Skip to main content

Telnet worm exploiting zero-day bug in Solaris

posted onMarch 1, 2007
by hitbsecnews

A security company has found what appears to be a worm that is exploiting a verified zero-day bug in Sun Microsystems' Solaris 10 and 11.

The Sun Solaris Telnet worm attempts to log into computer systems as the user or administrator, enabling it to execute commands and move on, according to Arbor Network's Security Engineering and Response Team. The security group said it identified the flaw using its Atlas project. The software deploys sensors into service providers' networks to collect data on malware exploits.

"This morning on Atlas, we saw a pair of hosts scanning for Telnet servers," writes Jose Nazario, a software and security engineer with Arbor, in his blog. "While this may seem like a throwback to days gone by, and maybe someone is starting from scratch in their exploit activity, this is related to a recent Solaris bug, specifically CVE-2007-0882 (the telnet "-froot" bug).

Source

Tags

Viruses & Malware

You May Also Like

Recent News

Friday, November 29th

Tuesday, November 19th

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th