← MALWARE HISTORY LABINTERACTIVE EXPERIENCE · AVAILABLE

WORM PROPAGATION CONTROL ROOM

Worm Propagation Map

AUTOMATED NETWORK SPREAD · CLOSED FICTIONAL MODEL

Trace how one simulated affected host can create multiple paths in a closed, local browser model. No code is executed and no network activity occurs.

Safe educational model

This is an illustrative closed-network model made only of local in-memory browser objects and visual connections. It performs no real networking, discovery, probing, scanning, file access, telemetry, or external requests.

ILLUSTRATIVE CLOSED-NETWORK MODEL

Outbreak analysis console

SIMULATED · NO CODE EXECUTED

Clears simulated host states, timers, paths, isolation, and patches.

Historical context

Morris Worm, Code Red, SQL Slammer, and Sasser are useful historical reference points for understanding automated propagation and response lessons. This lab does not reproduce their behavior: it uses only a fictional topology, illustrative timing, and defensive concepts.

Different routes, different roles

Email / social engineering often requires human interaction. Network worm propagation can be automatic between reachable vulnerable systems. Not every worm is identical.

KEY LESSON AUTOMATION TURNS ONE INCIDENT INTO MANY
ONE EXPOSED HOST ↓ MULTIPLE REACHABLE HOSTS ↓ SECONDARY PROPAGATION ↓ RAPID OUTBREAK