Botnet Hunters in Closed-Doors Redmond Summit

Botnet Hunters in Closed-Doors Redmond Summit

Written By
Ryan Naraine
Ryan Naraine
Jan 22, 2007
2 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

Faced with arguably its biggest security crisis since the 2003 network worm attacks, Microsoft is throwing its support behind a high-level powwow to discuss the escalating threat from zombie botnets and zero-day malware attacks.

The software maker is rolling out the red carpet for the worlds top security research professionals attending a closed-doors workshop at its Redmond, Wash., headquarters on Jan. 25 and 26.

The summit is being called to brainstorm the growing sophistication of botmaster operational tactics and the use of vulnerabilities and zero-day exploits in the wild.

The invite-only attendees, drawn from the biggest names in the anti-virus and Internet security space, will spend the two days talking about the advancements in spyware and phishing gangs that use botnets for online crime.

A botnet is a collection of broadband-enabled PCs, hijacked during virus and worm attacks and seeded with software that connects back to a server to receive communications from a remote attacker. In 2005 and 2006, the botnet threat exploded on the Windows platform as users struggled to deal with clever social engineering attacks.

According to statistics from Symantec, in Cupertino, Calif., an average of 57,000 active bots (individual compromised machines) was observed per day over the first six months of 2006. The botnets, which are easy to create and maintain, serve as the key hub for well-organized crime rings around the globe, using stolen bandwidth to make money from spam, spyware installations and identity theft attacks.

Microsoft has acknowledged that bots and Trojans present the biggest threat to Windows users and, with the recent surge in zero-day attacks targeting unpatched flaws in its software, the companys interest in the topic could not have come at a better time.

On the opening day of the summit, two Microsoft representatives will actively participate in the discussion around zero-day malware attacks. Greg Galford, a security architect in Redmonds Security Technology Unit, will present a case study on the way the MSRC (Microsoft Security Response Center) responds to zero-day exploits while Ziv Mador, a member of Microsofts anti-malware team, will share details on zero-day exploits in 2006.

Galford will also appear on a panel discussion on how to plan for Internet-wide zero-day threats, while MSRC manager Mike Reavey is also listed as a speaker.

Also on tap to present is Jerry Dixon, manager of the U.S. governments CERT (Computer Emergency Response Team), who will talk about the changing nature of cyber attacks. Alex Shipp, anti-virus technologist at MessageLabs, will provide a birds-eye view of targeted Trojan attacks, and Jose Nazario, senior software engineer at Arbor Networks, will discuss the link between massive botnets and DDoS (distributed denial-of-service) attacks.

Check out eWEEK.coms Security Center for the latest security news, reviews and analysis. And for insights on security coverage around the Web, take a look at Ryan Naraines eWEEK Security Watch blog.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.