Re: [Full-disclosure] No one else seeing the new MS05-039 worm yet?

fd_at_ew.nsci.us
Date: 08/31/05

  • Next message: fd_at_ew.nsci.us: "Re: [Full-disclosure] RE: Example firewall script"
    Date: Tue, 30 Aug 2005 16:56:27 -0700 (PDT)
    To: Vic Vandal <vvandal@well.com>
    
    

    On Mon, 29 Aug 2005, Vic Vandal wrote:

    > I guess one can call it the Katrina worm until something better comes
    > along.
    > [...]
    > - Sticks a long line of hosts resolving to broadcast address in:
    > C:\WINNT\System32\Drivers\etc in hosts file.

    Do we still have huge smurf networks in the wild or has that pretty much
    been resolved? A well coordinated smurf from a bunch of hosts as feeding
    points could make a spectacular DoS.

    -- 
    Eric Wheeler
    Vice President
    National Security Concepts, Inc.
    PO Box 3567
    Tualatin, OR 97062
    http://www.nsci.us/
    Voice: (503) 293-7656
    Fax:   (503) 885-0770
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/
    

  • Next message: fd_at_ew.nsci.us: "Re: [Full-disclosure] RE: Example firewall script"