Defacement Worm Hits 9000 Websites

More worm news...

The defacement worm which started making its way around the web at the start of the week may be responsible for defacing almost 9000 websites over the last few days - all by itself.

A Computer Emergency Response Team (CERT) newsflash noted a marked increase in network reconnaissance activity, which it attributed to the sadmind/ISS worm scanning for vulnerable ISS boxes.

The worm uses known exploits to take control of a Solaris server and then uses that as a platform to break into and automatically deface Microsoft IIS boxes with the message: "Fuck USA government".

CERT said that "several thousand" servers may well have been defaced by the worm and acknowledged reports that over 200 unpatched Solaris servers have been infected over the last few days and are actively searching for vulnerable IIS machines.

Check the site self for the full story..

Source: Antionline

No posts to display