iEntry 10th Anniversary RSS Archive

IT Management Begins With Security
SecurityProNews > Insider Reports > Insider > Sony Has Another Rootkit Issue
Search:
[ insider_reports_insider ]

Sony Has Another Rootkit Issue



David Utter
Staff Writer
2007-08-28

SecurityProNews: Insider Reports Insider Reports RSS Feed


It's not Velvet Revolver CDs at risk this time, but USB sticks distributed under Sony's name that show up with hidden software.

Sony Has Another Rootkit Issue
Sony Has Another Rootkit Issue

Although the security community probably owes Sony a thank you for helping millions more people understand what a rootkit is, they will be surprised that once again a Sony consumer product has been dropping hidden files onto systems.

Security firm F-Secure discovered that the software accompanying the Sony MicroVault USB storage device exhibited "rootkit-like behavior." F-Secure's investigation found not one, but two, instances of such software being dropped onto machines:

The Sony MicroVault USM-F fingerprint reader software that comes with the USB stick installs a driver that is hiding a directory under "c:windows". So, when enumerating files and subdirectories in the Windows directory, the directory and files inside it are not visible through Windows API. If you know the name of the directory, it is e.g. possible to enter the hidden directory using Command Prompt and it is possible to create new hidden files. There are also ways to run files from this directory.

This time around, their could be a legitimate reason for the software to engage in this hiding practice. "It is our belief that the MicroVault software hides this folder to somehow protect the fingerprint authentication from tampering and bypass," F-Secure noted.

"It is obvious that user fingerprints cannot be in a world writable file on the disk when we are talking about secure authentication. However, we feel that rootkit-like cloaking techniques are not the right way to go here."



About the Author:
David Utter is a business and technology writer for SecurityProNews and WebProNews.

More insider_reports_insider Articles

SecurityProNews: Insider Reports Insider Reports RSS Feed


Get Your Site Submitted for Free in the World's Largest B2B Directory!

Email Address:
* URL:
*
*Indicates Mandatory Field

Terms & Conditions

iEntry Featured Services: Jayde Member Services | Forums | Freeware | Advertise with Us

Virus Warnings

Subscribe to
SecurityProNews FREE!



[ more newsletters ]

article resources
Search Articles:
[advanced search]

WebProWorld.com
Get in-touch with industry experts and leaders
Post your site for review by expert and peers
Ask Security, IT, Development and Design questions

Free Membership: Join Now!

Visit WebProWorld.com

Titan Quest Forum
The #1 Titan Quest forum
Halo 3 Forum
The best Halo, Halo 2, Halo 3 forum
Nintendo Wii
Nintendo Wii news and views
Mac Software
The best in OS X freeware
Graphics Forum
Your source for graphic tutorials
SecurityProNews.com | Breaking eBusiness News Get Your IT Questions Answered - Click Here SecurityProNews News Feeds