[200] in Security FYI

home help back first fref pref prev next nref lref last post

[Security-fyi] MS03-026 update

daemon@ATHENA.MIT.EDU (Bob Mahoney)
Wed Jul 30 21:18:46 2003

Mime-Version: 1.0
Message-Id: <p05200f2bbb4e1b4b0524@[66.93.190.33]>
Date: Wed, 30 Jul 2003 21:18:24 -0400
To: security-fyi@MIT.EDU
From: Bob Mahoney <bobmah@MIT.EDU>
Content-Type: text/plain; charset="us-ascii"
Errors-To: security-fyi-bounces@mit.edu

Around 7pm, the attacks started coming much faster, with one compromised host about every minute.  We suspect this exploit has been repackaged as a worm.

As we have done in the past with aggressive worm attacks, we have blocked ports 135, 139, and 445 at the borders until we can get a firm handle on this.  For the time being, some Windows services will not function outside of campus.

We will keep 3-DOWN updated, and post information here as seems useful.  

Thank you for your patience.

-Bob Mahoney, for security@mit.edu
_______________________________________________
Security-fyi mailing list
Security-fyi@mit.edu
http://mailman.mit.edu/mailman/listinfo/security-fyi

home help back first fref pref prev next nref lref last post