Skype Worm Downgraded

December 21st, 2006

The Skype “worm” has now been categorized as a rather harmless Trojan. Here’s the actual alert from Websense:

Yesterday Websense Security Labs reported on our blog that there was a potential Worm propagating via Skype (see: http://www.websense.com/securitylabs/blog/blog.php?BlogID=101). After investigation we have discovered that this is not a self propagating worm and is actually a Trojan Horse.

After discussions with the very helpful Skype security team, the behavior of this Trojan using the Skype API is as per the specifications of the API. The end-user who is running Skype does get notified that a program is attempting to access it and must acknowledge it.

*there is no vulnerability in Skype at this time that has been uncovered*

For more details on the Skype API see https://developer.skype.com/Docs/ApiDoc/Overview_of_the_Skype_API

At the time of this alert the websites that were used to download the Skype API code and the site that is used to download new copies of the Trojan were both down.

Also check out the Hack Report article “To Skpe or not to Skype…”


Enter your email address to get Hack Report news via email:


1 Comment(s)

  1. Comment by Queff on March 5, 2007 8:27 am

    im being blocked by websense

Comments RSS TrackBack Identifier URI

Leave a comment

 
-->