Notices
ScoobyNet General General Subaru Discussion

This "Red Alert" internet thing!!

Thread Tools
 
Search this Thread
 
Old 30 July 2001 | 11:26 PM
  #1  
Luke's Avatar
Luke
Thread Starter
BANNED
 
Joined: Jan 2001
Posts: 9,644
Likes: 0
From: In my own little world
Post

Bollocks.What to do???????? Saw
FBI talking about it just now,this is getting well out of order!!!

Old 30 July 2001 | 11:33 PM
  #2  
Nexuas's Avatar
Nexuas
Scooby Regular
 
Joined: Jul 2001
Posts: 6,540
Likes: 0
Post

??????????

News to me more info please, or I will just sit here and panic.

RJP
Old 30 July 2001 | 11:43 PM
  #3  
ChrisB's Avatar
ChrisB
Moderator
 
Joined: Dec 1998
Posts: 23,573
Likes: 0
From: Staffs
Post

Nothing to worry about unless you are a Sys Admin responsible for web servers running IIS. Some of the hype has got out of hand (http://www.theregister.co.uk/content/4/20719.html) IMO.

If you are a Sys Admin, then you'll be sleeping easy as your server is fully patched up. It is, isn't it...?


Old 31 July 2001 | 01:23 AM
  #4  
Rebecca's Avatar
Rebecca
Scooby Regular
 
Joined: Nov 2000
Posts: 4,930
Likes: 0
Post


I take it then that SdB is aware that Scoobynet was brought down by this worm a week or so back ?
Old 31 July 2001 | 01:54 AM
  #5  
Markus's Avatar
Markus
Scooby Regular
 
Joined: Mar 1999
Posts: 25,080
Likes: 0
From: The Great White North
Post

Pretty sure that,

a) Simon knows about Code Red, and;

b) Has patched the server with the appropriate fixes.

Think that there were a few threads about this when the hack occured to the scoobynet server.
Old 31 July 2001 | 01:56 AM
  #6  
AlexM's Avatar
AlexM
Scooby Regular
 
Joined: Apr 1999
Posts: 1,035
Likes: 0
Post

RedAlert has already visited Scoobynet two-ish weeks ago. I presume Simon has patched Scoobynet HQ's servers so it shouldn't happen again..

It always amazes me how slow most of sysadmins are in applying patches - sometimes months or even never. To some extent they are getting what they deserve..

Cheers,

Alex
Old 31 July 2001 | 10:49 AM
  #7  
Markus's Avatar
Markus
Scooby Regular
 
Joined: Mar 1999
Posts: 25,080
Likes: 0
From: The Great White North
Post

the joys of having a Apple Mac Web Server

Anyway, sod 'code red' Sircam is a right bast! the pc's here have got it and my nice little email support system has got 300 odd messages to it, all with nice little attachments containing sensitive data there are some right sick little gits out there.

thankfully my mac can't be infected, but I can pass it on though
Old 31 July 2001 | 02:06 PM
  #8  
ChrisB's Avatar
ChrisB
Moderator
 
Joined: Dec 1998
Posts: 23,573
Likes: 0
From: Staffs
Post

Windows Update now incorporates the security hotfixes for IIS so it's not even hard to check if you are missing any.

ChrisB.
Old 31 July 2001 | 02:21 PM
  #9  
mutant_matt's Avatar
mutant_matt
Scooby Regular
 
Joined: Sep 2000
Posts: 7,039
Likes: 0
From: London
Red face

<BLOCKQUOTE><font size="1" face="Verdana, Arial">quote:<HR>Originally posted by AlexM:
<B>To some extent they are getting what they deserve..[/quote]

But there are *so* many holes in IIS (both discovered and to be discovered ), coming out all the time, you can't blame the sysadmins for not being up to date - that's almost a full time job in iteself

Matt
Old 31 July 2001 | 03:03 PM
  #10  
ChrisB's Avatar
ChrisB
Moderator
 
Joined: Dec 1998
Posts: 23,573
Likes: 0
From: Staffs
Post

<BLOCKQUOTE><font size="1" face="Verdana, Arial">quote:<HR>Originally posted by mutant_matt:
<B> But there are *so* many holes in IIS (both discovered and to be discovered ), coming out all the time, you can't blame the sysadmins for not being up to date - that's almost a full time job in iteself

Matt [/quote]


I'd be the first to agree patching IIS several times a month is a grade A pain in the ****.

However, the tools are available to take the hassle out of this. For instance, MS released the free IIS Hotfix check script which will see if you are missing any hotfixes by comparing your server to a master list on the MS website.

We've modified this to send e-mails to our Support team with an alert that a Hotfix is missing.

Yours for a beer or two...

There are also two or three very useful checklists on the Internet for securing public IIS servers against attack.

ChrisB.
Old 31 July 2001 | 03:33 PM
  #11  
Puff The Magic Wagon!'s Avatar
Puff The Magic Wagon!
Moderator
iTrader: (2)
 
Joined: May 2000
Posts: 16,978
Likes: 15
From: From far, far away...
Angry

Well this bloody patch has caused me problems

Loaded onto W2K Server with SP2 running SQL Server 7.0 with SP3

Rebooted & now got a corrupted dll & can't run up SQL at all

Don't you just love Microsoft



(P'd off & hot)
Old 31 July 2001 | 03:42 PM
  #12  
mark.coleman's Avatar
mark.coleman
Scooby Regular
 
Joined: Apr 2001
Posts: 630
Likes: 0
From: Northamptonshire
Post

Another warning on this, If you've run up a default NT install, this will install IIS.

Also anyone using Exchange server, with webmail access, which uses the IIS for connectivity is vulnerable, unless of course you're behind a tight firewall.

Mark
Old 31 July 2001 | 03:47 PM
  #13  
Puff The Magic Wagon!'s Avatar
Puff The Magic Wagon!
Moderator
iTrader: (2)
 
Joined: May 2000
Posts: 16,978
Likes: 15
From: From far, far away...
Angry

Doh! Thanks Mark - make my day
Old 31 July 2001 | 06:08 PM
  #14  
lcha's Avatar
lcha
Scooby Regular
 
Joined: Jan 2001
Posts: 112
Likes: 0
Post

Red code patch. What a nightmare. Especially if you have 100+ servers in one location.

cheers
Lee
Old 31 July 2001 | 07:11 PM
  #15  
ChristianR's Avatar
ChristianR
Scooby Regular
iTrader: (1)
 
Joined: May 2001
Posts: 6,329
Likes: 1
From: Europe
Post

the patch has been out for over a month!! it is just that network operators have got lazy!!!!

The red alert virus has been out for roughly 2.5weeks
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
JimBowen
ICE
5
02 July 2023 02:54 PM
SilverM3
ScoobyNet General
8
24 February 2021 02:03 PM
Wish
Computer & Technology Related
3
30 September 2015 11:39 PM
JackClark
Computer & Technology Related
3
30 September 2015 09:29 PM
Benrowe727
ScoobyNet General
7
28 September 2015 08:05 AM




All times are GMT +1. The time now is 01:20 AM.