Vulnerabilities / Threats
5/5/2009
10:22 PM
Connect Directly
RSS
E-Mail
50%
50%

Viral Art: A Gallery Of Security Threats

Visually, online threats such as viruses, worms, and Trojans can be as beautiful as they are menacing to individual PC users, enterprises, and IT security professionals.




At its peak, MyDoom reached an infection rate of 1 in every 12 e-mails.
(click for image gallery)

With 94 % of IT professionals expecting to suffer a security breach, and Windows 7 already showing signs of vulnerability to hackers, it's fair to say we're under siege from attackers.

But what does the enemy look like? What color is spyware? What shape and form identify varying strains of malware, worms, and Trojans?

Artists Alex Dragulescu and Julian Hodgson accepted a commission from MessageLabs, now part of Symantec, and set to work to find out.

It turns out the look of online threats can be as beautiful as they are menacing to individual PC users, enterprises, and IT security professionals.

Using pieces of disassembled code, API calls, memory addresses, and subroutines associated with the bane of a security team's existence, they analyzed the data by frequency, density, and groupings. Algorithms were then developed and the artists mapped the data to the inputs of the algorithms, which then generated virtual 3-D entities.

The patterns and rhythms found in the data gave shape to the configuration of the artificial organisms, and the result was a series of images called Malwarez.

In addition to malware, worms, Trojans, the artists also analyzed and created renderings of e-mail spam, phishing attacks, keyloggers, and malicious e-card attacks.

Dragulescu's projects are experiments and explorations of algorithms, computational models, simulations, and information visualizations that involve data derived from databases, spam e-mails, malware, blogs, and video-game assets.

In 2005, his software Blogbot won the IBM New Media Award. Blogbot is a software agent in development that generates experimental graphic novels based on text harvested from blogs. Since 2007, Dragulescu has worked as a researcher in the Social Media Group at the MIT Media Lab.


InformationWeek Analytics has published an independent analysis on what executives really think about security. Download the report here (registration required).

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Flash Poll
Current Issue
Cartoon
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-0607
Published: 2014-07-24
Unrestricted file upload vulnerability in Attachmate Verastream Process Designer (VPD) before R6 SP1 Hotfix 1 allows remote attackers to execute arbitrary code by uploading and launching an executable file.

CVE-2014-1419
Published: 2014-07-24
Race condition in the power policy functions in policy-funcs in acpi-support before 0.142 allows local users to gain privileges via unspecified vectors.

CVE-2014-2360
Published: 2014-07-24
OleumTech WIO DH2 Wireless Gateway and Sensor Wireless I/O Modules allow remote attackers to execute arbitrary code via packets that report a high battery voltage.

CVE-2014-2361
Published: 2014-07-24
OleumTech WIO DH2 Wireless Gateway and Sensor Wireless I/O Modules, when BreeZ is used, do not require authentication for reading the site security key, which allows physically proximate attackers to spoof communication by obtaining this key after use of direct hardware access or manual-setup mode.

CVE-2014-2362
Published: 2014-07-24
OleumTech WIO DH2 Wireless Gateway and Sensor Wireless I/O Modules rely exclusively on a time value for entropy in key generation, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by predicting the time of project creation.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Sara Peters hosts a conversation on Botnets and those who fight them.