<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Confounded by Conficker: not so Dozy</title>
	<atom:link href="http://blog.eset.com/2009/04/09/confounded-by-conficker-not-so-dozy/feed" rel="self" type="application/rss+xml" />
	<link>http://blog.eset.com/2009/04/09/confounded-by-conficker-not-so-dozy</link>
	<description></description>
	<lastBuildDate>Wed, 16 May 2012 18:22:59 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>By: David Harley</title>
		<link>http://blog.eset.com/2009/04/09/confounded-by-conficker-not-so-dozy/comment-page-1#comment-43387</link>
		<dc:creator>David Harley</dc:creator>
		<pubDate>Sun, 12 Apr 2009 18:44:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.eset.com/threat-center/blog/?p=954#comment-43387</guid>
		<description>Ironic, really, given that this industry is consistently accused of hypeing threats, that I&#039;m being accused here of &quot;playing down&quot; Conficker. 

No-one said that Conficker doesn&#039;t present a threat and never will: rather that there was very little information on what would happen on April 1st, and no particular reason to expect the end of the world, and that there were plenty of other threats to take at least as seriously. In the past few days, there has been a lot more -real- information (as opposed to speculation, some of it very wild indeed), naturally I&#039;ve passed some of it on, but it still isn&#039;t the end of the world. 

There&#039;s nothing inconsistent between our position before - &quot;don&#039;t get into a panic, but take all reasonable precautions&quot; - and after: there&#039;s a big difference between passing on hard data and yelling &quot;the sky is falling&quot;. 

I haven&#039;t &quot;changed my mind&quot;: more data came in and made it clear that there were, contrary to first impressions, significant changes in the latest variant. The blog you quoted was replaced with one that was a better reflection of the later data. My point was that the Conficker story has acquired a mythic dimension that was, for a while, aggravated by near-inactivity on the part of the botnet: I evidently didn&#039;t make that clear enough.

Conficker is and always was a &quot;real threat&quot;: there are millions of infected PCs out there somewhere, and that&#039;s no hoax. However, that doesn&#039;t mean there&#039;s going to be a &quot;monster attack&quot; on the internet. I -don&#039;t- know for sure that there won&#039;t be, of course, but it&#039;s unlikely to happen unless the Conficker gang can see a profit in it, whereas there are certainly ways in which they can profit -without- bringing down the &#039;net. 

Given the apparent size of the botnet, there could be very large-scale attacks on individual targets: DDoS attacks, for instance. That&#039;s quite a different issue, though, and not at all novel.</description>
		<content:encoded><![CDATA[<p>Ironic, really, given that this industry is consistently accused of hypeing threats, that I&#8217;m being accused here of &#8220;playing down&#8221; Conficker. </p>
<p>No-one said that Conficker doesn&#8217;t present a threat and never will: rather that there was very little information on what would happen on April 1st, and no particular reason to expect the end of the world, and that there were plenty of other threats to take at least as seriously. In the past few days, there has been a lot more -real- information (as opposed to speculation, some of it very wild indeed), naturally I&#8217;ve passed some of it on, but it still isn&#8217;t the end of the world. </p>
<p>There&#8217;s nothing inconsistent between our position before &#8211; &#8220;don&#8217;t get into a panic, but take all reasonable precautions&#8221; &#8211; and after: there&#8217;s a big difference between passing on hard data and yelling &#8220;the sky is falling&#8221;. </p>
<p>I haven&#8217;t &#8220;changed my mind&#8221;: more data came in and made it clear that there were, contrary to first impressions, significant changes in the latest variant. The blog you quoted was replaced with one that was a better reflection of the later data. My point was that the Conficker story has acquired a mythic dimension that was, for a while, aggravated by near-inactivity on the part of the botnet: I evidently didn&#8217;t make that clear enough.</p>
<p>Conficker is and always was a &#8220;real threat&#8221;: there are millions of infected PCs out there somewhere, and that&#8217;s no hoax. However, that doesn&#8217;t mean there&#8217;s going to be a &#8220;monster attack&#8221; on the internet. I -don&#8217;t- know for sure that there won&#8217;t be, of course, but it&#8217;s unlikely to happen unless the Conficker gang can see a profit in it, whereas there are certainly ways in which they can profit -without- bringing down the &#8216;net. </p>
<p>Given the apparent size of the botnet, there could be very large-scale attacks on individual targets: DDoS attacks, for instance. That&#8217;s quite a different issue, though, and not at all novel.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Randy Abrams</title>
		<link>http://blog.eset.com/2009/04/09/confounded-by-conficker-not-so-dozy/comment-page-1#comment-43386</link>
		<dc:creator>Randy Abrams</dc:creator>
		<pubDate>Sun, 12 Apr 2009 17:54:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.eset.com/threat-center/blog/?p=954#comment-43386</guid>
		<description>I can&#039;t speak for David Harley, but I can tell you this much. if you would simply listen to me you  would not be at all confused. Take the proper security precautions for dealing with all threats and you don&#039;t have to worry about conficker. If you are worried about conficker then you need to get educated. conficker is only a threat who leave themselves exposed to hundreds, if not thousands of worse threats. do you drive around only worried, or particularly worried about one make and model of car on the road? Do you  drive less defensively if there is a toyota on the road with you than if there is a Honda on the road with you? Conficker is one of thosands of threats. worry about security, not the specific threat... it&#039;s the only intelligent approach.

Randy Abrams
Director of Technical Education</description>
		<content:encoded><![CDATA[<p>I can&#8217;t speak for David Harley, but I can tell you this much. if you would simply listen to me you  would not be at all confused. Take the proper security precautions for dealing with all threats and you don&#8217;t have to worry about conficker. If you are worried about conficker then you need to get educated. conficker is only a threat who leave themselves exposed to hundreds, if not thousands of worse threats. do you drive around only worried, or particularly worried about one make and model of car on the road? Do you  drive less defensively if there is a toyota on the road with you than if there is a Honda on the road with you? Conficker is one of thosands of threats. worry about security, not the specific threat&#8230; it&#8217;s the only intelligent approach.</p>
<p>Randy Abrams<br />
Director of Technical Education</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Joe Sakic</title>
		<link>http://blog.eset.com/2009/04/09/confounded-by-conficker-not-so-dozy/comment-page-1#comment-43364</link>
		<dc:creator>Joe Sakic</dc:creator>
		<pubDate>Sun, 12 Apr 2009 02:15:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.eset.com/threat-center/blog/?p=954#comment-43364</guid>
		<description>It&#039;s funny how on this blog you have been trying to downplay the Conficker worm... and now you&#039;re coming up with several posts about how it does this and that... and oh maybe we need to revise our previous tone.



How many times are you going to change your mind? Is it a real threat or as you say &quot;I still donâ€™t think itâ€™s going to do â€œenormous harmâ€ in terms of a monster attack: &quot;. How exactly do you know that for sure?

Please try and be consistent, as some readers here who have RSS feeds are getting confused by posts that conflict with one another.

Cheers.</description>
		<content:encoded><![CDATA[<p>It&#8217;s funny how on this blog you have been trying to downplay the Conficker worm&#8230; and now you&#8217;re coming up with several posts about how it does this and that&#8230; and oh maybe we need to revise our previous tone.</p>
<p>How many times are you going to change your mind? Is it a real threat or as you say &#8220;I still donâ€™t think itâ€™s going to do â€œenormous harmâ€ in terms of a monster attack: &#8220;. How exactly do you know that for sure?</p>
<p>Please try and be consistent, as some readers here who have RSS feeds are getting confused by posts that conflict with one another.</p>
<p>Cheers.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

