[39733] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Code Red on dial-in ppp

daemon@ATHENA.MIT.EDU (Damon M. Conway)
Sat Jul 21 13:35:58 2001

Message-Id: <200107211735.f6LHZHu42050@chiba.3jane.net>
To: Mitch Halmu <mitch@netside.net>
Cc: "Jason A. Mills" <phyxis@rottweiler.org>, nanog@merit.edu
In-reply-to: <Pine.SOL.3.91.1010721122859.2647u-100000@sunny.netside.net> 
Date: Sat, 21 Jul 2001 12:35:17 -0500
From: "Damon M. Conway" <damon@chiba.3jane.net>
Errors-To: owner-nanog-outgoing@merit.edu


>The problem I described is that the Windows machines in question are not 
>necessarily dedicated web servers, but can be regular dial-in users. 
>Normally, such users don't run a web server over dial-up, yet they seem
>to be vulnerable if the attack occurs while they're connected. No relation 
>to the connection bandwidth was implied.

Yes, we have noticed a few dialups that are infected.  So, it has happened.

Damon

--
"UNIX was not designed to stop you from doing stupid things, because that
 would also stop you from doing clever things."  --Doug Gwyn

home help back first fref pref prev next nref lref last post