You are here: silicon.com > Software > Security Strategy

Security Strategy

MSBlast worm takes down major bank

When lax IT becomes a PR nightmare...

Tags: mordea, scandinavia, msblast

By Will Sturgeon

Published: 15 August 2003 11:31 GMT

Scandinavia's largest bank, Nordea, has become the biggest European victim of the MSBlast worm.

The bank was forced to close 80 branches across Finland after the infection found its way into servers in all 440 of the bank's offices.

Pete Simpson, manager of ThreatLab at Clearswift, said: "I'm surprised they were caught out. From the number of branch closures and the apparent extent of the problem it doesn't seem as though this is a one off. It would appear to suggest there was something fundamentally wrong with the IT security procedures which were in place."

He added: "All the big players saw this coming a mile away and were patching like crazy."

Although Nordea has said a team of technical experts have been brought in to flush out the problem, Simpson suggested such reactive behaviour is a poor substitute for protecting yourself against infection in the first place.

Nordea told Reuters that the infection had not affected its online banking system - but consumers may disagree.

While no actual breach of the online banking system has reportedly taken place, news that a bank has been hit by any kind of digital attack will resonate with members of the public already careful about banking online.

Such news is a PR nightmare for banks and should serve as a reminder of the importance of an effective patching strategy, warned Simpson.

"Your patching strategy needs to be intelligent and timely," he said.

In general Simpson believes the MSBlast worm is passing reasonably painlessly.

"I'm feeling pretty good about this outbreak," he said. "I thought this was going to be bigger than Code Red or Slammer but luckily it was very poorly programmed," he added stating that while the vulnerability was widespread enough to threaten serious spread and impact, the actual quality of the worm sent to exploit it was poor.

Nordea was unavailable for immediate comment.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

  • Jobs
Atlas Banking System Specialist - HP Nonstop Tandem

Huxley Associates are currently looking for a Devloper/Analyst to join the Treasury IT Group in a top tier Investment Bank based in London. The ...

Tools/Build Programmer wanted for a small and friendly award-winning game studio!

Build machine administration • Maintenance of build scripts (dependency gathering, packaging, iso generation) • Producing bespoke builds ...

Php Programmer

My client is looking for PHP programmers to expand their development team. The team is currently working on a number of exciting projects including ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: