Skip to main content

The start of a new attack

posted onSeptember 19, 2001
by hitbsecnews

I just spent the whole morning watching my intrusion detection alerts and tracking the progress of Nimda ('admin' spelt backwards). If you haven't been tracking the security lists, and I am sure most admins in Malaysia are not, then here's a heads up. Nimda is a new worm/virus which has currently 4 known attack vectors. It spreads by using the same IIS vulnerability which Code Red made use of, it spreads by email and it spreads when an Internet Explorer browser stops by an infected webserver. This means that anyone sitting on a Windoze box using Outlook and IE are vulnerable, along with the scores of unpatched IIS boxen around. That got your attention yet ?


Read more at alphaque.com.

Source

Tags

Networking

You May Also Like

Recent News

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th

Friday, June 7th

Thursday, June 6th

Wednesday, June 5th