[27064] in bugtraq
Analysis of Modap worm
daemon@ATHENA.MIT.EDU (Mario van Velzen)
Wed Sep 18 00:23:39 2002
Date: Mon, 16 Sep 2002 17:30:11 -0600 (MDT)
From: Mario van Velzen <mvelzen@securityfocus.com>
To: bugtraq@securityfocus.com, <incidents@securityfocus.com>,
<focus-ids@securityfocus.com>
Message-ID: <Pine.LNX.4.43.0209161722460.1153-100000@mail.securityfocus.com>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Greetings,
We have completed and released our analysis of the Modap worm, which has
been targeting Apache Web servers running vulnerable versions of OpenSSL.
In addition, we have also released to the public our initial Incident
Alert on this issue, available at:
http://analyzer.securityfocus.com/alerts/020913-Alert-Apache-mod_ssl-Exploit.pdf
The full analysis is available at:
http://analyzer.securityfocus.com/alerts/020916-Analysis-Modap.pdf
If you have any comments or concerns, please do not hesitate to contact
me.
Cheers,
Mario Van Velzen, mvelzen@securityfocus.com
DeepSight Threat Management System, Symantec