Symantec Tells Customers to Pull the Plug on pcAnywhere Following Code Theft
Symantec is sounding the alarm for users of its pcAnywhere remote access software following threats from a hacker. In some cases, said the security software maker, they might want to turn off and disable the application entirely. The hacker, who goes by the handle "YamaTough," might be a member of the hacker collective Anonymous. The hacker claimed last week to have released pcAnywhere source code to the wild, where it could be exploited by malicious hackers.
YamaTough's claim sparked an investigation by Symantec, which says the code was stolen back in 2006.
The code for that year's versions of Norton Antivirus Corporate Edition, Norton Internet Security,Norton SystemWorks (consisting of Norton Utilities and Norton GoBack) and pcAnywhere were taken by YamaTough, Modena said.
Also in 2006, source code for two other Symantec security applications, Symantec End Point (SEP) 11 and Symantec AntiVirus (SAV) Corporate Edition, were stolen by a local branch of Anonymous calling itself "Lords of Dharmaraja." It was posted on the Web earlier this month.
It's not clear whether the two thefts are indeed related.
Since 2006, Symantec has implemented policies and procedures to prevent a repetition of the theft, Modena remarked.
Who's at Risk?
Symantec contends that, due to the age of the exposed code for SAV and SEP, customers shouldn't be in any increased danger of cyberattacks.
All they have to do is adhere to best practices, according to the company, because current out-of-the-box security settings will suffice to protect them. Those best practices include ensuring the latest patches have been implemented.
However, users of pcAnywhere 12.0, 12.1 and 12.5 or earlier are at increased risk of cyberattacks. So are users of various products in Symantec's Altiris family that are bundled with pcAnywhere. Further, a remote access component of pcAnywhere called the pcAnywhere Thin Host is also bundled with several Symantec backup and security products.
What Symantec's Doing
On Monday, Symantec released a patch that eliminates three known vulnerabilities in pcAnywhere 12.5 running on Windows.
It plans to release patches for pcAnywhere 12.0, 12.1 and 12.5 during the week of Jan. 23, and it will continue to issue patches until it releases a new version of pcAnywhere that addresses all currently known vulnerabilities.
Symantec has also put up a white paper for pcAnywhere users in which it recommends disabling the product until Symantec releases a final set of software updates.
What Users Need to Do
Customers using pcAnywhere should upgrade to pcAnywhere 12.5 and make sure all the updates available are installed, Symantec's Modena said. They should run the application on a secure and protected network. Lastly, customers should make sure that all of the machines that they're communicating with via pcAnywhere have endpoint protection.
If customers can't upgrade to version 12.5 and download the latest patches, they should reach out to Symantec and develop a remediation plan, Modena stated.
However, if customers can't follow any of these recommendations, "we advise [them] to disable the version of pcAnywhere that they're using," Modena remarked.
"In this case, the risk of a problem resulting from not using the tool is far lower than the risk of someone using the tool against you," Rob Enderle, principal analyst at the Enderle Group, told TechNewsWorld.
"Remote access tools are often used in cases where you need to login into a remote administration terminal, and there's a very real risk that, if some of these systems are exploited, the companies that use them could be terminally damaged," Enderle explained.
Life Without pcAnywhere
Enterprises using pcAnywhere should "have a plan B in place," said independent security consultant Randy Abrams said.
Turning off pcAnywhere "can effectively shut down a business," Abrams told TechNewsWorld. On the other hand, "users who log on from hotel business computers or other public computers put a business at far greater risk than some potential product vulnerabilities."view source of story
- The Day Canonical Pushed Kubuntu Out of the Nest (12)
- Toshiba 3D TV Ditches Glasses but Demands Tight Seating (11)
- Boycott Apple! Why Apple Is Screwed (11)
- The Day Canonical Pushed Kubuntu Out of the Nest (11)
- Apple Tells MacBook Pro to Lose a Few (9)
- Samsung Throws Another Galaxy Tab at the Wall (9)
- Oracle's $1.9B Taleo Deal Ratchets Up Competition in HR Space (8)
- Bantam Live: Social CRM for the SMB Crowd (7)
- Microsoft Dynamics' Slick Strategem (7)
- Enterprise Web Apps: The Next Generation (7)
- Droid Scan Pro's an Amateur at Character Recognition (7)
- The Missing Feature: Creative Financing (6)
- The 233-Line Kernel Patch and the (Even Easier) Alternatives (6)
- Microsoft's Windows Store: FOSS Welcome Here (6)
- Can a Software Update Quench Kindle Firestorm? (6)
- Fireworks Conspicuously Absent as Nokia's Lumia Makes US Debut (6)
- DDoS the Weapon of Choice for Hackers Driven by Politics, Not Profits (6)
- Price Could Be the Next iPad Event's Biggest Surprise (6)
- Internet Access Severely Curbed in Iran (6)
- Can Spam-Swamped Ping Survive Without Facebook? (5)
- Monetizing Mobile Traffic Takes Mobile Data Intelligence (5)
- Military Gives External Media Devices Marching Orders (5)
- OpenLeaks: A Kinder, Gentler WikiLeaks? (5)
- AOL's Phoenix Rises in Facebook's Heavy Shadow (5)
- The Corporate Hoax on Linux Revisited, or I Said It Once... (5)
- Intel's Sandy Bridge Buffs Up On-Board Graphics (955)
- Adobe Bridges Designer-Developer Gap with Flash Catalyst (699)
- Intel® Xeon® Processor 5600 Series Delivers Efficiency and Performance (655)
- LinuxInsider (464)
- 2010 Holiday Guide to Mobile Devices (460)
- CRM Buyer (455)
- AAPL May Yield a Bumper Crop This Fall (447)
- 10 Commandments for Large Business and IT Transformation, Part 1 (435)
- 2011 iOS Preview for Apple Universe Stargazers (430)
- Target Your Applications to Multiple Devices with MeeGo (427)
- Google Answers Searches Before You're Finished Asking (421)
- Android May Paddle Samsung Canoe Into Turbulent Web TV Waters (421)
- Build a More Agile Business with IBM (403)
- Cisco and IBM Target a Greener World (403)
- Doing CRM Right Means Staying in Discovery Mode (401)
- Android May Paddle Samsung Canoe Into Turbulent Web TV Waters (395)
- 10 MS Exchange Practices Most Companies Should Shun (386)
- Is It CRM Time Yet? (382)
- Art Prof Lets World Peer Through His Surgically Embedded 3rd Eye (382)
- 30 Things You Need to Know About Business Intelligence Software (381)
- 8mm Vintage Cam App Gets Retro Charm Just Right (380)
- DevX Hotlist (374)
- Teaching Sales and Web Strategies to Sing in Harmony (374)
- Apple TV Should Get a Nice Reception (356)
- Marketers, Let's Get Personal (355)
