Microsoft warns of exploit code for dial-up bug
Microsoft is warning users of malicious software that could be used to attack Windows systems that lack the company's latest security updates.
The exploit code targets a vulnerability in the Remote Access Connection Manager (RASMAN) service, used by Windows to create network connections over the telephone. The bug, which was patched June 13, is rated critical by Microsoft, the most severe rating available. www.microsoft.com/technet/security/bulletin/ms06-025.mspx
Hackers published the code on Web sites late last week, and it is now included in Metasploit, a hacking toolkit that is used by security researchers and criminals alike.
The malicious software is not as dangerous as it could be. Most firewalls will block it and it also requires that the hacker be authenticated on the computer for it to work.