Re: [Full-Disclosure] Super Worm

From: Aschwin Wesselius (full-disclosure_at_illuminated.nl)
Date: 04/19/04

  • Next message: Aviram Jenik: "[Full-Disclosure] KPhone STUN DoS (Malformed STUN Packets)"
    To: sean01@accnet.com.au
    Date: Mon, 19 Apr 2004 14:12:49 -0100
    
    

    Sean Crawford wrote:

    >Phil wrote------------->
    >
    >>Nor their arrogance. I had two people tell me this weekend that they had
    >>got a virus from Windows Update. No way would they listen to what I told
    >>them. And it was a complete waste of time enumerating the various attack
    >>vectors which could lead them to believing that that was what happened.
    >>Whatever I told them, they still refused to believe any other explanation
    >>than that Microsoft had sent them a virus from the Windows Update site.
    >>
    >>
    >FFS.....I can just hear them now..
    >
    >I do support for a small company(about 150 end users)and these are the same
    >issues I go through daily, don't even try and explain exploits, it leads to
    >another whole world of frustration/pain..most people don't even want to
    >understand..
    >
    >I say it all the time to my boss...IT support is a thankless job as the only
    >time I/we get a call is when someone's not happy...
    >
    >On the other hand....without those dimwits I would be out of a job...God
    >bless the dill's..
    >
    >

    Yeah, but with the problems and the stupidity of end users, the curve of
    complexity gets steeper. Dimwits can be good, because it keeps you awake
    and focussed. But too many, gives you headaches and makes you go off
    schedules.

    True control (to keep your job) is to have control on the dosis of
    knowledge about security. Keep them wellinformed, but not into the
    sticky details, so you have tasks left for yourself.

    Make a good list wich people can check for themselves. A knowledge base
    maybe with good understandable descriptions of threats and info on new
    things wich might hit them. If they did not obey the list with checks
    they can be hold for ignorant, unhelpful, dumb, or any names you can
    think off (still stay polite). Prioritize those people by filtering who
    is helpful and sticks with the rules, and people who are just simply
    ignorant and not willing to learn from what you tell them. In the end
    it is their own fault and they have to feel how it is to not being
    helped that quick.

    If people are refusing to listen, or just ignore your job as what it
    means (to prevent and solve problems) you don't have to help them, since
    in their view you don't exist, or are not important to them. Turn it
    around and hold them for not being important either, since it works both
    ways. You have to do it together and you are not Cinderella.

    Kind regards,

    Aschwin Wesselius

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Aviram Jenik: "[Full-Disclosure] KPhone STUN DoS (Malformed STUN Packets)"

    Relevant Pages

    • Re: HELP!
      ... > virus if I can't download the latest virus updates? ... > have't even run windows update for months. ... run antivirus and spyware removal tools in Safe Mode. ... Always read the instructions before running a spyware removal tool. ...
      (microsoft.public.security.virus)
    • Re: Start-up problem
      ... The PC does not have virus protection on - ... If you do not have a current antivirus ... Do not install driver updates from Windows Update. ...
      (microsoft.public.windowsxp.general)
    • Re: What the heck was that??!!!
      ... Could this be the result of a virus and if so ... Panda online scanner ... run CWShredder and HijackThis from http://aumha.org/freeware.htm. ... Windows Update. ...
      (microsoft.public.windowsxp.general)
    • Re: Windows 98 SE User in Great Need of Help
      ... I don't think this is a Windows Update problem. ... I've tried accessing the Yahoo ... can't get either browser to access trend micro's virus site. ... does it load, and load, and load and gets no where. ...
      (microsoft.public.windowsupdate)
    • Naive users
      ... Ignorant Star who can't read wrote: ... happens is, you get a virus on YOUR computer, that virus ... questions BEFORE I try it the first time. ... I'm angry at the ignorant, lazy users ...
      (microsoft.public.security)