County + Blaster Worm + Newspaper
Results 1 to 12 of 12

Thread: County + Blaster Worm + Newspaper

  1. #1
    Registered User +Daemon+'s Avatar
    Join Date
    Jan 2002
    Location
    RC, Ca
    Posts
    3,406

    County + Blaster Worm + Newspaper

    Well it looks like the county I work for (Riverside County, in southern california) was in the news papers this morning about how bad we got infected by the blaster worm, funny thing is out of all the departments mine department was the only one that was not affected... nice eh? oh ya cause I work here muahhahha

    any who here is the article.


    ==================SNIP=======================
    Worm's cost tops $1 million

    BLASTER: The computer invader kept county technicians and others working long
    hours.

    01:48 AM PDT on Wednesday, August 27, 2003

    By DAVID SEATON / The Press-Enterprise

    A computer worm that infected networks across the globe cost Riverside County
    $1 million to fight, Steve Reneker, the chief information officer, told
    supervisors Tuesday.

    The figure surprised some supervisors, who along with other county employees
    had their Internet and e-mail service interrupted periodically starting nearly
    two weeks ago.

    Outside computer users also could not connect to the county's Web site or
    search through other computerized information, such as court records. Reneker
    said he thought the system was down for a total of 12 hours.

    Supervisor Bob Buster asked Reneker whether the county could get reimbursed by
    Microsoft, the software provider.

    "They sell us this stuff at great costs," Buster said. "It is faulty, it is
    not secure and safe, and it is vulnerable to these continuing attempts to
    sabotage."

    But Reneker said a better solution is to fund law enforcement efforts to catch
    the perpetrators. Better internal education and preparedness would also help,
    he said.

    Some county departments did not implement a directive in July to patch all the
    computers against such attacks, Reneker said.

    The worm probably came in through a laptop plugged into the county's network
    by an employee. Reneker declined to identify the department in which the worm
    was first detected. But that laptop should have been scanned for problems in
    accordance with county policy, Reneker said.

    Because of the worm, dubbed Blaster, and its variants, all 12,500 personal
    computers and 500 servers had to be patched, Reneker said.

    The $1 million cost stems from a team of 20 technicians working on the problem
    around the clock, Reneker said, plus the efforts of 600 professionals in the
    Information Technology Department.

    "We just came out with a security policy two months ago," Reneker said. "Every
    employee is required to read and sign.

    "People need to understand to take security seriously," he added, and make
    sure that the patches and security systems are kept as current as possible.

    Reneker said costs continue to mount because four departments are still
    cleaning up worm occurrences. Two other computer infections this year cost the
    county $198,000 and $60,000, respectively, he added.

    Computers at the city of Riverside, which uses Riverside County's Internet
    domain, were also infected.

    Communications officer Sharon Cooley said the city has spent about $4,000 in
    labor costs to fix a second worm that appeared after Blaster.

    "We've been doing a lot of patching, which takes a lot of staff time," Cooley
    said.

    =====================SNIP=====================

  2. #2
    Registered User FatalException0E's Avatar
    Join Date
    Sep 2000
    Location
    New Braunfels, TX, USA
    Posts
    2,154
    Supervisor Bob Buster asked Reneker whether the county could get reimbursed by
    Microsoft, the software provider.

    "They sell us this stuff at great costs," Buster said. "It is faulty, it is
    not secure and safe, and it is vulnerable to these continuing attempts to
    sabotage."
    HAHAHAHAHA!!!!!!!
    The patch came out WHEN ?

  3. #3
    Registered User +Daemon+'s Avatar
    Join Date
    Jan 2002
    Location
    RC, Ca
    Posts
    3,406
    Originally posted by FatalException0E
    HAHAHAHAHA!!!!!!!
    The patch came out WHEN ?
    ya the main IT guy he a moron...they always get hit...oh and did I tell ya my department diidnt get hit muahahhaah

  4. #4
    Registered User drewmaztech's Avatar
    Join Date
    Jul 2002
    Location
    Holyoke, Ma. USA
    Posts
    946
    Well if they had spent the money in the beginning to get proper staffing to do all the patches - or invest in patch-management software, they wouldn't be out the 1mil.

    As far as I'm concerned, MS covered their rears by putting that patch out. Jeez - it was all over the news about the exploit weeks before the attack.

  5. #5
    Registered User MacGyver's Avatar
    Join Date
    Oct 2000
    Location
    Ottawa
    Posts
    4,232
    I had all our machines patched (including my own at home) over a month before all this crap started. You know, I think the bad publicity (OVERHYPE) that some MS updates have got for causing problems on a minute number of computers, have turned some people off to Windows Update. So they didn't bother updating like they should have.

  6. #6
    Banned Ya_know's Avatar
    Join Date
    Jun 2001
    Posts
    10,692
    Originally posted by MacGyver
    I had all our machines patched (including my own at home) over a month before all this crap started. You know, I think the bad publicity (OVERHYPE) that some MS updates have got for causing problems on a minute number of computers, have turned some people off to Windows Update. So they didn't bother updating like they should have.
    And that is the key point. Microsoft did cover their a$$ by publicly announcing this vulnerability, and the availability of the corrective patch. However there are countless reasons not to install an update. View this article for instance:
    http://usa.autodesk.com/adsk/servlet...linkID=2476059

    Up until just a few days ago AutoDesk specifically stated in this article that the MS Hotfix 823980 should not be applied, and that Service pack 4 should not be installed. If they were, the solutions were to remove them, and install an at the time “call in” update from MS---Let me reemphasize...their instructions up until only a few days ago was to not install the 823980 patch!!!

    A lot of things can be blamed, Microsoft certainly being one of them. But the proper documented research and explanation as to why this patch wasn't installed by the county would have to be brought out in litigation. Finger pointing isn't enough when you are talking about a million dollars.

    If my firm had been hit and we lost money, I would have printed out the original AutoDesk articles, and prepared a case against them. It was only after careful decision otherwise just days before the attack that I decided to address the Microsoft vulnerability, as opposed to a function in AutoCAD that my guys would probably never encounter…fortunately!

  7. #7
    Registered User +Daemon+'s Avatar
    Join Date
    Jan 2002
    Location
    RC, Ca
    Posts
    3,406
    thing is, this just tells you how much government employees work... they dont... they had win2k systesm still without sp1 WITHOUT EVEN SP1 wtf!!

    every system in my department has sp4 and has the SUS client..we have a SUS server here and been using it for a year now.

    SUS - this is a server that will download windows updates from windows servers and the clients get there updates automaticly from the local source server.

    the thing is, this is not the first time somthing like this has happend, this happends all the time, liek the begining of this year county got hacked, well my depart was still safe but everyone else wasnt

    oh-well they will never learn.
    plus with grey davis screwing things up we dont have the fundings anymore for more staf etc.. county is actually laying off poeple because of Grey Davis...

    one more thing, I find out about virus's the day they are found, and 2 days later I get a email saying. "Warning: new virus" etc... from Main I.T. hummm

    [/rant]

  8. #8
    Registered User silencio's Avatar
    Join Date
    Sep 2000
    Location
    Savannah
    Posts
    3,960
    At bellsouth most machines were still at NT4SP3 when we started rolling out windows 2000. There's a lot of things in the way of productivity in large/government offices.

  9. #9
    Registered User
    Join Date
    Aug 2000
    Location
    Grand Rapids, MI, USA
    Posts
    813

    Re: County + Blaster Worm + Newspaper

    . . . Because of the worm, dubbed Blaster, and its variants, all 12,500 personal computers and 500 servers had to be patched, Reneker said. . . .

    Daemon, are these numbers accurate? I have never worked for the government before, but it seems like your county has a lot of hardware. What do you need all this for?

  10. #10
    Registered User +Daemon+'s Avatar
    Join Date
    Jan 2002
    Location
    RC, Ca
    Posts
    3,406

    Re: Re: County + Blaster Worm + Newspaper

    Originally posted by Pinnacle
    . . . Because of the worm, dubbed Blaster, and its variants, all 12,500 personal computers and 500 servers had to be patched, Reneker said. . . .

    Daemon, are these numbers accurate? I have never worked for the government before, but it seems like your county has a lot of hardware. What do you need all this for?
    county..think of it this way

    flood control
    waste control
    fire department
    police department
    etc...

    thats the county there are alot of departments

    my department has 250 workstations and 40 servers..non were infected

  11. #11
    Banned Ya_know's Avatar
    Join Date
    Jun 2001
    Posts
    10,692

    Re: Re: Re: County + Blaster Worm + Newspaper

    Originally posted by +Daemon+
    ...my department has 250 workstations and 40 servers..non were infected
    40 servers...GD!!!! you have one server for every 6.25 workstations...man, you want to send a few of those my way!

  12. #12
    Registered User KINGofBLEH's Avatar
    Join Date
    Feb 2001
    Location
    Greensboro, NC USA
    Posts
    1,680
    Yeah and Riverside county had to pay all those techies time+a half because of new CA labor laws.

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •