Microsoft Security Action Arouses Major Controversy
Security experts say they're upset with Microsoft after the Redmond, Washington-based firm recently took actions to disable botnets associated with the 'Citadel' malware.
The problem: Microsoft also disrupted important research being carried out by security experts.
Citadel is a form of keylogging malware used by hackers to steal login information and passwords, thereby giving cybercriminals access to banking accounts and other web services.
It's estimated that more than one thousand botnets were using the Citadel malware to carry out cybercriminals' attacks. At the time Microsoft acted on the issue, Citadel-related attacks had affected approximately five million people and had resulted in the loss of $500 million.
Operation b54 Disables Botnets, Security Operations
In an attempt to drastically reduce Citadel's impact, Microsoft led an operation -- dubbed 'Operation b54' -- designed to disable the many botnets using the malware. The results were controversial, to say the least. (Source: pcworld.com)
Some security experts were grateful that Microsoft was willing to help them fight cybercrime. Others, however, were livid that the firm took action without consulting them.
The problem was that Microsoft's actions negatively affected many active anti-malware research operations. An anonymous researcher for Swiss security organization Abuse.ch says Microsoft's campaign hindered rather than helped his group's work.
"In my opinion, [Microsoft's] operation didn't have any big noteworthy impact on Citadel, rather than disturbing research projects of several security researchers and non-profit organizations, including Abuse.ch," the researcher said. (Source: abuse.ch)
"In my opinion, Operation b54 was nothing more than a PR campaign by Microsoft."
Extent of Operation b54's Impact Unknown
Microsoft's operation was also controversial because it adjusted system settings on infected computers.
Even though the intent was to aid victims -- Microsoft helped them downloaded antivirus software -- some security researchers say the firm should not be making changes to users' settings without first consulting them.
"For some of the more hardcore security research people, that's a very dangerous precedent to set," noted Chester Wisniewski, a security advisor for Sophos. (Source: pcworld.com)
As for the effectiveness of Microsoft's actions, Wisniewski was skeptical.
"This is a big blow to the criminals, but it certainly isn't going to put them out of business," he said.
Most popular articles
- Which Processor is Better: Intel or AMD? - Explained
- How to Prevent Ransomware in 2018 - 10 Steps
- 5 Best Anti Ransomware Software Free
- How to Fix: Computer / Network Infected with Ransomware (10 Steps)
- How to Fix: Your Computer is Infected, Call This Number (Scam)
- Scammed by Informatico Experts? Here's What to Do
- Scammed by Smart PC Experts? Here's What to Do
- Scammed by Right PC Experts? Here's What to Do
- Scammed by PC / Web Network Experts? Here's What to Do
- How to Fix: Windows Update Won't Update
- Explained: Do I need a VPN? Are VPNs Safe for Online Banking?
- Explained: VPN vs Proxy; What's the Difference?
- Explained: Difference Between VPN Server and VPN (Service)
- Forgot Password? How to: Reset Any Password: Windows Vista, 7, 8, 10
- How to: Use a Firewall to Block Full Screen Ads on Android
- Explained: Absolute Best way to Limit Data on Android
- Explained: Difference Between Dark Web, Deep Net, Darknet and More
- Explained: If I Reset Windows 10 will it Remove Malware?
My name is Dennis Faas and I am a senior systems administrator and IT technical analyst specializing in cyber crimes (sextortion / blackmail / tech support scams) with over 30 years experience; I also run this website! If you need technical assistance , I can help. Click here to email me now; optionally, you can review my resume here. You can also read how I can fix your computer over the Internet (also includes user reviews).
We are BBB Accredited
We are BBB accredited (A+ rating), celebrating 21 years of excellence! Click to view our rating on the BBB.