embarrassingly forced to concede that internal documents and customer information were leaked onto Winny after one of its workers failed to install anti-virus software.

Nakatsuji himself is in much the same trouble as Isamu Kaneko, the author of the Winny filesharing program. Kaneko was also charged with copyright violation in a case that ultimately resulted in a fine.

The case against Nakatsuji continues. ®

Reducing the cost and complexity of web vulnerability management

More from The Register

next story
Spies would need SUPER POWERS to tap undersea cables
Why mess with armoured 10kV cables when land-based, and legal, snoop tools are easier?
Infosec geniuses hack a Canon PRINTER and install DOOM
Internet of Stuff securo-cockups strike yet again
Apple Pay is a tidy payday for Apple with 0.15% cut, sources say
Cupertino slurps 15 cents from every $100 purchase
Israeli spies rebel over mass-snooping on innocent Palestinians
'Disciplinary treatment will be sharp and clear' vow spy-chiefs
YouTube, Amazon and Yahoo! caught in malvertising mess
Cisco says 'Kyle and Stan' attack is spreading through compromised ad networks
Hackers pop Brazil newspaper to root home routers
Step One: try default passwords. Step Two: Repeat Step One until success
Microsoft to patch ASP.NET mess even if you don't
We know what's good for you, because we made the mess says Redmond
NORKS ban Wi-Fi and satellite internet at embassies
Crackdown on tardy diplomatic sysadmins providing accidental unfiltered internet access
prev story

Whitepapers

Providing a secure and efficient Helpdesk
A single remote control platform for user support is be key to providing an efficient helpdesk. Retain full control over the way in which screen and keystroke data is transmitted.
WIN a very cool portable ZX Spectrum
Win a one-off portable Spectrum built by legendary hardware hacker Ben Heck
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Security and trust: The backbone of doing business over the internet
Explores the current state of website security and the contributions Symantec is making to help organizations protect critical data and build trust with customers.