|
Unauthorized Access and Computer Virus Assaults
We have become aware of unauthorized workstation access and virus
assaults which were occurring at some accounts. These attacks exploit
a weakness in our software's use of Microsoft Data Engine (MSDE)
databases on the desktop. MSDE use requires a system password, and
Affymetrix software was built to utilize MSDE under its default
configuration - a system administrator (SA) password that is "null".
While common, a null SA password can be exploited by malicious
individuals in order to gain control of your desktop computer. When
Affymetrix became aware that these attacks were occurring, it immediately
created a utility to thwart this belligerent activity. This utility
is called "MSDE Lock."
Many of our customers will not experience this malicious activity
because they have invested in network firewalls and desktop virus
scanners which together prevent the attacks. However, others utilize
more open networks which operate at lower direct cost and promote
broader interchange with the global Internet. These open networks
are often also more vulnerable, and allow external hacking and virus
propagation to occur. It is for these latter environments that use
of the MSDE Lock Utility is strongly recommended.
|