You are here: silicon.com > Software > Security Strategy

Security Strategy

Sasser 'not our fault' says Microsoft

As virus takes down UK coastguard...

By Will Sturgeon

Published: 4 May 2004 17:45 BST

The UK coastguard service lost the use of its computers and database-driven services for several hours after being hit by the Sasser virus - despite the fact a patch has been available for two weeks and further warnings from Microsoft were sent out last week.

As such the software giant says it is not to blame for this latest exploit of a vulnerability in its operating systems.

Coastguards were forced to revert to paper filing systems, telephones and other low-tech methods to keep the service going through the outage, though a statement from the Marine and Coastguard Agency said the virus wouldn't hinder the service's effectiveness as coastguards train for all eventualities, including loss of critical systems.

However, the Agency failed to return a call from silicon.com asking why a government-run public service, dealing with life or death rescues, had failed to apply a patch which had been available for two weeks on the Microsoft website.

The worm attacks vulnerabilities in Windows XP and 2000 operating systems. But Stuart Okin, UK security chief at Microsoft, said his company is not to blame even though it will doubtless be a target of criticism.

"This is the fault of the criminal who launched the attack," said Okin. "The blame lies squarely at the door of that individual."

However, he reminded those who would be quick to point the finger at Microsoft that the patch was available two weeks ago. "If users had applied the patch then they wouldn't be affected," he said.

"There are three simple steps users can take to ensure they survive such attacks," added Okin. "They can keep up with security updates, ensure they have anti-virus and the latest signature files and they have their firewall enabled. If users had done that they wouldn't have been infected by this virus."

The team behind the Netsky worm has already claimed responsibility for Sasser.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

  • Jobs
Security Consultant Ethical Hacking / Penetration Testing - London

Responsibilities: - Deliver security assessment services including network scanning, vulnerability testing, penetration testing, search engine ...

Messaging Support Analyst (AD,TREND protection,Exchange) BANKING

Other main functions of the role are troubleshooting & resolving cross platform message flow related issues, problem resolution & estate & patch ...

Senior Support Engineer - Microsoft Operating Systems - Reading - 30k

A great opportunity to work for a defence company based in Reading. Do you have experience with supporting an IT Infrastructure? Microsoft Operating ...

CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.





Quick Sitemap Links: