You are here: silicon.com > Software > Security Strategy

Security Strategy

Sony USB device harbouring "nasty" rootkit

Déjà vu anyone?

Tags: usb, rootkit, sony

By Liam Tung

Published: 3 September 2007 08:28 GMT

Sony says the rootkit-like behaviour of a device driver used to run its biometric Micro Vault USM-F thumb drive was unintentional.

A Sony Sweden spokesman told local press that sometimes even actions undertaken with "good will" can go wrong.

His comments came the same day that antivirus company McAfee joined a growing chorus of companies criticising Sony for compromising its customers' security. The Micro Vault drive is a USB device featuring fingerprint-reading software intended to add an extra layer of security for PC users. The software needed to be installed on the PC for the USB to work contains the rootkit technology.

The criticism is reminiscent of that directed at Sony BMG Music Entertainment in November 2005, when a programmer revealed that a technique designed to cloak the company's copy-protection software for music CDs also could be used by virus writers to hide malicious software.

McAfee reported that Taiwan's FineArt Technology, which makes encryption software for PCs and laptops, was responsible for creating the offending USB software.

McAfee security specialists Aditya Kapoor and Seth Purdy wrote in a blog: "The authors apparently did not keep the security implications in mind [when designing the installation method]."

Kapoor and Purdy catalogued the incident as one of the worst examples of "nasty rootkits that use blended techniques to hide or protect themselves".

Echoing concerns expressed by another security specialist, F-Secure's Patrik Runald, the McAfee bloggers said the default installation path does nothing to stop malicious-software authors from copying code to a directory of their choice and executing it in that location.

They added that another easy hack for malicious-software authors would be to launch code from their chosen directory and add a start-up entry for the software to ensure it is hidden immediately as the PC boots up.

Sony Australia has not responded to multiple requests for comment.

Liam Tung writes for ZDNet Australia

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business

Jon Collins Is losing a mobile device really such a big deal? How to minimise the damage to your business


  • Jobs
Trade Floor Support - Market Data - Top Investment Bank - London -Perm

MS Win 2000 Pro in an Active Directory environment, Office 2000/03, Excel troubleshooting down to macro level, troubleshooting of operating system & ...

3rd Line Support Analyst (Windows2000/2003,Exchange)-Manchester

Windows 2000/2003, Exchange, Hardware Software, Windows 2000/XP,Network, Desktop, Laptops, Printer, Configuration, Installation, Administration. You ...

Senior Systems Engineer Team Lead

s, Desktops, Laptops, xSeries, Blades, Printers, AppleMAC, Routers Hardware installation for customers and internally Software installation of OS and ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: