Updated: 24.11.2002; 13:07:26 Uhr.
disLEXia
lies, laws, legal research, crime and the internet
        

Friday, August 24, 2001

Code Red 9? Code Crimson

Two weeks into the Code Red exploit, when variant II or III or whatever you want to call it was particularly active, incidents.org noticed that another MS security flaw was being exploited. Their report is here http://www.incidents.org/diary/august2001.php#132. They give no data as to how many compromised systems are out there, possibly the reported probes are all an attempt to "jump start" the worm.

The vulnerability is described at http://www.microsoft.com/technet/security/bulletin/ms01-023.asp. Again, there has been a patch available for some time (since May, apparently), yet I'm sure that some systems will be unpatched. My Win2K SP2 machines did not need the patch, so I guess it's installed with SP2.

When will the world wake up and stop buying software from a software company that obviously can't write software well?

[Actually, the buying decision is probably done by people who know little about software, IMO].

Alistair McDonald, Bacchus Consultancy Ltd http://www.bacchusconsultancy.com [Alistair McDonald via risks-digest Volume 21, Issue 62]
0:00 # G!


Maximillian Dornseif, 2002.
 
August 2001
Sun Mon Tue Wed Thu Fri Sat
      1 2 3 4
5 6 7 8 9 10 11
12 13 14 15 16 17 18
19 20 21 22 23 24 25
26 27 28 29 30 31  
Jul   Sep

Search


Subsections of this WebLog


Subscribe to "disLEXia" in Radio UserLand.

Click to see the XML version of this web page.

Click here to send an email to the editor of this weblog.