29 Sep 2004
The first malicious codes to exploit security flaws in Microsoft Windows' handling of jpeg image files has appeared on internet newsgroups.
The trojan is embedded in Jpegs that, once downloaded and viewed, allow hackers to gain control of the user's PC.
Microsoft acknowledged the vulnerability and issued a security patch earlier this month but at the time no viruses exploiting the flaw had been seen.
Online newsgroup access provider Easynews found the trojan code in pictures posted to its site earlier this week.
The current situation poses little risk of a major virus attack because the code cannot replicate itself and spread.
But a more serious way to exploit the flaw has also been posted on Bugtraq, a site that tracks and reports flaws in major software products. According to security software provider Finjan, the new method would allow the hacker to take over an end user's PC simply by having them browse a web page that contains the malformed image file using Internet Explorer.
What do you think? Email feedback@computing.co.uk
If you want to be first with the news, visit Computing every day.
Have your say on this article
Newsletters
Latest stories from Security
Latest videos
You may also like
Security jobs
Do you think the G-Cloud will be a success?
Rubbish in... rubbish enterprise. Why proper data management is so important (video, 6 min)
This Forrester report compares the costs and benefits of legacy email and productivity software with Google Apps
Upcoming Events
Join us to meet other professionals tackling this issue, and hear from Goy Roper, interim head of ICT of Norfolk County Council how his organisation deployed a flexible and intelligent network to cope with the challenge
Date: 07 Mar 2012
Time: 9am
The implementation of robust, relevant digital strategies is more crucial than ever to the success of insurance businesses
Date: 01 Mar 2012
Time: 09:00am
Receive the latest jobs direct to your inbox
Are you being paid what you are worth?