Updated: 10/3/02; 11:21:09 PM.
The Daily Blog
Network Computing Site News and Stuff

syndicate this site

        

Monday, September 16, 2002

Ok, if you're worrying about the Linux.Slapper.Worm, our security expert, Mike Fratto, has the following quick steps that will keep your system secure until a more permanent solution is devised.

  1. See if you are vulnerable. Affected systems include Debian, RedHat, SuSE, Mandrake, Slackware, and Gentoo Linux distributions running OpenSSL versions up to and including 0.9.6d and 0.9.7 beta1
  2. Find out if you're infected. You'll see a filed called /tmp/.bugtraq.c on your system.
  3. Disable SSL. Comment out mod_ssl and Listen 443 in httpd.conf. Note, Apache installs with mod_ssl disabled. Also, make sure you're not starting SSL from the command line. Look for a start-up string that contains -D HAVE_SSL.


For further assistance, check out ISS.net's X-Force Alert.

And be sure to check out Mike's upcoming BuzzCut on the Linux.Slapper.Worm in Network Computing.

Posted by Brad Shimmin at 12:39:11 PM   comment on this post  >>[]


Hi folks. Our site editor/producer Tom LaSusa pointed pulled a very pressing issue off of the wire this morning, offering a bit of advice for you.

As a rule, Mondays suck. But for all you Apache Admins out there, this is one Monday where you'll really wish you stayed under the covers.

A worm targeting only Linux-based systems running the Apache Web server and the OpenSSL secure Internet transaction protocol was discovered Friday night in Eastern Europe and surprise, it's spreading rapidly.

The worm, called Apache/mod_ssl, linux.slapper.worm or bugtraq.c worm, is self-propagating, malicious code that exploits a known vulnerability in OpenSSL.

Our advice? Grab a cup of strong, hot coffee, read more about this little bugger on InternetWeek.com, including news on patches. Then dream of Friday afternoon -- somewhere around 4:59pm.


We'll also have some hands on advice on the issue as it unfolds. So stay tuned here.

Posted by Brad Shimmin at 12:10:28 PM   comment on this post  >>[]

Hi everyone. Just a note to let you know that the final installment of the September 15th issue is now online. In it you'll find a great workshop on managing digital rights by Sean Doherty. Also, there's an interesting Sneak Preview of St. Bernard's iPrism filtering/monitoring tool by Saurabh Bhasin

Plus, I've just posted two new radio shows for your listening pleasure.



Posted by Brad Shimmin at 12:06:29 AM   comment on this post  >>[]


© Copyright 2002 CMP Media LLC.
 
September 2002
Sun Mon Tue Wed Thu Fri Sat
1 2 3 4 5 6 7
8 9 10 11 12 13 14
15 16 17 18 19 20 21
22 23 24 25 26 27 28
29 30          
Aug   Oct



site surf