Sunday, October 07, 2007

Computer Warfare

John Robb gives an overview of a particularly nasty bit of malware. It reminds one a tad of fourth generation warfare.

Storm is designed like an ant colony, with a separation of duties. Only a small fraction of infected hosts spread the worm. A much smaller fraction are C2: command-and-control servers. The rest stand by to receive orders. By only allowing a small number of hosts to propagate the virus and act as command-and-control servers, Storm is resilient against attack. Even if those hosts shut down, the network remains largely intact, and other hosts can take over those duties.

No comments: