Kaspersky Lab, a leading developer of secure content management solutions, is notifying computer users about the need to install the Windows operating system update MS08-067 (http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx). The vulnerability is that this new update patch is a serious threat for many PC users.
Microsoft announced the release of this urgent update for Windows 2000, XP, Vista, Server 2003 and 2008 operating systems. The update is especially critical for Windows 2000, XP, and Server 2003 users.
It should be noted that the release of this urgent patch is a rarity in itself - the last urgent patch was released in spring of 2007. This time it is meant to prevent the spread of potentially malicious worms via a detected vulnerability. These worms could hit the Internet in the next few days. The patch will also rule out the risk of hacker attacks using the vulnerability.
According to Kaspersky Lab, this vulnerability is similar to the critical vulnerability in Microsoft Windows detected in 2003-2004 that led to massive viral epidemics of malicious network worms such as LoveSan, Sasser and Rbot.
The existence of the malicious program Trojan-Spy.Win32.Gimmiv.a has already been confirmed. This Trojan spreads via the aforementioned vulnerability and was added to the Kaspersky Lab anti-virus database on the night of 24 October. This particular Trojan is a type of spyware designed to steal user passwords. Kaspersky Lab has stated that its experts promptly conducted an analysis of this Trojan, which appears to have been developed in China. Furthermore, the detected Windows operating system vulnerability will make it possible for malicious users to remotely gain total control over a user's computer.
Kaspersky Lab recommends that all users install the MS08-067 patch as soon as possible and would like to remind users that only prompt OS updates and the use of effective solutions against malware and hacker attacks can guarantee reliable protection.
Editorial contacts

