Techware Labs Header

Forums have moved

See this announcement for more details, or just go directly there.

  #1  
Old 07-19-2001, 07:28 PM
Keefe Keefe is offline
Administrator
 
Join Date: May 2002
Location: Wisconsin
Posts: 2,337
Send a message via ICQ to Keefe Send a message via AIM to Keefe Send a message via MSN to Keefe Send a message via Yahoo to Keefe
Default CODE RED Virus Alert!

The Code Red worm quickly spreading across the Internet is programming infected computers to attack the White House Web domain with a denial-of-service attack Thursday night -- a concerted attack that could slow Net traffic to a crawl, security experts said Thursday.


The planned attacks on whitehouse.gov will take place on the 20th day of each month (based on Universal Time) as long as a machine is infected, said Marc Maiffret, chief hacking officer at eEye Digital Security, an Internet security firm that released a detailed analysis of the code.


The Code Red Worm is believed to have infected at least 100,000 servers so far. First discovered last Friday, the worm exploits a known security flaw in Microsoft's Web server software.


According to Maiffret, each infected server will send as much as 410MB of data every four hours or so, depending on how many times it's been infected (multiple infections are possible). If thousands of infected machines attack whitehouse.gov at once, the flood of data could bring the Net to its knees, he said.


"If this goes along what it's looking like, parts of the Net will go down," Maiffret said.


Government officials are reportedly reviewing eEye's analysis.


Dubbed Code Red because of evidence suggesting it originated in China, the self-spreading program defaces infected websites and also contains malicious code that could let hackers identify infected servers and take control of them remotely.


Several posters to the popular Bugtraq security mailing list run by SecurityFocus.com have noticed an unintended side effect of Code Red: The worm seems to be crashing some DSL routers and higher-end network routers that direct data around the Internet.


Code Red works by taking advantage of a glitch in Microsoft's Internet Information Server software. The hole, which eEye discovered, allows hackers to take control of the computers. Microsoft first disclosed the security hole June 18 and has made a downloadable patch available on its website. More than 6 million servers on the Internet use the software.


But despite Microsoft's efforts to publicize the flaw, many system administrators have failed to download the patch, according to Scott Culp, security program manager for Microsoft's security response center. This slow response has allowed Code Red to infect millions of servers still using unpatched versions of the software, Culp said.


Even servers running Microsoft's own websites aren't immune from Code Red. Earlier Thursday, webpages on both MSN.com and Microsoft.com were defaced.
__________________
It's crazy I'm thinking, just knowing that the world is round.
-http://www.techwarepc.com/ - The Technology Experts
Reply With Quote
  #2  
Old 07-24-2001, 10:42 AM
lynchmob
 
Posts: n/a
Default Re: CODE RED Virus Alert!

are there any current viruses being spread by email right now?
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -5. The time now is 04:54 PM. Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Forum style by ForumMonkeys.