Re: Tool released to scan for possible CodeRed infected servers

From: Mike Fedyk (mfedyk@matchmail.com)
Date: 07/23/01


Date: Sun, 22 Jul 2001 17:45:18 -0700
From: Mike Fedyk <mfedyk@matchmail.com>
To: Vuln-Dev <vuln-dev@securityfocus.com>
Subject: Re: Tool released to scan for possible CodeRed infected servers
Message-ID: <20010722174518.F9443@mikef-linux.matchmail.com>


> |-----Original Message-----
> |From: Kenneth Williams [mailto:ken@kwilliams.org]
> |Sent: Friday, July 20, 2001 6:44 PM
> |To: Marc Maiffret; Vuln-Dev
> |Subject: Re: Tool released to scan for possible CodeRed infected servers
> |
> |
> |I would only ask why would I want the additional traffic of everyone
> |scanning everyone.
> |would that not only compound the problem???

On Fri, Jul 20, 2001 at 07:44:28PM -0700, Marc Maiffret wrote:
> huh? as an administrator you will want the "extra traffic" to find
> vulnerable servers on your network so you can patch them so your web servers
> do not create "extra traffic".
>

Ken seems to think that non-administrators will use this to scan other
people's servers... That's my take.

Mike