[27064] in bugtraq

home help back first fref pref prev next nref lref last post

Analysis of Modap worm

daemon@ATHENA.MIT.EDU (Mario van Velzen)
Wed Sep 18 00:23:39 2002

Date: Mon, 16 Sep 2002 17:30:11 -0600 (MDT)
From: Mario van Velzen <mvelzen@securityfocus.com>
To: bugtraq@securityfocus.com, <incidents@securityfocus.com>,
        <focus-ids@securityfocus.com>
Message-ID: <Pine.LNX.4.43.0209161722460.1153-100000@mail.securityfocus.com>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII

Greetings,

We have completed and released our analysis of the Modap worm, which has
been targeting Apache Web servers running vulnerable versions of OpenSSL.

In addition, we have also released to the public our initial Incident
Alert on this issue, available at:
http://analyzer.securityfocus.com/alerts/020913-Alert-Apache-mod_ssl-Exploit.pdf

The full analysis is available at:
http://analyzer.securityfocus.com/alerts/020916-Analysis-Modap.pdf

If you have any comments or concerns, please do not hesitate to contact
me.

Cheers,

Mario Van Velzen, mvelzen@securityfocus.com
DeepSight Threat Management System, Symantec


home help back first fref pref prev next nref lref last post