HP has issued a security notice after USB keys shipped with some of its
ProLiant
servers were found to have been infected with viruses.
The keys, which come in 256MB and 1GB varieties, are used to help configure
the servers on installation.
"A potential security vulnerability has been identified with two types of
optional HP USB Floppy Drive Keys intended for use with certain ProLiant
servers," reads the
advisory.
"This vulnerability could cause a local 'W32.Fakerecy' or 'W32.SillyFDC'
virus infection."
The W32.Fakerecy is written primarily for removable drives and was first
reported last year. W32.SillyFDC is also adapted for removable drives but can
also be used to download more malicious files onto an infected machine.
"This is a worrying security lapse, especially as it comes from a major
global brand with huge resources," said John Hawes, technical consultant at
Virus Bulletin.
"Production and release procedures at all serious companies should be locked
down tight to prevent this kind of thing – if we can't trust the big boys to
keep their systems clean, who can we trust?"
It is not known whether the malware got on the drives as part of a targeted
attack against HP’s products or if it was accidentally introduced due to
problems on the manufacturer's side with infected machines.
Position # 396477 Environment Support Engineer Location - Reading Job Description: There is an initial requirement an Environment Support Engineer to provide support and maintenance for the development environments within ATLAS. This role encompases many ... more >
Canary Wharf, Greater London, United Kingdom | EDS
Position # 398441 Responsibilities - Testing Consultant * Under broad direction, interacts with EDS project teams and clients to gain an understanding of the business environment, technical context, and testing objectives for a project as ... more >
UNIX Application Software Engineer - Darmstadt, Germany - £Competitive Formed in 1986 and comprising 21 European member states, EUMETSAT's role is to establish, operate and exploit European meteorological satellite systems. Data from these systems are essential ... more >
Position # 398435 Test Manager - EDS - Bicester Must be eligable for security clearance Short Description: EDS's Defence Logistics (DL) testing group tests a range of logistics information systems for the MOD. The Test ... more >More job opportunities