Botched Malwarebytes Security Update Cripples Thousands of Computers
April 18, 2013 10:59 AM
comment(s) - last by
Malware software targeted legitimate Windows files
Security vendor Malwarebytes has crippled thousands of computers around the world after a faulty update was applied to its software. The faulty security update applied to the software marked legitimate system files as malware code.
The company admitted to the problem on its
official blog earlier this week
and has since pulled the faulty update.
"At around 3PM PST yesterday [Tuesday] Malwarebytes released a definitions update that disabled thousands of computers worldwide," wrote Malwarebytes’ Marcin Kleczynski.
"Within eight minutes, the update was pulled from our servers. Immediately thereafter, users flocked to our support helpdesk and forums to ask us for a fix."
The specific operating system files that the malware update targeted included Windows.dll and.exe files. By targeting those files, the security application prevented them from running, taking IT systems and individual computers off-line.
One company that uses a software claims that the update knocked 80% of its servers off-line. Malwarebytes maintains that it has begun reworking its update policy to ensure the sort of mistake never happens again.
"We acted over-zealously in that mission and realise far superior procedures around updating are needed. More was expected of us, and we failed," wrote Kleczynski.
"We are commissioning several new resources to stop this from happening again. We are building more redundancy to check our researchers' work and improving our peer review."
This article is over a month old, voting and posting comments is disabled
RE: Effective but risky ...
4/19/2013 4:40:48 AM
Good advice. The problem here was that users were not even running scans, yet DLLs and EXEs were getting hosed. At my office, we have the Enterprise Edition with real-time protection, and the affected PCs appeared to be compromised by malware, when it was in fact MBAM. Applications would freeze or were unable to launch. The main security suite was inoperable. So naturally, I tried to scan with MBAM and lo and behold, 2000+ "infected" files on one PC, all with the same Trojan. WTF? So I took a closer look and saw all the system files and even MBAM core files. Obviously something was fishy, so, I canceled out, hit up the web and found the support threads showing the problem. But in a way, it was a self-fulfilling prophecy. In our case at least, the program broke the system in a manner that just screamed "malware", so I can see how people could ran headfirst into more trouble, and blindly trust that the anti-malware software knew what it was doing.
Luckily, the company's fix tool worked on most users (those who couldn't even run System Restore) and de-quarantined the affected files, but some required repair installs of Windows. No idea if we'll bother renewing our licenses next year. Kinda sad, considering it's been so good thus far.
"Google fired a shot heard 'round the world, and now a second American company has answered the call to defend the rights of the Chinese people." -- Rep. Christopher H. Smith (R-N.J.)
Report: AT&T Eyeing $40B DirecTV Purchase
May 1, 2014, 8:00 AM
WebOS Class Action Settlement Costs HP $57 Million
April 1, 2014, 10:22 AM
IBM Workers Strike Over Terms of Deal That Will Have Them Working for Lenovo
March 6, 2014, 9:29 AM
Google Picking Up Artificial Intelligence Company "DeepMind" for $400 Million
January 27, 2014, 9:25 AM
Quick Note: Qualcomm Grabs up Palm, IPAQ, and Bitfone Patent Portfolio from HP
January 24, 2014, 9:18 AM
Verizon Buys Intel Media OnCue Cloud TV assets
January 21, 2014, 10:26 AM
Most Popular Articles
Lumia 830 Gets Major Upgrades Including New 20.1 Megapixel Toshiba Sensor
August 15, 2014, 6:00 PM
Windows Phone, BlackBerry Smartphone Market Share Falls to 2.5%, 0.5% Respectively
August 15, 2014, 9:44 AM
GM Concedes That the Cadillac ELR Doesn’t Really Compete with the Tesla Model S
August 15, 2014, 5:42 PM
Cell Phone Thief Calls 911 After Her Victim Chases Her and Her Male Cohort
August 14, 2014, 12:11 PM
Smarter Wired, Wireless Chargers Set to Shake Up Mobile Industry
August 14, 2014, 6:39 PM
Latest Blog Posts
Space Terrorism is a Looming Threat For the United States
Apr 23, 2014, 7:47 PM
Facebook Aims to Provide Internet to "Every Person in the World" with Drones, Satellites
Apr 1, 2014, 10:20 AM
Retail Mobile Sites Experience Outages in Light of Simplexity's Bankruptcy
Mar 14, 2014, 8:48 AM
Tesla vs. BMW: Who Has the Safer EV?
Feb 1, 2014, 2:56 PM
Justice Leaks Details of Next HTC One Two Flagship Phone
Dec 5, 2013, 4:04 PM
More Blog Posts
Copyright 2014 DailyTech LLC. -
Terms, Conditions & Privacy Information