[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
OT (Bad things afoot on the Internet)
ternil@union.edu wrote:
>
> I know some of you guys run Microsoft servers. While I was on shift tonight
> the internet went *thud*, hard. A lot of stuff is still down. Just a heads up
> to you guys who might be running Microsoft SQL server for anything...
>
> <http://story.news.yahoo.com/news?tmpl=story&u=/ap/20030125/ap_wo_en_po/na_gen_internet_attack_2>
>
> LT
-------------------------------
It's being called Sapphire;
References:
[1] SQL Sapphire Worm Analysis
<http://www.eeye.com/html/Research/Flash/AL20030125.html>
[2] Buffer Overruns in SQL Server 2000 Resolution Service Could Enable
Code Execution (Q323875)
<http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/bulletin/MS02-039.asp>
[3] Securing SQL Server
<http://www.microsoft.com/sql/techinfo/administration/2000/securingsqlserver.asp>
[4] Unauthenticated Remote Compromise in MS SQL Server 2000
<http://www.nextgenss.com/advisories/mssql-udp.txt>
[5] MS SQL "Sapphire" Worm Mitigation Recommendations
<http://www.cisco.com/warp/public/707/cisco-sn-20030125-worm.shtml>
[6] Impact of Sapphire Worm on Extreme Devices
<http://www.extremenetworks.com/denialNotice.asp>
===========================================================
hth,
TBerk